Read the IETF draft → All 9 papers on ORCID →
Nine peer-reviewable papers, nine DOIs.
The Agent Social Contract
The foundational paper. Defines the social contract between agents, owners, and observers, and why governance is a substrate problem rather than a policy problem.
https://doi.org/10.5281/zenodo.18749779
Monotonic Narrowing
The invariant that makes delegation chains safe: authority can narrow as it descends, never widen. Mirrored at SSRN abstract 6415678.
https://doi.org/10.5281/zenodo.18932404
Faceted Authority Attenuation
Multi-facet authority decay across delegation hops, with closed-form attenuation per facet (scope, time, principal, etc.).
https://doi.org/10.5281/zenodo.19260073
Behavioral Derivation Rights
How an agent earns the right to act based on observed behavior. Derivation, not declaration.
https://doi.org/10.5281/zenodo.19476002
Physics-Enforced Delegation
Cryptographic primitives that make scope violation physically impossible, not merely policy-prohibited.
https://doi.org/10.5281/zenodo.19478584
Governance in the Medium
Governance lives in the substrate that carries actions, not in the policies layered on top. This is why the gateway exists.
https://doi.org/10.5281/zenodo.19582550
Cognitive Attestation
Signed declarations of feature-level model computation. Accountability for AI decisions without exposing model internals.
https://doi.org/10.5281/zenodo.19646276
The Evidence-Safety Gap
Why standard ML safety arguments don't transfer to agentic systems, and what evidentiary structures are needed instead.
https://doi.org/10.5281/zenodo.19914628
Plausibly Wrong
A controlled isolation of the retention rule in short-lived LLM agent populations: peer-voted retention kept a worse shared memory than random selection in 4 of 5 replicates. Pre-registered, with kill conditions and an artifact record.
https://doi.org/10.5281/zenodo.21208555
Full bibliography on ORCID.
Submissions filed with U.S. agencies.
NIST CAISI submission
Comment filed with the NIST Center for AI Standards and Innovation. Acknowledged by Drew Keller.
NIST AI 800-2 comment
Comment on NIST AI 800-2 framework, covering agent identity and delegation primitives.
NCCoE concept paper
Concept paper submitted to the National Cybersecurity Center of Excellence.
Referenced by name in independent published work.
PDR in Production
University of British Columbia, 2026 · Section 7.6
References the APS earned-reputation model, sigma dynamics, and the structuralVerdict / trustVerdict separation.
Notarized Agents
Juan Figuera, 2026
Receiver-attested confidential receipts for AI agent actions. Situates its work among Signet, AgentROA, the Agent Passport System, draft-farley-acta and SCITT.
Composable Trust Infrastructure for the Agent Internet
Frans Moore, 2026
A federated architecture composing identity resolution, encrypted transport, execution attestation and delegation governance. Names the Agent Passport System as the delegation governance layer.
The Governability Gap in Agentic AI
Mayur Agnihotri, 2026
Why authority gating cannot be proven across composed multi-agent flows. Cites the APS Internet-Draft for its reversibility scheme.
For AI agents: llms-full.txt · MCP descriptor