{
 "acronym": "ANS",
 "adoption": {
  "by": null,
  "level": "unmeasured",
  "probe_run": null
 },
 "aliases": [
  "Agent Name Service"
 ],
 "analog": "DNS/DNSSEC name plus certificate transparency log",
 "collisions": [],
 "discovery": {
  "mechanism": "A Registration Authority verifies domain ownership via ACME and issues a dual certificate (public-CA Server Certificate + private-CA Identity Certificate binding a version-specific ANSName); lifecycle events are sealed into an append-only SCITT-aligned Transparency Log",
  "path": "none"
 },
 "dispute": {
  "claims": [
   "Whether GoDaddy's announced support targets this exact draft (v2, replacing draft-narajala-ans) or the agentic-identity space in general is not established by the press release alone."
  ],
  "summary": "This is an Independent Submission with no IETF working-group sponsorship and no implementation found in this pass; the GoDaddy/Infoblox press release announces support for standards in this space generally and should not be read as confirmation that ANS v2 specifically has been deployed."
 },
 "evidence": [
  {
   "claim": "ANS v2 anchors every agent identity to a DNS domain name, issues dual PKI certificates via an ACME-verified Registration Authority, seals lifecycle events into a SCITT-aligned Transparency Log, and defines three assurance tiers (Bronze: PKI; Silver: PKI+DANE; Gold: PKI+DANE+Transparency Log)",
   "date": "2026-04-15",
   "label": "VERIFIED",
   "url": "https://datatracker.ietf.org/doc/draft-narajala-courtney-ansv2/"
  },
  {
   "claim": "GoDaddy and Infoblox announced joint support for open standards for AI-agent discovery, identity and verification",
   "date": "2026-05-14",
   "label": "REPORTED",
   "url": "https://aboutus.godaddy.net/newsroom/news-releases/press-release-details/2026/Infoblox-and-GoDaddy-Support-Open-Standards-for-AI-Agent-Discovery-Identity-and-Verification-2026-0acKMntvOC/default.aspx"
  }
 ],
 "form": "dns-record",
 "governance": "IETF Independent Submission (individual draft; not sponsored by a chartered WG); replaces the authors' earlier draft-narajala-ans",
 "group": null,
 "history": [
  {
   "date": "2026-09-05",
   "note": "seeded from Exa Agent research run"
  },
  {
   "date": "2026-09-06",
   "note": "verified against draft-narajala-courtney-ansv2-01 primary text and the GoDaddy/Infoblox press release"
  }
 ],
 "id": "ans",
 "implementation": "none-found",
 "last_verified": "2026-09-06",
 "name": "Agent Name Service v2 (ANS)",
 "native_status": "Active Internet-Draft, Intended Status: Informational",
 "origin": {
  "date": "2025-05",
  "org": "Scott Courtney (GoDaddy), Vineeth Sai Narajala (OWASP), Ken Huang, Idan Habler, Akram Sheriff (Cisco) — Independent Submission"
 },
 "part_of": null,
 "parties": [
  "agent-agent",
  "agent-registry"
 ],
 "phase": "draft",
 "probe": {
  "method": "GET",
  "on_absent": "No ANS identity is bound to the domain; the agent cannot be verified at any of ANS's three assurance tiers (Bronze/Silver/Gold)",
  "parse": "Resolve the ANSName's Identity Certificate chain and check the Transparency Log for a matching sealed registration event",
  "path": "n/a — no fixed well-known path or DNS record type is defined in the draft text reviewed"
 },
 "question": "What domain-anchored identity belongs to an autonomous agent, and at what assurance tier can that identity be trusted?",
 "scope": "general",
 "spec_url": "https://datatracker.ietf.org/doc/draft-narajala-courtney-ansv2/",
 "step": "identify",
 "summary_md": "Agent Name Service v2 (ANS) is a proposed identity architecture that anchors every autonomous agent's identity to a DNS domain name it controls, rather than to a platform-specific account or an unverified self-asserted name [1]. A Registration Authority (RA) verifies domain ownership via the ACME protocol (the same mechanism Let's Encrypt uses for TLS certificates) and then issues two certificates: a Server Certificate from a public Certificate Authority, and an Identity Certificate from a private CA binding a version-specific \"ANSName\" to that domain [1]. Every lifecycle event (issuance, rotation, revocation) is sealed into an append-only Transparency Log aligned with the IETF's SCITT (Supply Chain Integrity, Transparency, and Trust) work, and clients can pick from three assurance tiers — Bronze (PKI only), Silver (PKI plus DANE), or Gold (PKI plus DANE plus the Transparency Log) — matched to how much a given transaction has at risk [1].\n\nIt solves domain-anchored, auditable agent identity where the party relying on the identity did not provision it. Its design explicitly decouples identity issuance (owned by the RA) from discovery (left to independent, competing Discovery Services that index the sealed events), and separates a three-layer trust model: Layer 1 foundational identity (this protocol), Layer 2 operational-maturity attestation by third-party assessors, and Layer 3 real-time behavioral reputation scoring — only Layer 1 is specified here [1]. It does not itself define reputation scoring, message formats for agent-to-agent communication, or any fixed DNS record type or well-known HTTP path we could locate in the text reviewed; those remain open or left to Discovery Services.\n\nCurrent state: an Independent Submission Internet-Draft — not sponsored by any IETF working group — first published as draft-narajala-ans in May 2025 and renamed/rewritten as draft-narajala-courtney-ansv2, currently at revision -01 (last updated 2026-04-15) [1]. Authors span GoDaddy, OWASP, and Cisco.\n\nWho implements it: no running implementation, reference code, or deployed Registration Authority was found in this pass. GoDaddy and Infoblox issued a joint press release in May 2026 announcing support for open standards for AI-agent discovery, identity and verification, but this is a statement of intent about the space rather than confirmed evidence that ANS v2 specifically is deployed [2].\n\nDisputed or unknown: whether GoDaddy's announced support is for this exact spec version; whether any Registration Authority or Discovery Service exists yet; and how the fixed discovery mechanics (DNS record type, well-known path) will be finalized are all open.",
 "track": "community",
 "version": {
  "date": "2026-04-15",
  "label": "draft-narajala-courtney-ansv2-01, last updated 2026-04-15 (replaces draft-narajala-ans, first published 2025-05)"
 }
}