DigiCert Launches AI Trust Manager for AI Agent Governance

0
DigiCert has announced the general availability of DigiCert AI Trust Manager, part of the DigiCert ONE platform. The solution helps organizations discover and identify AI agents, establish ownership and accountability, and govern what actions agents are authorized to perform. It is designed to maintain AI agent trust and control as agents operate across applications, cloud environments, and organizational boundaries.

AI agents have quickly become active participants in business. They can access sensitive data, use software tools, write code, make decisions, and complete transactions with limited human involvement. But most enterprise security systems were built to manage people and applications within a single organization, not autonomous agents moving between organizations at machine speed.

The risks are already emerging. In a July 2026 DigiCert survey of 1,001 IT and cybersecurity leaders, 78% said their organizations had experienced an AI-related security incident or identified an AI vulnerability during the previous year.

“For more than two decades, DigiCert has provided the cryptographic infrastructure that helped the internet scale,” said Amit Sinha, CEO of DigiCert. “We are now bringing that proven trust model to AI agents so organizations can verify who they are, who owns them, and what they are authorized to do.”

Traditional identity systems work like employee badges, establishing trust within a single organization. At the center of DigiCert AI Trust Manager is the DigiCert AI Passport. It’s a portable, cryptographically signed credential that verifies an agent’s identity and connects it to an accountable owner. Policy-based “visas” define which systems, data, and actions the agent may access, as well as how long that authority lasts.

Because the DigiCert AI Passport and its permissions travel with the agent, other systems and organizations can independently verify them without relying on the same identity provider. A receiving organization can deny the agent access within it’s own environment.

If the agent attempts a prohibited action, DigiCert’s automated kill switch blocks it and, under policies set by the agent’s owner or passport issuer, can immediately revoke its authority at the source and quarantine it before harm occurs.

DigiCert AI Trust Manager allows enterprises to:

  • Find and identify agents: Discover AI agents that were purchased, built internally or operating within the business, and connect each one to an accountable owner.
  • Set clear limits: Define the systems, data, and actions an agent may access, and how long its permission remains valid.
  • Extend trust across organizations: Allow other systems and companies to independently verify an agent without requiring both parties to use the same identity provider.
  • Respond when trust changes: Update credentials, expire permissions, or revoke an individual agent or groups of agents upon policy, risks, or any other changes.

“Enterprise AI buying has moved from trust to proof. Buyers are ranking verifiable security controls as their top priority and name unverifiable vendor claims as their top frustration,” said Grace Trinidad, Research Director, AI Security and Trust, IDC. “Cryptographic identity, attestation, and revocation for agents, models, and MCP servers are the machinery that produces this proof, which in turn produces trust, and DigiCert is pointing the identity discipline the internet already runs at scale at exactly that problem.”

“As AI agents become more embedded in enterprise workflows, establishing clear identity and accountability will be essential to deploying them responsibly at scale,” said Ajitha Choudary, Vice President of Global Security Engineering & IAM at UKG. “We see DigiCert AI Trust as a promising approach to extending proven principles of digital identity to this new class of autonomous systems. The ability to verify an agent’s identity, define what it is authorized to do, and maintain visibility into its actions could give organizations the foundation they need to adopt agentic AI with greater confidence.”

DigiCert AI Trust Manager is part of DigiCert’s broader AI trust architecture, which applies cryptographic verification across AI agents, models, and content. It complements existing identity and cybersecurity systems by providing a portable foundation for verifying an agent’s identity and authority wherever it operates.

Learn more at www.digicert.com

Related News:

Bitsight Brings Risk Intelligence Data to Agentic AI Workflows

WitnessAI Launches AI FinOps to Control Enterprise AI Spend

Share.

About Author

Leigh Porter's first love is to love people. Beginning her career as a neonatal RN was an obvious choice until life threw the curve ball to embark on a new IT endeavor. Pursuing this fresh career was a piece of cake with her resilient and steadfast character. Outside of the office, Leigh also diligently gives much of her time faithfully as a nationally awarded volunteer leader to a very dear to her heart organization.