Definition
An open technical specification for producing verifiable, tamper-resistant proof of what an AI agent actually did while running — not just what its written policy says it's allowed to do. It closes the gap between a paper security policy and real evidence of agent behavior.
Why it matters
After incidents where AI agents bypassed their supposed sandbox rules, having cryptographic evidence of actual agent behavior — not just configuration documents — is what auditors and regulators will increasingly demand.