CABIER Global Assurance · Know Your Agent
Know Your Agent
Treat every software agent as an institutional actor with a verified identity, a declared purpose, bounded authority and a named human owner before it can use a tool or touch a governed system.
Illustrative agent register. Agents shown here do not execute consequential actions.
Agent register
Select an agent to inspect its identity, approved tools, hard limits and current disposition.
agt-retail-service-014
Retail service agent
Resolve routine account enquiries and prepare, but not submit, service changes.
Human owner: Director of Customer Operations
Disposition: ALLOW WITH CONDITIONS
Permitted tools
- Customer record: read
- Knowledge base: read
- Case draft: create
Hard limits
- No payment instruction
- No account closure
- Human approval for record changes
The agent passport
Registration is the minimum evidence required before an agent receives institutional authority.
Identity
A unique, revocable identity binds the agent, version, environment and operating institution.
Purpose
The approved business purpose defines why the agent exists and the boundary beyond which it must stop.
Authority
Tool, data, spend, delegation and action permissions are explicit, time-bounded and no broader than the task requires.
Execution boundary
The passport records whether the agent is contained by a software runtime only or also by an out-of-band hardware supervisor. The stronger the boundary, the wider the authority tier it can be granted; quarantine events from either feed the Security and Resilience Trust Gates.
Human accountability
A named person owns the agent, receives escalations and remains accountable for consequential outcomes.
Evidence
Every permission decision, tool call, refusal, escalation and human approval can be reconstructed.
See how registered authority is evaluated before a tool call can proceed.
Open the permission fabric