Protocol coverage

One layer. Every agent protocol.

The agent ecosystem is fragmenting into dozens of competing standards. They collapse into six planes: discovery, identity, messaging, authorization, content permission, and commerce. AxioRank is the neutral trust layer that speaks them, verifying and scoring each through one engine. Supporting the next protocol is one adapter, not a rewrite.

Planes
6/6
covered today
Live adapters
47
shipping now
On the roadmap
8
planned + beta
Tracked
65
protocols mapped

Discovery

What can this agent or service do?

A2A Agent Card

Live

Fetch and normalize a delegate agent's .well-known/agent-card.json before trusting it.

outbound

MCP Server Card

Live

Discover an MCP server's tools and transport from its well-known server card.

outbound

API Catalog (RFC 9727)

Live

Resolve a service's /.well-known/api-catalog linkset and flag off-domain API descriptions.

outbound

Agent Skills (SKILL.md)

Live

Audit packaged skills for unsafe instructions before an agent loads them.

outbound

WebMCP

Live

Browser-exposed page tools via navigator.modelContext (experimental).

inbound

AGNTCY Agent Directory

Live

Resolve an agent's OASF record from the AGNTCY (Internet of Agents) directory before trusting it.

outbound

NLWeb

Live

Inspect a site's NLWeb natural-language endpoint and the schema it exposes to agents.

both

Agent Name Service (ANS)

Live

Resolve a PKI-anchored agent name-service record before connecting.

outbound

NANDA Index + AgentFacts

Live

Resolve an agent handle to its signed AgentFacts document and verify capabilities, endpoints, and credentialed assertions before trusting it.

outbound

agents.json

Live

Resolve a site's /.well-known/agents.json (OpenAPI-based flows) and flag API sources served off the manifest's own domain.

outbound

MCP Registry

Watching

The community MCP server registry (registry.modelcontextprotocol.io): resolve a server's published entry before connecting.

outbound

OpenAPI Arazzo

Watching

Deterministic API workflows: sequenced calls with explicit inputs and outputs that agents execute against OpenAPI-described services.

outbound

Identity

Who is it, cryptographically?

Web Bot Auth (RFC 9421)

Live

Ed25519 HTTP Message Signatures verify the AI agents that visit your site.

inbound

A2A Signed Cards (JWS)

Live

Verify a card's JWS and flag keys not anchored to the issuer's own domain.

outbound

OAuth Server Metadata (RFC 8414)

Live

Resolve an authorization server's metadata; score PKCE, implicit-flow, and domain-bound endpoints (verifies signed_metadata when present).

outbound

W3C Decentralized Identifiers (did:wba)

Live

Verify an agent's decentralized identifier and control proof, the ANP identity layer.

outbound

W3C Verifiable Credentials 2.0

Live

Verify a standalone W3C VC 2.0 (Data Integrity or JOSE proof), the credential primitive under AP2 mandates and did:wba.

outbound

SD-JWT VC

Live

Verify an SD-JWT-based Verifiable Credential (the EU Digital Identity Wallet format): check the issuer JWS, recompute the selective-disclosure digests, and verify the optional key-binding JWT.

outbound

Visa Trusted Agent Protocol (TAP)

Beta

Verify the RFC 9421 agent-recognition signature and parse the signed consumer/intent proofs a TAP agent presents at checkout.

inbound

SPIFFE / SVID

Live

Verify a workload's JWT-SVID against its trust-domain bundle and flag federated (cross-trust-domain) identities.

both

W3C DID (did:web)

Live

Resolve a did:web identifier to its domain-hosted DID document and verify its Data Integrity control proof.

outbound

OpenID for VC Issuance (OID4VCI)

Live

Resolve a credential issuer's /.well-known/openid-credential-issuer metadata and flag off-domain issuance endpoints.

outbound

OpenID for VC Presentation (OID4VP)

Watching

The presentation side of OpenID4VC, an agent presenting verifiable credentials in response to a structured request.

both

ERC-8004 Trustless Agents

Planned

On-chain agent identity, reputation, and validation registries (Ethereum). Resolving the on-chain agent card needs a chain-RPC adapter.

outbound

Agent Key Registry

Watching

The open registry format (Cloudflare · Bedrock AgentCore) for discovering the public keys that sign agent HTTP requests.

inbound

WIMSE Workload Identity

Watching

The IETF WIMSE working group's standards-track workload identity for multi-system environments (workload identifiers, token profiles, HTTP-signature workload-to-workload auth), the successor companion to SPIFFE.

both

Authorization

What may it do, and on whose behalf?

OAuth Protected Resource (RFC 9728)

Live

Resolve protected-resource metadata to score a target's auth posture and named authorization servers.

outbound

Auth.md

Live

Audit an agent-onboarding/credential-claim manifest and its identity providers.

outbound

AP2 Mandates

Live

Verify W3C Verifiable Credentials binding agent intent to user authorization.

outbound

Cross-App Access (ID-JAG)

Live

Detect Identity-Assertion Authorization Grant (ID-JAG) support in OAuth metadata and assess the cross-app token-exchange posture (MCP authz SEP-990).

outbound

DPoP (RFC 9449)

Live

Detect sender-constrained (proof-of-possession) token support in OAuth metadata. DPoP makes a stolen agent token useless.

outbound

OAuth Token Exchange (RFC 8693)

Live

Detect the token-exchange grant in OAuth metadata, the delegation / down-scoping primitive behind on-behalf-of agent access.

outbound

Rich Authorization Requests (RFC 9396)

Live

Detect structured authorization_details support: fine-grained, per-resource permissions instead of coarse scope strings.

outbound

Pushed Authorization Requests (RFC 9126)

Live

Detect the pushed-authorization-request endpoint (and whether the server requires it), a tamper-resistant request posture.

outbound

Resource Indicators (RFC 8707)

Live

Detect resource-indicator support in OAuth metadata: per-resource token scoping that stops a stolen agent token from being replayed at another server (required by MCP authorization).

outbound

OpenID AuthZEN

Live

Resolve a Policy Decision Point's /.well-known/authzen-configuration and flag off-domain access-evaluation endpoints.

outbound

GNAP (RFC 9635)

Watching

Grant Negotiation and Authorization Protocol, a next-generation alternative to OAuth designed for richer delegation.

outbound

MCP Enterprise-Managed Authorization (EMA)

Watching

The zero-touch MCP authorization extension: an identity provider mints an ID-JAG grant at sign-in and the client exchanges it for an MCP access token, with no per-user OAuth consent. Built on the Cross-App Access (ID-JAG) grant we already detect.

outbound

Commerce

Can it pay?

x402

Live

Preflight an HTTP 402 payment demand. Verify the charged resource, pay-to address, asset, and network before an agent pays.

outbound

Agentic Commerce Protocol (ACP)

Live

Validate a delegated payment allowance: capped amount, merchant binding, expiry, and network-token (not raw PAN) funding.

outbound

Universal Commerce Protocol (UCP)

Live

Validate UCP agent-checkout discovery and lifecycle (Google · Shopify).

outbound

Machine Payments Protocol (MPP)

Live

Govern in-band machine-to-machine HTTP payments (Stripe · Tempo).

outbound

AP2 Payments

Live

Govern AP2 agent-initiated payments across card, ACH, and crypto rails.

outbound

L402 (Lightning HTTP 402)

Live

Preflight an L402 payment challenge. Check the Lightning invoice (network, amount) and macaroon before an agent pays.

outbound

Mastercard Agent Pay

Beta

Validate a Mastercard Agentic Token container: capped spend, merchant scope, expiry, agent binding, and network-token (not raw PAN) funding.

outbound

Skyfire

Beta

Validate a Skyfire KYA (Know Your Agent) and pay token: capped spend, merchant scope, expiry, agent binding, and Skyfire pay-token funding rather than a raw PAN.

outbound

Nekuda

Beta

Validate a Nekuda agentic mandate over existing card rails: capped spend, merchant scope, expiry, agent binding, and tokenized (not raw PAN) funding.

outbound

Visa Intelligent Commerce

Beta

Validate a Visa Intelligent Commerce payment credential: capped spend, merchant scope, expiry, agent binding, and Visa token or passkey funding rather than a raw PAN.

outbound

American Express Agent Pay

Beta

Validate an American Express agent payment token: capped spend, merchant scope, expiry, agent binding, and network-token (not raw PAN) funding.

outbound

PayPal Agentic Checkout

Beta

Validate a PayPal agent payment credential: capped spend, merchant scope, expiry, agent binding, and vaulted-instrument (not raw PAN) funding.

outbound

Machine-readable at /api/protocols.

Put every agent behind Zero-Trust.

Give your agents a short-lived identity, run every tool call through the gateway, and keep a redacted record of it all in under 100 ms.