passport_ref. It asserts no authority by itself; it is a recomputable handle to the identity claim, so two parties can pin and compare the same passport_ref byte for byte. Crucially, passport_ref is exactly the agent_ref that Spend Guardrail (lite) binds, so an agent identity composes straight into the pre-payment decision. It is strictly additive over the frozen Layer 1: no new cryptographic primitive, the same RFC 8785 JCS + SHA-256.
Apache-2.0 open source. Install via
pip install algovoi-agent-passport-lite or npm install @algovoi/agent-passport-lite. Python and TypeScript are byte-for-byte identical on the same input. This is the lite tier, content-addressed with no signature; the commercial Agent Passport issues and verifies Falcon-1024 post-quantum trust credentials, binds spend limits, and supports revocation.How it works
One reference, computed with RFC 8785 JCS canonicalisation and SHA-256:agent_ididentifies the agent.issueris who issued the identity claim.scopeis what the claim covers.validity_windowis the period the claim holds within.
passport_ref diverges. An empty field is rejected, not hashed.
What a verifier can check
| Verifier holds | What they can check |
|---|---|
A passport_ref + the four fields | That the reference is for exactly this agent, issuer, scope and window (passport_ref recomputes) |
| The same, with any one field changed | The change is detected — each field is byte-load-bearing |
A passport_ref and a guardrail_ref | That the pre-payment decision was made for exactly this agent — passport_ref is the agent_ref the decision binds |
Use
Conformance
Theagent_passport_lite_v1 vector set (11 vectors) is published in the public corpus —
chopmob-cloud/algovoi-jcs-conformance-vectors —
with Python and Node runners. It covers the positive references, field-divergence and empty-field rejection, and the field-distinctness invariant. passport_1 and passport_2 equal agent_ref_1 / agent_ref_2 in spend_guardrail_lite_v1. Python and TypeScript reproduce every value byte-for-byte.
The decision chain
Agent Passport (lite) is the identity input to the open, pinned pre-payment decision chain. Spend Guardrail (lite) composes the agent (thispassport_ref), the spend authority (a mandate reference), and the policy in force (a Policy Binding reference) into one recomputable decision. Because passport_ref is the same agent_ref the decision binds, identity, authority, and policy chain into a single offline-verifiable address.
Lite vs commercial
| Lite (this package) | Agent Passport (commercial) | |
|---|---|---|
| Licence | Apache-2.0, open | Commercial OEM |
| Identity reference | content-addressed passport_ref | the same, Falcon-1024 signed credential |
| Enforcement | bring your own verifier | issuer trust lists, revocation, validity-window enforcement |
| Verifier | recompute offline | maintained verifier |
| Best for | open integrations, evaluation | regulated production, enterprise terms |
Adopters
If you build onalgovoi-agent-passport-lite, pin ==0.1.0, anchor a canonical passport_ref vector hash from agent_passport_lite_v1, and keep the NOTICE, you qualify for a free v0 licence key for algovoi-mandate-auditor. The gate is scripts/check_v0_adoption.py (dependency + canonical hash anchor + NOTICE + version pin → ISSUE_V0_KEY). Apply: email chopmob@gmail.com with your import-by-hash evidence and a copy of the NOTICE.
Relationship to the open substrate
Agent Passport (lite) sits directly on top of the open JCS Canonicalisation Substrate and composes with Spend Guardrail (lite) and Policy Binding. It uses the same RFC 8785 JCS and SHA-256 primitives — no additional cryptographic dependencies.Specification
passport_ref is a content-addressed agent-identity reference: the agent_ref consumed by the Spend Guardrail pre-payment decision. It is an instance of the same content-addressed binding construction used across the substrate (a set of fields canonicalised under RFC 8785 JCS and bound by SHA-256). The normative byte-level artifact is the published agent_passport_lite_v1 conformance set. Additive over the frozen canonicalisation substrate, sole AlgoVoi authorship.