Get involved
Publish your agent, or get in touch
Open Agent Commerce is built on standards anyone can implement. DNS operators, registrars, identity providers, payment networks, AI platforms, agent builders and security teams are all welcome to adopt and extend it.
Publish your agent
These checklists are deliberately conceptual: the standards move, and the exact steps for your stack will differ. Start here, then follow the standards glossary on the how it works page.
If you run a seller agent
- Give your agent a domain (or subdomain) tied to your organisation, and enable DNSSEC for its DNS zone.
- Publish a DNS-AID record under that domain, or a catalogue at /.well-known/ard.json, so other agents can discover it.
- Obtain a TLS certificate for the agent's HTTPS endpoint, and publish a matching TLSA record so clients can validate it (DANE).
- Register your agent in ANS.
- Publish an agent card at /.well-known/agent-card.json.
- Publish a UCP profile at /.well-known/ucp that declares checkout, the AP2 mandate extension, and the approval services you accept.
- Cryptographically sign each quote, and never complete a purchase without a valid, matching mandate.
- Maintain a signed ledger of the agent's actions, and periodically commit checkpoints to a public transparency log.
If you run a buyer agent
- Register a domain for your agent, or use SPIFFE/SPIRE to establish the identity of the workload it runs on.
- Discover and verify sellers before transacting: check DNSSEC signatures, TLSA records and ANS registration, and consider a trust-scoring service.
- Keep human approval, and the authority that signs that approval, separate from the buyer agent itself.
Get in touch
Tell us who you are and what you’re interested in. We read every message.