Urgent.News

What's breaking now, across thousands of outlets.

AI

Before an AI agent acts: a shared contract for intent, provenance and evidence

I maintain PIC Standard (Provenance & Intent Contracts), an Apache-2.0 protocol for making AI agent actions checkable before they happen. The idea When an agent wants to do something with consequences (send a payment, export personal data, delete resources), PIC asks it to first propose that action in a structured form: its declared intent, the impact class of the action, where the inputs came…

The PIC Standard (Provenance & Intent Contracts) is an Apache-2.0 protocol that ensures AI agent actions are checkable before they take place. When an agent wishes to perform an action with consequences, such as sending a payment or deleting resources, PIC requires the agent to propose the action in a structured format. This proposal includes the agent's declared intent, the impact class of the action, the provenance of the inputs, the claims the agent relies on, and the evidence supporting those claims.

A verifier then checks the proposal against the contract, which can result in allow, block, or require-more-evidence decisions. Guard integrations enforce the decision before tool execution, while applications using the HTTP bridge must enforce the returned decision. The process runs locally, with trust roots under the operator's control, and cryptography is not the focus but rather a supporting element.

PIC aims to provide a shared protocol for agents built in various languages and frameworks, allowing for unified safety checks and agreement on action contracts. The project is open to contributions, with first-time contributors encouraged to focus on documentation, while more experienced developers can work on TypeScript evidence mode, Go or Rust verifiers, or security reviews.

The project is currently at version 0.9.0, with the next milestone being a cross-implementation release.

Written by urgent.news from Dev.to's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at dev.to →

More in AI

An offline voice agent for my terminal in 52 MB (Whistle + Needle)

Two of the biggest Hacker News threads this week were about Whistle, a 16.9 MB speech-to-text model, and DeepSeek V4.1 Flash.

  • Whistle, a 16.9 MB speech-to-text model, enables voice interface on terminal
  • DeepSeek V4.1 Flash serves as backup model for voice agent
  • Combined Whistle and Needle models occupy 52 MB disk space

More from Saturday 10 October →