Autonomous AI agents are increasingly entrusted with high-stakes execution: conducting financial transactions, synthesizing news and legal intelligence, writing code, and collaborating via multi-agent protocols (MCP, A2A).
Yet agents today rely on standard web protocols (HTTPS / DNS) that provide zero guarantee of source integrity:
- ✖ HTTPS Authenticates Servers, Not Provenance: A TLS certificate only proves that encrypted packets originated from an IP address. It does not prove the claim was authored by a valid human/agent authority, nor that the underlying document was not hallucinated or altered.
- ✖ The Temporal Revocation Blind Spot: If a rogue agent or terminated employee has their credentials revoked at 12:00:00 UTC, standard systems cannot deterministically prove whether an asserted fact was signed at 11:59:59 or 12:05:00 without complex external time-stamping authorities.
- ✖ Context Poisoning & Hallucination: An agent consuming unanchored web articles or scraped PDFs cannot mathematically verify bit-for-bit identity against primary source evidence.
The Lantrn Protocol provides an unmediated, mathematically deterministic provenance engine that bridges physical evidence, cryptographically rotated identities, and autonomous agent verification.
When an AI agent requests context through a FastMCP endpoint on visalian.com or our decentralized Handshake root (.rnd), it receives a self-contained ProvenancePackage. In milliseconds, the agent evaluates the proof graph against its local policy, mathematically rejecting tampered evidence or post-revocation signatures.
| Capability | Standard Web (HTTPS + ICANN) | Lantrn Protocol (§385-408) | Impact on Autonomous AI Agents |
|---|---|---|---|
| Primary Evidence Integrity | None (Mutable web content) | Bit-exact SHA-256 PrimaryEvidence | Guarantees agent is reading genuine unaltered government/corporate records. |
| Temporal Validity Check | Coarse (Certificate expiration only) | Microsecond Temporal Bounding + Revocation Log | Instantly catches assertions created after key revocation or termination. |
| Key Rotation Continuity | Breaks history or requires CA reissue | Cryptographic Rotation DAG (Parent-Child Linkage) | Maintains decades of continuous trust across key upgrades. |
| Machine Explainability | Error codes / TLS failures | Explainable Audit Decision + Decision Receipt Hash | Agents understand exactly WHY an assertion failed and can quarantine bad inputs. |
| Root of Trust | ICANN / CA Oligopoly (Seizable) | Decentralized Handshake Full Node + PowerDNS | Zero-trust, censorship-resistant sovereign naming for agent fleets. |
LogicalEntity
The sovereign identity abstraction representing organizations, newsrooms, legal bodies, or autonomous agent instances.
type: "ORGANIZATION"
Credential & Rotation
Ed25519 signing keys bound to temporal windows. Keys reference parent keys via rotated_from_id to maintain cryptographic continuity without trust resets.
valid_to: T1
rotated_from_id: "cred-2025"
PrimaryEvidence
The immutable bit-level anchor. Contains the SHA-256 fingerprint, byte size, and URI of the ground-truth physical or digital artifact.
uri: "s3://evidence/doc.pdf"
ProofObject & ProofEdge
Cryptographic signatures binding a claimed fact to the signing credential and primary evidence. Forms edges in the provenance DAG.
signature: c4b8...e91a
ProvenancePackage
A portable, machine-verifiable container carrying the claim, entities, credentials, proofs, and evidence graph for zero-trust exchange.
root_entity_id: "entity-01"
PolicyAuditDecision
Deterministic policy evaluation producing a boolean verdict (is_admissible), granular failure reasons, and a mathematical SHA-256 receipt.
decision_receipt_sha256: 7e2d...
+----------------------------------------------------------------------------------------------------------------+
| LANTRN PROVENANCE VERIFICATION PIPELINE |
+----------------------------------------------------------------------------------------------------------------+
[PRIMARY EVIDENCE] [LOGICAL ENTITY] [CLAIM / ASSERTION]
Original Source PDF / Data Newsroom / Agent Identity e.g. Groundwater Moratorium
SHA-256: 4f1a...b2c9 ID: entity-the-source-01 ID: claim-groundwater-2026
| | |
| Raw Byte Hash | Identity Authority | Factual Assertion
v v v
+---------------+ +--------------------+ +------------------+
| PrimaryEvidence | | Credential History | | ProofObject |
| SHA-256 Digest | | Ed25519 Key-Pairs | | Ed25519 Signature|
+---------------+ +--------------------+ +------------------+
| | |
| | Rotation Linkage |
| v (rotated_from_id) |
| +--------------------+ |
| | Active Credential |------------------------+
| | (Temporal Window) |
| +--------------------+
| |
+---------------------------------------+
|
v
+-----------------------------+
| PROVENANCE ENGINE DAG |
| - Verify Ed25519 Signature |
| - Check Document Hash Match|
| - Validate Temporal Window |
| - Confirm Key Lineage Path |
+-----------------------------+
|
+----------------+----------------+
| |
v v
[PASS: ADMISSIBLE] [FAIL: REJECTED]
• Zero Breaches • Temporal Breach (Post-Revocation)
• Decision Receipt Generated • Hash Mismatch (Tampered Content)
• Ingested into Agent Context • Quarantined / Refused by Agent
+----------------------------------------------------------------------------------------------------------------+
Select any of the 3 benchmark sources defined in the patent specification. Click "EXECUTE POLICY AUDIT" to trigger the in-browser cryptographic engine, inspect the raw ProvenancePackage, and verify the deterministic audit decision.
Authentic Newsroom with Key Rotation
Valid Ed25519 signature by rotated key (cred-alice-2025 → cred-alice-2026) bound to official Sanger Groundwater Moratorium resolution.
Compromised Analyst Post-Revocation
Entity credential was revoked at T-14 days. Assertion was signed at T-2 days (12 days after revocation). Catches backdated / unauthorized leaks.
Tampered Evidence & Corrupt Signature
Anonymous ephemeral agent claimed genuine tax doc hash, but actual underlying bytes were altered. Ed25519 signature fails verification.
Entity & Key Lineage
Pending...
Evidence SHA-256 Digest
Pending...
Temporal Bounding Check
Pending...
Ed25519 Signature Audit
Pending...
Why anchor an agent protocol to Handshake (HNS)?
- Censorship Immunity: Traditional ICANN TLDs (
.com,.org) are subject to registrar seizure, corporate gatekeeping, and registry revocation. Handshake anchors Top-Level Domains directly to an unmediated proof-of-work blockchain. - Autonomous Sovereign Namespaces: Lantrn manages a portfolio of 244 sovereign TLDs (e.g.
.rnd,.d6,.rdc). Subdomains likeupdates.rndormcp.rndcan be provisioned by agents on-chain with zero third-party mediation. - Dedicated Node (
hns-node-01): Our full node validates all blockchain state locally inus-central1-a, maintaining an unmanipulated local Urkel tree root of trust.
Registered in June 1999, visalian.com has 27 years of unbroken domain continuity. It serves as our authoritative master nameserver:
ns1.visalian.com. 86400 IN A 104.198.44.136
ns2.visalian.com. 86400 IN A 104.198.44.136
visalian.com. 3600 IN SOA ns1.visalian.com. hostmaster.visalian.com.
Running PowerDNS Authoritative Server v4.7.3 with an automated SQLite backend and REST API on port 8081, any domain across our portfolio points its NS records here, allowing agents to manipulate DNS programmatically with zero web dashboard logins.
Visiting AI agents interact directly with the Lantrn provenance engine via FastMCP:
Tool: get_claim_provenance(claim_id)
Retrieves the complete cryptographic ProvenancePackage for any asserted claim, including entity credentials, rotation history, and evidence hashes.
Output: { "claim_id": "...", "credentials": [...], "proofs": [...] }
Tool: audit_claim_provenance(claim_id)
Executes the §385-408 policy evaluation engine server-side, returning the admissibility verdict, detailed link checks, and SHA-256 decision receipt.
Output: { "is_admissible": true, "decision_receipt_sha256": "..." }