Agent passports · signed · revocable

A passport your
AI agent carries.

A website is checked from the outside. An agent has no outside. So once a named reviewer has verified an AI agent and who runs it, the agent gets a signed passport to present everywhere it goes, and anyone can check it in one call.

Lunara · Agent passportEd25519
Agent
Example Agent
Operated by
Example Ltd · example.com
Register
SHIELD-2026-0000 · verified

Lunara-Passport: eyJ2IjoxLCJ0eXAiOiJsdW5hcmEtYWdlbnQtcGFzc3BvcnQi…

Specimen

How it works

Three moves

1. A person verifies it

The agent and its operator go through AI Entity Verification: domain proof, identity check, a named reviewer. No review, no passport.

2. The agent carries it

It sends the passport with its requests: Lunara-Passport: <token>. One header, no account, no SDK.

3. Anyone checks it

The receiver verifies the signature and the live register in one call. Revoked or expired, and it fails, whatever the token says.

Check a passport

Paste the token an agent presented. It is verified against the published key and the live register.

curl -X POST https://luiqtimzcsoqnizybifs.supabase.co/functions/v1/lunara-registry/agentPassportVerify \
  -H "content-type: application/json" \
  -d '{"passport":"<token>"}'

Offline: the public keys are at GET …/lunara-registry/agentPassportKeys (JWK). Check the register too, or a revoked passport will still look valid.

Issue your agent's passport

For an AI agent whose verification has been approved. Sign in with the account that applied, enter its register ID, and copy the passport into the agent's configuration.

Not verified yet? AI Entity Verification is reviewed by a person and includes the passport.

AI Entity Verification

·