@techreport{zagarella-verified-human-root-01, number = {draft-zagarella-verified-human-root-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-zagarella-verified-human-root/01/}, author = {Roberto Antonio Zagarella}, title = {{Verified Human Root Attestation for Agent Delegation Chains and Audit Records}}, pagetotal = 11, year = 2026, month = aug, day = 23, abstract = {Autonomous software agents increasingly act under delegated authority, and emerging audit-record data models capture what an agent did, under which delegation, with which authorization state. In current practice the head of every such chain, and the identity axis of every such record, is a key, an account, or a workload identity. No standardized element establishes that an identified natural person, verified as live and present, stands at the head of the chain or behind the recorded action. This document defines the Verified Human Root Attestation (VHRA): a compact, privacy-preserving data structure asserting that a biometric proof-of-human verification of an identified natural person (or an M-of-N quorum of such persons) occurred at a specific issuance event. It further defines how a delegation chain binds a VHRA at its root such that the binding survives attenuation, and how audit and interaction records reference a VHRA so that any recorded agent action can be resolved to an accountable natural person without the verifier receiving any biometric material. This document is offered as input to the proposed AUDIT working group's data model work. It deliberately does not standardize biometric verification methods; it standardizes only the attestation structure, its bindings, and verifier obligations.}, }