Skip to content

Latest commit

 

History

History

Folders and files

NameName
Last commit message
Last commit date

parent directory

..
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

README.md

License: Apache 2.0 cMCP Agent Manifest cA2A Discord

agentrust-io Examples

Community updates and contributor highlights: AgenTrust on LinkedIn.

Complete, runnable scenarios that show the AgenTrust projects working together, for example in financial services, healthcare and agentic commerce. Each example is self-contained and runs on a fresh cloud VM. Running one shows how the pieces fit: cMCP checks each tool call against policy, Agent Manifest records who the agent is and what it may do, cA2A makes sure an agent handing work to another passes on no more authority than it has, and TRACE writes a signed Trust Record (a receipt) for every tool call, so you can see what the full audit trail looks like in practice.

Project support is recognized in SPONSORS.md. Sponsorship is separate from example authorship, fixture identities, partner provenance, adoption, and project governance.

Examples

Example What it shows Platform Compliance
agentic-commerce-accountability/ Delegated spend authority linked to checkout, policy, runtime evidence and receipt, with offline tamper detection Software-only (offline) Accountability, least authority
ca2a-delegation/ Agent-to-agent delegation with cA2A: attenuated credit-workflow chain, offline verification, and a rejected scope escalation Software-only (offline) Separation of duties, least authority
embodied-action-receipts/ Fixture-style offline verification for embodied action receipts: accepted chain, missing receipt, signature mismatch and valid controller rejection Software-only fixtures TRACE action-receipt evidence boundary
financial-services/ Corporate credit risk agent: six-step assessment with CDD, exposure and IFRS 9 guardrails on the write SEV-SNP / TDX EU AI Act Art. 9/12, CRR Art. 395, EBA/GL/2020/06, EU AML, DORA Art. 9
healthcare/ Clinical agent on a coherent ICD-10 patient: drug-interaction check feeds EU AI Act Art. 14 HITL and contraindication denies SEV-SNP / TDX EU AI Act Art. 14, HIPAA
industrial-embodied-ai/ Material-movement agent with cMCP authorization, an independent safety-controller boundary and offline-verifiable closed-session evidence TEE / software-only development mode OT security and industrial robot safety references
multi-tenant-saas/ HR SaaS with an EU tenant (enforcing GDPR residency/Art. 9) and a US tenant (advisory) on one catalog TDX GDPR Art. 6/9/44, customer DPA
sovereign-agent-connector/ Usage control across agent delegation: a France-only processing rule still holds at the sub-agent hop, the non-French model route is denied before dispatch, and a clean-room verifier checks the signed bundle Software-only (offline) Purpose and processing-location restrictions
startup-tpm/ 15-minute quickstart on any cloud VM with Trusted Launch TPM 2.0 Development / staging

Most examples are fully runnable with no external dependencies: they ship a mock upstream MCP server, an agent script, an attested tool catalog, and a Cedar policy bundle, and end by printing the signed TRACE Trust Record for the session. The trace-output/ files are captured from real runs. The ca2a-delegation/, embodied-action-receipts/ and sovereign-agent-connector/ examples are offline verifiers and ship their captured chains or bundles instead.

Quickstart

git clone https://github.com/agentrust-io/integrations.git
cd integrations/examples/startup-tpm
pip install cmcp-runtime httpx

# Terminal 1: mock upstream MCP server
python server/mock_mcp_server.py

# Terminal 2: the runtime (CMCP_DEV_MODE=1 for machines without a TPM/TEE)
CMCP_DEV_MODE=1 cmcp start --config cmcp-config.yaml

# Terminal 3: one tool call + signed TRACE Trust Record
python agent/echo_agent.py

See startup-tpm/README.md for the full walkthrough.

Prerequisites

  • Python 3.11+
  • An MCP server to protect (existing servers work unchanged)
  • For Level 1 attestation: a VM with TPM 2.0, AMD SEV-SNP, or Intel TDX
  • For GPU-CC attestation (v0.2): NVIDIA H100/H200 with CC mode enabled

Status

Launching at Confidential Computing Summit, San Francisco, June 23 2026.

Community

Questions, feedback, integration help: Discord.

License

Apache 2.0