>_Skillful
Need help with advanced AI agent engineering?Contact FirmAdapt
agentictrustlabs

agentictrustlabs

Organization

@agentictrustlabs

On GitHub since February 2026

60

Published Tools

0

Total Stars

5,705

Weekly Downloads

0

GitHub Followers

6

Public Repos

Published Tools

8 MCP Servers52 Agentsacross 2 categories

@agenticprimitives/agent-profile

richcanvas

Agent identity SDK: HCS-11-aligned typed profile schema (AgentCard), HCS-14 CAIP-10 nativeId helpers, mcpServer.verification methods (DNS TXT / signed URL / HTTP challenge / VP), canonical-JSON content-hash. Speaks identity-domain vocabulary only.

...more
MCP Servermcp
80/wk1 dir

@agenticprimitives/agent-account

richcanvas

ERC-4337 smart-account substrate: deterministic addressing, factory deployment, ERC-1271 signing, UserOp building.

Agentai-agents
256/wk1 dir

@agenticprimitives/audit

richcanvas

Append-only audit event schema + sink interface. Transport-agnostic; consumers wire concrete sinks (console / D1 / Cloud Logging / etc.).

...more
Agentai-agents
109/wk1 dir

@agenticprimitives/connect-auth

richcanvas

User authentication (passkey + SIWE + Google OAuth), JWT sessions, and pluggable signer interfaces.

Agentai-agents
153/wk1 dir

@agenticprimitives/connect

richcanvas

Agentic Connect — the SSO broker (spec 224 / ADR-0014). Mints CAIP-10-subject, no-owner AgentSessions (asymmetric + JWKS); drives entry-flow convergence (connect-auth verify → identity-directory resolve → issue/bootstrap/disambiguate) with assurance floor

...more
Agentai-agents
161/wk1 dir

@agenticprimitives/account-custody

richcanvas

Custody-layer SDK: CustodyPolicy ABI, CustodyAction enum + arg builders, EIP-712 typed-data helpers, and Custodian/Trustee/CustodyCouncil types. Speaks custody-domain vocabulary only — no delegation / steward / caveat concepts (those belong in @agenticpri

...more
Agentai-agents
76/wk1 dir

@agenticprimitives/agent-relationships

richcanvas

Agent relationships SDK: trust-fabric edge store (subject, object, relationshipType) with role taxonomy. Phase 1 ships edge-ID derivation + relationship-type constants + client skeleton; AgentRelationship.sol + RelationshipTypeRegistry.sol ports land in P

...more
Agentai-agents
294/wk1 dir

@agenticprimitives/agent-naming

richcanvas

Agent Naming Service SDK: hierarchical naming for Smart Agents (.agent TLD). Owns name normalization, namehash/labelhash, records schemas, and the AgentNamingClient (resolve / reverse / registry). Speaks naming-domain vocabulary only — no delegation / cav

...more
Agentai-agents
157/wk1 dir

@agenticprimitives/contracts

richcanvas

Solidity contracts + ABIs + flattened sources + per-network deployment addresses for the agenticprimitives stack.

Agentai-agents
219/wk1 dir

@agenticprimitives/identity-directory

richcanvas

Evidence-backed read model over canonical agents and their facets (ADR-0015 / spec 223). Declares the ports (NamingPort / OnChainReadPort / IndexerPort) + the query API with provenance + assurance. Not an authority; no eth_getLogs; no fallback. Adapters l

...more
Agentai-agents
170/wk1 dir

@agenticprimitives/delegation

richcanvas

EIP-712 smart-account delegations with caveats; web→agent→MCP token flow; session lifecycle.

MCP Servermcp
128/wk1 dir

@agenticprimitives/key-custody

richcanvas

Pluggable envelope encryption + signers + HMAC providers (local-AES / AWS KMS / GCP KMS). Pure crypto primitives; no session lifecycle (that's in delegation).

...more
Agentai-agents
267/wk1 dir

@agenticprimitives/ontology

richcanvas

Monorepo-wide formal vocabulary (RDFS/OWL T-box + SHACL/SKOS C-box + A-box fixtures) for agentic primitives. Off-chain source of truth the on-chain ontology (ADR-0009) instantiates. Ships TTL/JSON-LD artifacts + typed IRI constants.

...more
Agentai-agents
516/wk1 dir

@agenticprimitives/identity-directory-adapters

richcanvas

Port implementations for @agenticprimitives/identity-directory: NamingPort (wraps agent-naming), OnChainReadPort (viem readContract), IndexerPort (in-memory; SPARQL/GraphDB later). The one composition layer allowed to import agent-naming (spec 100 §4 / AD

...more
Agentai-agents
156/wk1 dir

@agenticprimitives/types

richcanvas

Cross-cutting branded types and chain primitives shared across @agenticprimitives/* packages.

Agentai-agents
194/wk1 dir

@agenticprimitives/mcp-runtime

richcanvas

Delegation-aware authorization middleware around the official MCP TypeScript SDK. The decision layer, not the SDK.

MCP Servermcp
75/wk1 dir

@agenticprimitives/content-primitives

richcanvas

Verifiable Content Substrate SDK: name, resolve, commit, entitlement-gate, and cite off-platform content controlled by third-party rights holders. Owns CanonicalLocus / CorpusManifest / ContentDescriptor / CitationAssertion / Entitlement (FRBR-aligned), d

...more
Agentai-agents
142/wk1 dir

@agenticprimitives/verifiable-credentials

richcanvas

W3C Verifiable Credentials envelope + Eip712Signature2026 proof + DOLCE+DnS Situation bases + ontology-shape schema registration. Substrate for layers 12–15 credential types.

...more
Agentai-agents
287/wk1 dir

@agenticprimitives/scripture-content-extension

richcanvas

Scripture vertical for the verifiable-content substrate: the Bible canon (OSIS book codes), a versioned versification model, the scripture.verse selector, and alias parsing (scripture:book.chapter.verse + tolerant forms) that normalizes many surface gramm

...more
Agentai-agents
161/wk1 dir

@agenticprimitives/fedcm-idp

richcanvas

FedCM IdP contract as pure builders + validators: web-identity manifest, provider config, accounts list, thin id-assertion claims, request validators. Generic; the app hosts + signs (ADR-0031).

...more
Agentai-agents
1 dir

@agenticprimitives/fedcm-rp

richcanvas

Relying-party FedCM wrapper: navigator.credentials.get({identity}) → IdP token. The FedCM strategy injected into browser-identity's chooseSignIn. FedCM-first, not FedCM-only (ADR-0031).

...more
Agentai-agents
1 dir

@agenticprimitives/attestations

richcanvas

AttestationRegistry SDK — EAS-aligned with bilateral consent. Owns Association + JointAgreement + Evidence + Outcome + Validation + TrustUpdate credential types asserted into a single on-chain registry per ADR-0023.

...more
Agentai-agents
140/wk1 dir

@agenticprimitives/geo-features

richcanvas

Off-chain geo CLAIM credentials + on-chain GeoFeatureRegistry helpers (spec 251). Features on chain; the agent↔feature claim is a private vault credential pointing to a (featureId, version).

...more
Agentai-agents
84/wk1 dir

@agenticprimitives/intent-resolver

richcanvas

Resolver layer skeleton (W1) — types + PassThroughResolver only. Full resolver engine deferred to W2.

Agentai-agents
64/wk1 dir

@agenticprimitives/related-agents

richcanvas

Private, holder-resident related-agent credentials (person↔org links as vault situation credentials, never on-chain edges — ADR-0025) + scoped-delegation read caveats + list-query shapes. Composes verifiable-credentials + delegation.

...more
Agentai-agents
141/wk1 dir

@agenticprimitives/payments

richcanvas

PaymentMandate + ContextBinding + MandateConstraints + open/closed mode discrimination. Three W1 rails (x402, wallet, sponsored-userop). PaymentReceipt asserted into AttestationRegistry per ADR-0023.

...more
Agentai-agents
116/wk1 dir

@agenticprimitives/fulfillment

richcanvas

FulfillmentCase lifecycle + Task/Message/Artifact (re-exported from mcp-runtime/a2a) + HandoffPolicy + EvidenceCredential + OutcomeCredential issuance.

...more
MCP Servermcp
64/wk1 dir

@agenticprimitives/a2a

richcanvas

Async, delegation-authorized Agent-to-Agent (A2A) task transport: Task/Message/Artifact runtime over a TaskStore port, JSON-RPC method handlers, SkillHandler dispatch, the A2aWireAdapter client, and scoped-grant caveat builders. Transport-agnostic core (s

...more
Agentai-agents
151/wk1 dir

@agenticprimitives/agreements

richcanvas

Commitment-only AgreementRegistry SDK. Owns AgreementCredential shape (PD-22) + commitment math + bilateral status transitions + joint-assertion gateway.

...more
Agentai-agents
140/wk1 dir

@agenticprimitives/agent-skills

richcanvas

Off-chain skill CLAIM credentials + on-chain SkillDefinitionRegistry helpers (spec 251). Definitions on chain; the agent↔skill claim is a private vault credential pointing to a (skillId, version).

...more
Agentai-agents
63/wk1 dir

@agenticprimitives/intent-marketplace

richcanvas

Direct Lane intent matchmaking. Intent + ConstraintSet + AssumptionSet + ResolutionReceipt + IntentMatch + composite-score ranking. Resolver layer 4 folded into PassThrough stub in W1.

...more
Agentai-agents
38/wk1 dir

@agenticprimitives/key-authorization

richcanvas

Policy-bound one-time key release (spec 277 §14): DecryptGrant construction + KAS verification + one-time replay store. Authority stays delegation/entitlement/policy; key-custody does the DEK unwrap.

...more
Agentai-agents
1 dir

@agenticprimitives/delegated-signer

richcanvas

Generic named delegated-signer resolution — compose agent-naming + agent-account + delegation + key-custody into a signer for a named identity, authorized by a delegation chain. Vertical-agnostic; naming/account are injected.

...more
Agentai-agents
218/wk1 dir

@agenticprimitives/ap-kms

richcanvas

Manifest-driven managed-KMS orchestrator: provision per-identity Cloud-KMS HSM signing keys + per-key IAM, resolve each agent's Smart Agent (agent-naming), derive + verify the EVM delegate address, and push the minimal runtime secrets to deploy targets wi

...more
Agentai-agents
157/wk1 dir

@agenticprimitives/entitlements

richcanvas

Durable resource/action/field/purpose/classification authorization over VC-compatible entitlement credentials (spec 277 §10). Matching engine + resolver; VC-proof/status layer is additive.

...more
Agentai-agents
77/wk1 dir

@agenticprimitives/mcp-oauth

richcanvas

MCP OAuth compatibility adapter (spec 277 §6-§8,§15): protected-resource metadata, scopes, WWW-Authenticate, bearer-token claim validation, and the Agentic Grant Bundle bridge. OAuth is ingress-compat only, not the vault authority.

...more
MCP Servermcp
1 dir

@agenticprimitives/registry-kit

richcanvas

AP-native registry-building primitives: Smart-Agent-anchored registry entries, signed-card binding proofs, claim-slot schemas, lifecycle call builders, and event decoders for vertical registries. External registry publication/sync stays outside Ring 0.

...more
Agentai-agents
1 dir

@agenticprimitives/chain-state-viem

richcanvas

viem-backed ChainProvider adapter for @agenticprimitives/chain-state: readContract-only isRevoked / connection-agnostic signature validation / isAcceptedSessionDelegation reads, pinned to a block for evidence.

...more
Agentai-agents
1 dir

@agenticprimitives/connect-client

richcanvas

Generic relying-party connect client: hand off to the central-auth Home (FedCM-first → OIDC redirect/popup), exchange the code for an SA-signed scoped delegation. The relying half of spec 230/259; no credential ever originates in the relying app.

...more
Agentai-agents
162/wk1 dir

@agenticprimitives/edge-runtime

richcanvas

Vendor-neutral edge ADMISSION layer: the EdgeAdapter interface, trusted-header hygiene, the GatewayAssertion verification port, and the admission pipeline (route resolution + size/depth/envelope + Stage-1 abuse limit). Owns admission only, never authority

...more
Agentai-agents
1 dir

@agenticprimitives/edge-cloudflare

richcanvas

Cloudflare adapter for @agenticprimitives/edge-runtime: Request→AdmissionRequest extraction (exact-byte preserving), the Workers rate-limiter binding as a SoftRateLimiter, and Service-Binding dispatch. Imports the platform runtime; the edge core never doe

...more
Agentai-agents
1 dir

@agenticprimitives/service-agent

richcanvas

Generic service-agent capability framework (spec 283): define -> assert -> entitle -> delegate -> primitive-plan -> execute -> receipt. Provider-neutral; all authority evaluators + primitives are injected. Domain catalogs (e.g. @agenticprimitives/treasury

...more
Agentai-agents
151/wk1 dir

@agenticprimitives/capability-claims

richcanvas

Capability claim credentials (SkillClaimCredential) + on-chain SkillDefinitionRegistry helpers (spec 251). NOT Agent Skill SKILL.md packages.

...more
Agentai-agents
1 dir

@agenticprimitives/situations

richcanvas

Substrate Situation primitive (SituationV2, RoleBinding, EntityRef) — spec 324 W2.

Agentai-agents
137/wk1 dir

@agenticprimitives/fabric

richcanvas

The Agentic Interaction Fabric (spec 316): one canonical ExchangeRecordV1 + two-level exec/case FSM that absorbs messaging (envelope/inbox) and interactions (case/run) into an A2A-native, decentralized, low-latency substrate. Transport-agnostic core; the

...more
Agentai-agents
1 dir

@agenticprimitives/home

richcanvas

Portable Agentic Trust Home contracts (spec 310): signed Home manifests, surface descriptors, inbox bindings, action cards, managed-agent/connected-app projections, control-plane events. Schema + validation + deterministic projection only — no routes, UI,

...more
Agentai-agents
16/wk1 dir

@agenticprimitives/organization

richcanvas

Organization membership, enrollment, roles, revocation cascade (spec 324 W2).

Agentai-agents
1 dir

@agenticprimitives/witness

richcanvas

Evidentiary dispute attestation (spec 307 / G-11): deterministically walk a relationship record + verification receipt and attest in_scope / out_of_scope / revoked_before_execution / stale_status_used / insufficient_evidence. Facts, never remedies.

...more
Agentai-agents
28/wk1 dir

@agenticprimitives/treasury-service-agent

richcanvas

Intent-native DeFi Treasury Agent (spec 284): a domain composition over service-agent — skill catalog + profiles + treasury authority-scope/receipt helpers, evolving toward intent resolution, solver brokering, and DAG execution. Catalog = definitions + pl

...more
Agentai-agents
157/wk1 dir

@agenticprimitives/coordination

richcanvas

Coordination core: Endeavor, OutcomeSpecification, CoordinationPlan, Participation — spec 332 W1.

Agentai-agents
1 dir

@agenticprimitives/admission

richcanvas

Agentic Primitives Edge admission contracts: transport evidence, application authentication, canonical actor resolution, admission grants, and exact MCP invocation authorization. Zero runtime dependencies; admission is never authority.

...more
MCP Servermcp
1 dir

@agenticprimitives/agent-resolution

richcanvas

Provider-neutral agent resolution primitives: agent discovery policy, signed sequenced AgentServicePublication with anti-rollback verification, private resolution grants, connection invitations, audience projection, and resolution provider ports. Resoluti

...more
Agentai-agents
1 dir

@agenticprimitives/content-storage

richcanvas

Managed storage for Content Artifacts (SKILL.md, .ttl, .md, JSON-LD, images/video): the StoragePort provider abstraction + ContentArtifact/ArtifactBundle model that stores a content-primitives descriptor's bytes in a client-side-envelope-encrypted, conten

...more
Agentai-agents
1 dir

@agenticprimitives/orchestration-anthropic

richcanvas

Anthropic LLM binding for the @agenticprimitives/orchestration Planner port (the in-repo adapter, chain-state-viem pattern): createAnthropicPlanner turns a goal + exposed tools into a plan via Anthropic tool-use, plus a dependency-free fetch-based Anthrop

...more
MCP Servermcp
1 dir

@agenticprimitives/privacy-credentials

richcanvas

Privacy presentation layer (spec 305 / G-6): selectively-disclosed SD-JWT VC presentations, pairwise relationship pseudonyms, spec-304 issuer-key facet verification. One suite per request, never a fallback ladder.

...more
Agentai-agents
1 dir

@agenticprimitives/rate-control

richcanvas

Vendor-neutral traffic-rate-limit + hard-usage-budget controls: VerifiedAuthorityContext, typed RateControlProfiles, cost units, HMAC-keyed buckets, and SoftRateLimiter/HardBudgetStore/ConcurrencyLimiter interfaces with in-memory reference impls. Cloudfla

...more
Agentai-agents
1 dir

@agenticprimitives/provenance

richcanvas

The Ring-0 provenance projector (spec 316 §6): maps fabric exchanges + orchestration runs to a PRIVATE PROV-O / P-Plan A-box, and enforces the ADR-0040 public-projection firewall (S1). Sole writer of the private vault A-box; NEVER writes the public KB.

...more
Agentai-agents
1 dir

@agenticprimitives/rate-control-cloudflare

richcanvas

Cloudflare adapter for @agenticprimitives/rate-control: the SmartAgentBudgetDO Durable Object (the authoritative per-Smart-Agent hard-budget store, sharded by chainId+sponsorAgent) + a HardBudgetStore client that routes reserve/commit/release to the right

...more
Agentai-agents
1 dir

@agenticprimitives/surface-catalog

richcanvas

One SurfaceDescriptor per HTTP route / A2A skill / MCP tool, and the generators that derive A2A card skills, MCP tool declarations, OpenAPI 3.0, rate-limit profile bindings, and deployment preflight from it. Generic, transport-agnostic.

...more
MCP Servermcp
1 dir

@agenticprimitives/verification-receipts

richcanvas

Verifier-retained verification receipts (spec 303): commitment-split evidence that signature + scope + revocation were checked at time T. Public receipt = HMAC commitments only; private detail = vault-held opening material.

...more
Agentai-agents
1 dir