FB pixel

ZeroBiometrics details how biometric AI agent authorization suite works

White paper explains ZeroSentinel’s mix of standards and innovation
ZeroBiometrics details how biometric AI agent authorization suite works
 

ZeroBiometrics has laid out the details of its suite of AI agent binding, authorization and verification software, ZeroSentinel, in a technical white paper, titled “A Standards-Aligned Cryptographic Human-Authorization Layer for Agentic AI.”

The white paper sets out how ZeroSentinel uses industry standards like X.509 certificates, OAuth 2.0 and sender-constrained RFC 8705 tokens to bind human intent to AI actions with a cryptographic authorization control “plane.”

A concept paper published by the NIST NCCoE in February explained the challenge, requested industry feedback and proposed a project to adapt IAM frameworks to secure agentic AI.

“NIST could have approached agentic identity from any number of angles — behavioral monitoring, model alignment, runtime sandboxing, reputation scoring,” ZeroBiometrics says in the white paper. “Instead, they framed the problem in terms of cryptographic identity, delegated authorization, and verifiable scope. These are precisely the questions ZeroSentinel was designed to answer.”

The company has created a delegation chain in which ZeroCert, the X.509 certificate that contains the public portion of the biometrically-derived IdentyKey, anchors human identity. What the AI agent is authorized to do is specified by a ZeroGrant following a biometric signing ceremony ZeroBiometrics says is inspired by FIDO principles. The ZeroIntent proxy and enforcement gateway sits between the AI agent and downstream services.

What differentiates ZeroBiometrics’ approach, the company says, is the use of unstored ZeroFace face biometrics in the ephemeral ECC keypair used as the human’s signing key, the policy for the non-human identity (NHI) directly bound into the signed ZeroGrant and pairwise pseudonymity.

Related Posts

Article Topics

 |   |   |   |   | 

Latest Biometrics News

 

Face biometrics use cases outnumbered only by important considerations

With face biometrics now used regularly in many different sectors and areas of life, stakeholders are asking questions about a…

 

Biometric Update Podcast explores identification at scale using browser fingerprinting

“Browser fingerprinting is this idea that modern browsers are so complex.” So says Valentin Vasilyev, Chief Technology Officer of Fingerprint,…

 

Passkeys now pervasive but passwords persist in enterprise authentication

Passkeys are here; now about those passwords. Specifically, passkeys are now prevalent in the enterprise, the FIDO Alliance says, with…

 

Pornhub returns to UK, but only for iOS users who verify age with Apple

In the UK, “wanker” is not typically a term of endearment. However, the case may be different for Pornhub, which…

 

Europol operated ‘shadow’ IT systems without data safeguards: Report

Europol has operated secret data analysis platforms containing large amounts of personal information, such as identity documents, without the security…

 

EU pushes AI Act deadlines for high-risk systems, including biometrics

The EU has reached a provisional agreement on changes to the AI Act that postpone rules on high-risk AI systems,…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events