Keydris

Provable authority for agents that act on their own.

AI agents are starting to move real money and change production systems without a human in the loop. Keydris makes that safe: every action an agent takes carries a signed token proving it was authorized, and you can revoke that authority the instant it should end. Keydris never holds your funds or your private keys.

Get started in 5 minutes · See how it works

What you get#

Prove every action#

Each agent action carries a signed KIT (Keydris Identity Token) that states exactly what the agent may do and for how long. No token, no action.

Enforce at the edge#

The receiving system verifies the token at its own front door before the agent can connect or act. Authority is checked, never assumed across a trust boundary.

Revoke at machine speed#

When authority should end, it is pulled instantly across every boundary. A revoked token fails verification everywhere at once - you never wait for it to expire.

Stay audit-ready#

Every grant is sealed into an append-only, hash-chained log. The record is tamper-evident and ready for compliance, security review, or dispute resolution.

Who it is for#

Teams shipping autonomous agents that touch money, privileged APIs, or production infrastructure - and who need to answer, at any moment, "was this action authorized, and can I stop it right now?"

Ready to see it in action? Start with the quickstart.

Keydris — Documentation