[Placeholder README for ODIS repo]
This repository is part of the work of the Coalition for Secure AI (CoSAI). CoSAI is an OASIS Open Project and an open ecosystem of AI and security experts from industry-leading organizations. We are dedicated to sharing best practices for secure AI deployment and collaborating on AI security research and tool development.
For more information on CoSAI, please visit the CoSAI website and the Open Project repository, which contains our governance information and project charter.
ODIS defines an open, vendor-neutral architecture for establishing cryptographic identity, delegation, and governance for autonomous AI agents operating across enterprise trust domains. It augments existing OAuth 2.0, OIDC, SPIFFE, SCIM, and policy-engine infrastructure; it does not replace them.
ODIS addresses four foundational pillars of agentic identity: delegated user identity, agent code or package identity, agent runtime instance identity, and cascaded multi-agent delegation. The architecture is organized as three implementation layers: Passport, Bridge, and Router.
This specification is designed for adoption by identity providers, cloud platforms, agent-framework developers, and enterprise security teams. Conformance profiles allow incremental adoption.