Algorand Unveils AC2 Protocol to Secure Next-Gen AI Agents

TL;DR
- AC2 gives AI agent approvals cryptographic proof through FIDO2 passkey signatures while keeping private keys and API credentials outside compromised runtimes.
- The protocol combines DIDComm v2.0, WebAuthn/FIDO2 and WebRTC DataChannel, with potential uses spanning payments, code deployments, APIs and client communications.
- Algorand plans bounded delegation so agents can act autonomously within signed limits, while the open AC2 specification, wallet implementation and plugin are already available for developers today.
Algorand Foundation and Pera Wallet have introduced AC2, an open protocol designed to secure AI agents when they request sensitive actions such as payments, code deployments or API authorization. The system addresses two weaknesses Algorand says remain common in agent setups: approvals that cannot be cryptographically proven and credentials exposed inside compromised runtimes. The central idea is to separate human intent from agent access, giving every critical approval a verifiable signature without handing over private keys. AC2 uses device-based authorization so users can confirm exactly what an agent is permitted to execute.
… Continue reading the full article at the original source below.


