For bot-defense vendors

Heuristics + verified-bot signal. Both in your stack.

Your detection engine is excellent at telling humans from bots. It struggles to tell *good* bots from *bad* bots — because by behavior alone, they look the same. Customers complain when their shopping assistants get blocked. Scalpers get through eventually anyway. The structural limit isn't the engine; it's the input signal.

AgentPKI is the positive signal you don't have today. Bots that bothered to identify themselves arrive with cryptographic passports + declared intent. Your engine gains a new high-precision class: "verified bot, intent matches site policy → allow." Heuristics still catch the rest.

Three reasons this matters for a bot-defense vendor.

Not "ask your customer to deploy our protocol." This is "ingest one more signal in your existing product."

Lower false-positive rate

"Customer's shopping assistant got blocked" is the #1 enterprise support ticket in bot management. A verified positive signal lets you allow these without lowering protection against unknown bots.

Differentiation vs your competitors

First major vendor to integrate verified-bot identity is the one that gets the press cycle, the analyst report, the case studies. Three of the top six aren't shipping anything in this category yet.

Revenue from agentic AI tail wind

Claude Computer Use, OpenAI Operator, Microsoft Copilot Agents are mass-launching in 2026. Their traffic to your customers' sites will explode. You're either the vendor that handles it well or the one that gets replaced.

How the integration works.

Lightweight. We're a vendor-neutral protocol; your detection engine remains your IP. The integration adds one feature to the request analysis pipeline.

1

Detect the passport

Look for an Agentpki-Token request header or query parameter. Most agents will adopt one of these conventions; the protocol is header-agnostic.

2

Verify at the edge

Call verify.agentpki.dev/v1/verify with the passport + the site as intent_check.site. p50 ~50ms. Or run your own verifier on the protocol open spec — we provide the reference impl.

3

Promote to allow / deny

Verdict allow + intent matches site policy → promote to your verified class. Verdict deny or no passport → continue through your existing detection logic.

The partnership shape

We bring the protocol. You bring distribution.

  • From us: open spec, reference verifier on Cloudflare Workers edge, issuer directory we co-maintain, joint case studies with reference customers.
  • From you: integration into your existing bot management product, joint go-to-market with us as the protocol partner, technical input on the v0.4 spec.
  • Pricing model: per-verify metered, or fixed annual license. Sensible for both deployment scales. Volume discounts and OEM terms negotiable.

Who we want to talk to first.

Talk to Founder

Personal reply from Founder within 48 hours. Tell us a bit about you — what you're building, what you'd want from AgentPKI, anything you want to push back on.

By submitting, you agree we can email you back. We don't share leads, ever.