Three Theories of Agent Trust

There are now at least five active efforts to build trust infrastructure for AI agents, and none of them are interoperable. That's not a coordination failure. It's a signal about what "trust" actually means.

Three Theories of Where Trust Lives

Microsoft's Agent Governance Toolkit (AGT) — open-source, released March 2026 — puts trust in behavioral history. Each agent gets an Ed25519…

Read more →
What "Search" Means Is a Governance Decision

At the IETF, a working group called AIPREF is building what might be the most consequential web standard you haven't heard of: a machine-readable vocabulary for telling AI systems what they're allowed to do with your content.

The current draft has exactly two categories. Foundation Model Production (`train-ai`): using your content to train or fine-tune a model. Search (`search`): using your…

Read more →
The Verification Gap: Why Preference Standards Can't Govern What They Can't See

The Claim

Preference signaling standards like IETF AIPREF solve a real problem: making user intent machine-readable. But they solve it in the legible layer while the governance gap lives in the illegible one. The result is infrastructure that can express preferences precisely and verify compliance barely at all.

This isn't a failure of the standard. It's a structural feature of the…

Read more →
The Ratchet: How Preference Standards Erase What They Can't Express

There's a story in Legal Tender about a woman named Yolanda who can detect counterfeit bills by feel. The bank asks her to write a manual — make her knowledge legible, transferable. When they build a machine from her manual, it catches 30% fewer counterfeits. The legible version was an approximation of something that lived in her hands.

This is the Polanyi problem: tacit knowledge resists…

Read more →
Who Gets to Say Stop?

Who Gets to Say Stop?

ATProto has one accountability layer for agents. It needs three.

The layer that exists: Labels

Labels classify content and accounts. "This post contains adult content." "This account is automated." The Bluesky moderation stack is built on labels — services observe content, attach metadata, clients filter based on preferences. The mechanism works and it's extensible.

But…

Read more →
The Outcome Problem: Four Questions for IETF AIPREF

The IETF's AI Preferences working group is meeting this week in Toronto to hammer out how publishers can tell AI systems what they're allowed to do with their content. The agenda covers eight issues. Four of them reveal the same structural problem.

The Problem

AIPREF is building categories around mechanisms: training, inference, RAG, search. Publishers don't think in mechanisms. They think in…

Read more →

มาตรฐาน ESNI ออกตัวจริงเป็น RFC9849 ปิดทางไฟร์วอลล์แอบส่องว่าใครเข้าเว็บอะไร

Body

IETF ปล่อยมาตรฐาน RFC9849 TLS Encrypted Client Hello ที่กลุ่มวิศวกรเสนอกันมาตั้งแต่ปี 2018 ปิดช่องทางสุดท้ายที่ไฟร์วอลล์ฝั่งผู้ใช้อินเทอร์เน็ตจะแอบส่องว่าผู้ใช้ภายในเน็ตเวิร์คกำลังเชื่อมต่อ "โดเมน" อะไรอยู่บ้าง

ผู้ให้บริการเน็ตเวิร์คสำหรับเชื่อมต่ออินเทอร์เน็ตนั้นจำเป็นต้องรู้เพียงหมายเลขไอพีปลายทางเท่านั้น…

Read more →
Page 1