What happened
DigiCert announced the general availability of DigiCert AI Trust Manager, a component of its DigiCert ONE platform designed to help organizations discover, manage, and verify the identity of AI agents. The product introduces the DigiCert AI Passport, a cryptographically signed credential that links an agent to an accountable owner and defines its authorized actions through policy-based 'visas.' The system includes an automated kill switch that can block prohibited actions and revoke an agent's authority at the source.
DigiCert announced the general availability of DigiCert AI Trust Manager, a new solution within its DigiCert ONE platform. The product is designed to help organizations discover and manage the AI agents they own or operate. Its core function is to establish a verifiable identity for each agent, define its authorized actions, and provide a mechanism to revoke that authority when trust is compromised.
The central component of the system is the DigiCert AI Passport, described as a portable, cryptographically signed credential. This passport verifies an agent's identity and connects it to an accountable owner. It utilizes policy-based 'visas' to specify which systems, data, and actions the agent may access, as well as the duration of that authority. Because these credentials are portable, other systems and organizations can independently verify the agent's identity and permissions without relying on the original identity provider.
The product includes an automated kill switch feature. If an agent attempts a prohibited action, the system blocks the action and, based on policies set by the agent's owner or passport issuer, can immediately revoke the agent's authority at the source and quarantine it. DigiCert cited a July 2026 survey of 1,001 IT and cybersecurity leaders, in which 78% reported experiencing an AI-related security incident or identifying an AI vulnerability in the previous year, to contextualize the need for such controls.
The launch is part of DigiCert's broader AI trust architecture, which applies cryptographic verification across AI agents, models, and content. The company positions this as an extension of its two-decade history of providing cryptographic infrastructure for the internet, now applied to the emerging domain of autonomous AI agents.
Source details: technuter.com ↗
Why it matters
This launch addresses a critical gap in enterprise security infrastructure, which was traditionally built for human employees rather than autonomous AI agents. By providing a portable, cryptographically verifiable identity for agents, DigiCert aims to enable organizations to deploy agentic AI with greater confidence. The product allows receiving organizations to independently verify an agent's identity and permissions without relying on a single identity provider, potentially reducing the risk of unauthorized access or malicious actions by autonomous systems.
Traditional enterprise security systems were not designed to govern autonomous agents that move across applications, clouds, and organizations at machine speed. DigiCert AI Trust Manager attempts to bridge this gap by applying cryptographic identity principles to AI agents, treating them as distinct entities with verifiable credentials rather than just software processes.
The introduction of a portable identity standard for AI agents could significantly impact how enterprises adopt agentic AI. By allowing receiving organizations to independently verify an agent's authority, the system reduces the risk of 'trust on first use' vulnerabilities and enables more granular control over what an agent can do in different environments.
Industry experts cited in the report, including representatives from IDC and UKG, emphasized that enterprise AI buying has shifted from general trust to a demand for proof. The ability to provide cryptographic proof of identity and authority addresses a key frustration for buyers who are concerned about unverifiable vendor claims and the security risks of autonomous systems.
What to watch next
Monitor how enterprises integrate DigiCert AI Trust Manager with existing identity and access management (IAM) systems. Watch for adoption metrics or case studies demonstrating the effectiveness of the 'kill switch' in real-world security incidents. Additionally, observe whether other identity providers or cloud platforms adopt similar cryptographic standards for AI agent verification, which could standardize the approach to agentic AI security.
Observe whether major cloud providers or identity management vendors integrate with or adopt similar cryptographic standards for AI agent identity. The success of DigiCert's approach may depend on interoperability with existing enterprise infrastructure.
Watch for real-world deployments and case studies that demonstrate the effectiveness of the automated kill switch in preventing or mitigating security incidents involving AI agents.
Monitor regulatory developments regarding AI agent accountability and identity. As AI agents become more embedded in critical workflows, regulatory bodies may look to such cryptographic identity systems as a baseline for compliance.