@techreport{zambo-aer1-01, number = {draft-zambo-aer1-01}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-zambo-aer1/01/}, author = {Brennan Zambo}, title = {{AER-1: A Portable Execution Receipt for AI Agent Tool Calls}}, pagetotal = 12, year = 2026, month = sep, day = 26, abstract = {This document specifies AER-1, a small vocabulary for recording one AI agent tool call as a portable, independently checkable execution receipt. A receipt identifies the execution, records when it happened, preserves the canonical bytes used for the output commitment, names the tool and caller scope, carries a provenance class, and resolves at a stable public URL. The format separates what the system observed from claims about the outside world, and it separates provenance (who ran or reported the action) from the record itself. A reference implementation is deployed, and its receipts are publicly verifiable without an account or token.}, }