{"repo":"opena2a-org/agent-identity-management","free":true,"listed":false,"github":"https://github.com/opena2a-org/agent-identity-management","clone":"git clone https://github.com/opena2a-org/agent-identity-management.git","description":"The IAM layer for AI agents: cryptographic identity, capability authorization, and audit trails for non-human identities. Open source.","language":"Go","stars":56,"topics":["agent-security","ai-agents","cryptography","ed25519","identity-management","mcp-servers","agent-identity-management","nhi","non-human-identity","open-source-security"],"license":"Apache-2.0","category":"ai-agents","readme_excerpt":"Agent Identity Management (AIM) OpenA2A : CLI · HackMyAgent · Secretless · AIM · Browser Guard · DVAA Cryptographic identity, capability authorization, and audit trails for AI agents. Apache 2.0. Website · AIM Cloud · Discord Quick start Install the SDK and authenticate: Then protect any function with a capability grant: secure() generates an Ed25519 keypair, registers the agent with the AIM backend, and stores credentials at /.aim/ . @perform action signs every invocation, runs it through 5-step Fine-Grained Authorization, and records the outcome in the audit log. New to AIM? The SDK quickstart tutorial walks through this end to end. The same one-line shape works in Java and TypeScript. Auditing an existing codebase instead of integrating? The opena2a CLI provides a 6-phase review with no server required. See it work Same agent code, run twice. The injection lands on both. On the AIM-protected run, the outbound exfil is denied at the tool-call boundary because http:post is outside the agent's declared capability grant. This is the RAGBot-AIM A/B demo from DVAA, the intentionally vulnerable agent platform. Break an agent there, then watch AIM stop the same attack — no server, no API key, no network; identity, capability policy, and audit log live on disk. Three deployment modes Mode When Includes --- --- --- AIM Cloud Managed, fastest path Production-managed at aim.opena2a.org/get-started. Python and Java SDKs work out of the box. Self-hosted Team or fleet, your infrastructur","default_branch":null,"files":null,"tree":[],"storefront":"/r/opena2a-org","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/opena2a-org/agent-identity-management/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}