Overview
The Grantex Trust Registry is a public, searchable directory of organizations that publish AI agents. Organization records use DIDs as stable identifiers and can prove domain ownership through a DNS TXT challenge.Search and organization-detail endpoints are public. Registration and DNS verification require a developer API key. The full listing of registry records, across developers, can be restricted to the service administrator credential, and operators should turn that on.
Public Search
q, verified, badge, category, limit, and cursor. Results include an organization DID, name, description, verification level, stored badges, basic statistics, website, and logo URL when present.
Organization Detail
Registration and Verification
Registration returns a one-time plaintext verification token and DNS instructions. The service stores only a hash afterward._grantex-verify.acme.example, trigger verification with the returned orgId (the DID is also accepted by the API):
verified, records dns-txt, clears the stored token hash, and adds the dns-verified marker.
Operator Listing
GET /v1/trust-registry returns the 100 newest registry records of every developer, verified or not. Because it crosses tenants, it is meant for the platform operator, but by default any developer API key can still read it, under that developer’s plan budget.
Set TRUST_REGISTRY_ADMIN_LISTING_ENFORCED=true (read when the service starts) to restrict it. Operators should turn this on. With it on, the listing takes the service administrator credential (ADMIN_API_KEY, as Authorization: Bearer <key>), never a developer API key, and is limited to 20 calls a minute per address:
- A developer API key, a wrong key or no key is refused with
401 UNAUTHORIZED, and nothing is read. - While
ADMIN_API_KEYis not configured, every call is refused with503 SERVICE_UNAVAILABLE.
true, keep the existing developer-API-key behaviour unchanged.
To look up one organization, use the public detail endpoints above.
Endpoint Summary
Accredited Issuers and Agent Attestations
The organization registry above is self-service, and its strongest check is DNS ownership. A separate layer of the registry lets accredited issuers vouch for agents:- Accredited issuers. The registry operator accredits each issuer for specific trust-mark types, with a static JWKS and a
status_list_base. - Attestations. An issuer posts an attestation, a compact JWS, only for an agent key whose possession has been proven.
- Trust levels. The registry computes a level (
basic,verified,attestedorattested_verified) and flags, publishes its acceptance of each attestation on its own status lists, and fails closed: anything suspended readsbasic. - Reads. Relying parties read the result through the minimised agent lookup or the signed manifest
/.well-known/agent-registry.json. - Passport-bound grants. A grant can be bound to an Agent Passport, an SD-JWT VC from an accredited issuer, so it stops working when the registry no longer stands behind the passport.
REGISTRY_PUBLIC_ENDPOINTS_ENABLED, and passport-bound grants are behind PASSPORT_BOUND_GRANTS_ENABLED. Both are off by default; see Self-Hosting.