<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.munoz-wimse-authorization-evidence" target="https://datatracker.ietf.org/doc/html/draft-munoz-wimse-authorization-evidence-00">
   <front>
      <title>Signed Authorization-Evidence Records for WIMSE-Authorized AI Agent Actions</title>
      <author initials="C." surname="Munoz" fullname="Christian Munoz">
         <organization>Keel API, Inc.</organization>
      </author>
      <date month="May" day="15" year="2026" />
      <abstract>
	 <t>   This document specifies a companion profile to the AI Agent
   Authentication and Authorization draft [I-D.klrc-aiagent-auth],
   defining a signed authorization-evidence record produced by WIMSE-
   authorized AI agent actions.  The evidence record (referred to as a
   Permit) commits cryptographically to the canonical request bytes
   dispatched after authorization, satisfies the audit minimum
   requirements enumerated in Section 11 of the companion draft, and
   composes with HTTP Message Signatures, OAuth access tokens, and
   Shared Signals Framework eventing without requiring modifications to
   those existing standards.  The profile is anchored in the SCITT
   profile defined in [I-D.munoz-scitt-permit-profile].

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-munoz-wimse-authorization-evidence-00" />
   
</reference>
