TRAIL Protocol provides a vendor-neutral identity layer for AI agents, built on W3C Decentralized Identifiers. Designed to support EU AI Act compliance: verifiable, auditable, and interoperable. TRAIL Protocol liefert eine herstellerneutrale Identitatsschicht fur KI-Agenten, aufgebaut auf W3C Decentralized Identifiers. Entwickelt fur EU-AI-Act-Konformitat: verifizierbar, pruefbar und interoperabel.
Every AI agent gets a W3C-compliant DID (did:trail) anchored in a vendor-neutral trust registry. No vendor lock-in, no single point of failure.Jeder KI-Agent erhalt eine W3C-konforme DID (did:trail), verankert in einem herstellerneutralen Trust Registry. Kein Vendor-Lock-in, kein Single Point of Failure.
Ed25519 signatures with DataIntegrityProof (eddsa-jcs-2023). Crypto-agile architecture ready for post-quantum migration.Ed25519-Signaturen mit DataIntegrityProof (eddsa-jcs-2023). Krypto-agile Architektur fur post-quanten Migration vorbereitet.
Full transparency on who built an AI agent, what it's authorized to do, and how it has performed. Cryptographically signed and verifiable.Volle Transparenz daruber, wer einen KI-Agenten gebaut hat, was er darf und wie er sich verhalten hat. Kryptografisch signiert und verifizierbar.
| ArticleArtikel | RequirementAnforderung | TRAIL CapabilityTRAIL-Fahigkeit | Status |
|---|---|---|---|
| Art. 13 | Transparency: AI systems must allow human oversight and include sufficient transparency | did:trail DID provides unique verifiable identity; TrailAIPolicyService enables machine-readable disclosure of AI system type and risk class |
DESIGN |
| Art. 14 | Human Oversight: Providers must design high-risk AI with tools for effective oversight | Verifiable Credentials create tamper-proof audit trail; trust score tracks behavioral consistency over time | DESIGN |
| Art. 26 | Deployer Obligations: Deployers must use systems in accordance with instructions | KYB-verified identity links agents to accountable legal entities; revocation mechanism enables immediate suspension | DESIGN |
| Art. 49 | Registration: Providers must register high-risk AI in EU database | TRAIL Registry serves as complementary technical registry alongside official EU database | GAP TRAIL is NOT the official EU AI database. Art. 49 registration required separately. |
| Art. 52 | Transparency for Certain AI: Users must be informed when interacting with AI | TRAIL DID can be presented in real-time; TRAIL Badge provides visual trust indicator | Q3 2026 |
| GDPR Art. 5 | Data Minimisation: Personal data must be adequate, relevant, and limited | No personal data in DID documents; signatures contain only public keys | DESIGN |
| GDPR Art. 25 | Privacy by Design: Data protection by design and by default | Fingerprint scheme enables verification without data disclosure; selective disclosure profile | DESIGN |
The complete did:trail method specification, including CRUD operations, trust model, security considerations, crypto agility, key rotation, and governance.Die vollstandige did:trail-Methodenspezifikation mit CRUD-Operationen, Trust-Modell, Sicherheitsbetrachtungen, Krypto-Agilitat, Key Rotation und Governance.
View on GitHubAuf GitHub ansehen →In-depth technical overview of the TRAIL architecture, trust model, credential framework, threat model, and EU AI Act alignment.Detaillierte technische Ubersicht der TRAIL-Architektur, des Trust-Modells, Credential-Frameworks, Bedrohungsmodells und EU-AI-Act-Ausrichtung.
Read WhitepaperWhitepaper lesen →Full source code, reference implementation (49 tests), DID document examples. Spec: CC BY 4.0. Code: MIT License.Vollstandiger Quellcode, Referenzimplementierung (49 Tests), DID-Dokument-Beispiele. Spec: CC BY 4.0. Code: MIT-Lizenz.
View RepositoryRepository anzeigen →Join the conversation. Ask questions, propose features, share your use case, or challenge the protocol design.Nimm an der Diskussion teil. Stell Fragen, schlage Features vor, teile deinen Use Case oder hinterfrage das Protokolldesign.
Join DiscussionsDiskussionen beitreten →