In this session, we show how an AI agent can be given a narrow, revocable slice of a person's authority, and how the counterparty on the other side of the transaction can verify it. Identifying an agent is not the hard part. Proving who authorized it, what they authorized, and whether the action falls inside those limits is.
The demo follows an office manager at a fictional enterprise who delegates part of her purchasing authority to an agent that reorders paper and toner. When the agent places the order, the vendor verifies the delegation chain: who granted the authority, what it covers, whether it is still valid, and whether this specific purchase sits inside it.
(0:00) Why agent identity alone is not enough
(2:10) Framing the problem: agents can transact, but cannot be trusted
(5:09) The three questions behind trusting an agent
(6:16) Delegation in four steps: issue, present, verify, revoke
(7:46) The scenario: Lisa, Atlas and Stockwell
(9:17) Demo: a cloud wallet embedded in the employee portal
(11:07) Purchasing authority as a credential with limits
(12:48) Delegating a narrow slice of purchasing authority
(13:57) The agent assembles and submits an order
(15:00) Verification from the vendor's side
(16:21) Audit log, and why agents are not privacy holders
(17:26) Changing the rules: schemas, rule sets and Cedar policy
(19:37) Capabilities: vendors, product categories and spend limits
(20:47) Delegation depth and sub-agent redelegation
(22:07) Using the same mechanism for human delegation
(23:26) Why an internal procurement use case
(25:31) Where the vendor's trust in the buyer comes from
(27:42) What the verification evidence actually contains
(30:13) Responsibility, accountability and the delegation chain
(32:07) Setup walkthrough: onboarding, issuance, delegation
(34:28) Transaction walkthrough and audit trail
(36:22) How much credential detail should a verifier ask for
(40:03) Technology used: REST API, Wallet SDK, MCP servers
(41:37) Agent wallets over MCP
(42:38) Landscape: bot blocking, OAuth extensions, TAP, KYA-OS, x401, Verifiable Intent
(46:43) Closed ecosystems versus industry-wide adoption
(48:31) Roadmap: standards alignment, auditing and reporting
(52:01) Payment settlement and AP2
(53:50) When delegation matters and when payment is enough
Website - https://www.dock.io/
LinkedIn - https://www.linkedin.com/company/docknetwork/