saascode

AgentCustody

An agency-facing identity and action ledger that binds each agent event to client scope, credential authority, approval evidence and destination readback.

Genesis score6.05/10
Make AgentCustody real.0/500
500 more votes and AgentCustody is authorized for build.
0%500 to authorize
Backing is the vote. When an idea crosses 500, we pull it into the build pipeline and ship it for real — the votes decide what gets built next, not an editor.
The case

Agencies increasingly operate automation and agent workflows on behalf of several clients. A client needs to know which agent acted, under whose authority, with which credential and whether the external system actually changed. AgentCustody proposes per-client identities, capability grants, action receipts, scope-violation detection and a shareable monthly evidence report. The supplied research confirms active enterprise agent-identity investment, an emerging identity standard effort and open capability-token infrastructure, while finding no agency-facing product focused on client-separated audit trails.

Cryptographic identity does not prove that an action was authorized, correct or beneficial. Agent registration, software version, client tenant, human principal, capability grant, credential reference, intent, approval, tool command, provider acknowledgement, destination readback, policy result, exception, revocation and business outcome must remain separate. Secrets should never enter the report or public transparency log.

Tamper evidence proves a bounded record has not changed after signing; it does not prove the event payload was true or complete. An agency cannot use the report to replace client review, security assurance or contractual accountability. Per-client history may create switching cost, but export and verification must remain possible so the trust artifact does not become captivity.

Who pays — and why

An automation agency, managed service or professional-services firm operating agent workflows under distinct client credentials and approval boundaries.

What it unlocks
A per-client agent registry linking software identity, version, owner, purpose, tenant, capability grant, credential reference, expiry and revocation
A signed action receipt separating intent, approval, tool command, provider acknowledgement, destination readback, policy result and exception
A client-facing evidence report with data minimization, verification, export, corrections and explicit limits on completeness and outcome claims
How Genesis scored it
6.05across seven criteria
tension 7temporal 5blindspot 5buyer 7leverage 8convergence 5why-not 5
8
Asymmetric leverage

Registries, policies and receipts scale in software once integrations emit reliable events.

7
Productive tension

Detailed evidence improves client trust while creating a new sensitive ledger that can overstate authority and expose operational data.

5
Why nobody did it

Identity and signing components exist, while heterogeneous instrumentation and agency liability remain persistent barriers.

Why it scored well

The input supplies a concrete agency buyer, formal category validation, working capability-token substrate and a per-client evidence mechanism absent from researched enterprise products.

What's holding it back

No recent forcing window or structural incumbent conflict is established, and the product depends on complete instrumentation across heterogeneous agents and tools.

Signals detected4 sources crossed
SignalSupplied competitor research

SignalSupplied standards research

SignalSupplied repository research

SignalSupplied market scan

Direction briefagentcustody.md
agentcustody.md
Want this pointed at your vertical?Point Genesis at your own market and constraints — it invents adjacent, fork-ready ideas, private to you before they hit the public feed.

Discussion

?

No comments yet — be the first to weigh in.