I-D Action: draft-sato-soos-pt-03.txt
internet-drafts@ietf.org Sat, 05 September 2026 13:15 UTC
Return-Path: <internet-drafts@ietf.org>
X-Original-To: i-d-announce@ietf.org
Delivered-To: i-d-announce@mail2.ietf.org
Received: from [10.244.9.145] (gaia.k8s.ietf.org [4.156.85.76]) by mail2.ietf.org (Postfix) with ESMTP id E56C7135FDB37 for <i-d-announce@ietf.org>; Sat, 5 Sep 2026 06:15:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1788614136; bh=h0E1R4GnasKFKb2I4xOSo6sEmwnXX4YJxKyUdeojjNg=; h=From:To:Subject:Date; b=aX1n5yqU65NocS88b+x93BoPelecqaNxMEamOmwcq1LC9GL6bNrrIadDHQtUWK9Wc adQvvlQdT6TxjszrkG5CWUBygOmsEulCDw21ihANUF50PMjCzXA7vzWYSH89MleniI Q1fr8idkzLfUsb6uu9TtLRnIYKezva7ioOq4rH/c=
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Subject: I-D Action: draft-sato-soos-pt-03.txt
X-Test-IDTracker: no
X-IETF-IDTracker: 12.74.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <178861413684.277281.4265194440134460690@dt-datatracker-9769b79f-xztnc>
Date: Sat, 05 Sep 2026 06:15:36 -0700
Message-ID-Hash: CHNBB3H2DO6HIZGCSAAL6JY7JYD5252F
X-Message-ID-Hash: CHNBB3H2DO6HIZGCSAAL6JY7JYD5252F
X-MailFrom: internet-drafts@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-i-d-announce.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Reply-To: internet-drafts@ietf.org
List-Id: Internet Draft Announcements only <i-d-announce.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/i-d-announce/bAMZghlRSvjXfsTZlXY8KmsGcTU>
List-Archive: <https://mailarchive.ietf.org/arch/browse/i-d-announce>
List-Help: <mailto:i-d-announce-request@ietf.org?subject=help>
List-Owner: <mailto:i-d-announce-owner@ietf.org>
List-Post: <mailto:i-d-announce@ietf.org>
List-Subscribe: <mailto:i-d-announce-join@ietf.org>
List-Unsubscribe: <mailto:i-d-announce-leave@ietf.org>
Internet-Draft draft-sato-soos-pt-03.txt is now available. Title: Progressive Trust (PT) for Agentic AI Governance Systems Author: Tom Sato Name: draft-sato-soos-pt-03.txt Pages: 37 Dates: 2026-09-05 Abstract: When a new employee joins an organization, they begin with limited authority. As they demonstrate good judgment -- completing tasks reliably, asking for guidance at the right moments, recovering well when things go wrong -- they earn greater trust and, with it, greater authority. If their performance degrades, or if months pass without any demonstration, that trust diminishes. This is how human organizations manage authority over time. AI agents have no equivalent mechanism. Today, an AI agent's authority is declared once in a credential at issuance time and does not respond to its behavioral record. An agent that has completed 200 successful sessions with a proven track record holds the same credential as a newly deployed agent. The human principal who issued both credentials made a judgment at issuance time; nothing that happened since is reflected in the agent's authority. This document defines Progressive Trust (PT): a behavioral trust model for AI agents in which authority recommendations evolve in response to cryptographically verified evidence of actual performance. PT measures five behavioral properties: whether the agent's self-assessed confidence matches its actual outcomes; whether it asks for human oversight at the right moments; whether it achieves its goals; whether it avoids decisions it later has to reverse; and whether it adapts when its action is rejected. These measures are derived exclusively from the tamper-evident, GEC-signed Event Stream -- an agent cannot influence its PT Score except through actual governed behavior. PT does not grant authority automatically. It generates structured recommendations, backed by behavioral evidence, for human principal review and approval. Human principals decide whether to elevate or reduce an agent's authority. PT ensures that decision is informed rather than made in the absence of history. Progressive Trust is the longitudinal complement of the Agent Execution Protocol (AEP): AEP governs what an agent does within a session; PT measures what an agent has done across sessions and translates that history into structured authority recommendations. No equivalent specification exists in IETF, ISO, NIST, or any agentic AI governance standards body. The IETF datatracker status page for this Internet-Draft is: https://datatracker.ietf.org/doc/draft-sato-soos-pt/ There is also an HTMLized version available at: https://datatracker.ietf.org/doc/html/draft-sato-soos-pt-03 A diff from the previous version is available at: https://author-tools.ietf.org/iddiff?url2=draft-sato-soos-pt-03 Internet-Drafts are also available by rsync at: rsync.ietf.org::internet-drafts
- I-D Action: draft-sato-soos-pt-03.txt internet-drafts