DigiCert has announced support for the Nvidia Open Agent Safety Platform to help enterprises establish verifiable identity and authority for autonomous AI agents.
At the centre of the Nvidia Open Agent Safety Platform is Nvidia OpenShell, an open, secure runtime that places infrastructure-level controls around autonomous agents. OpenShell permits nothing by default, enforces policy outside the agent’s process, and records every decision to allow or deny an action.
DigiCert complements those controls with DigiCert AI Trust Manager, which helps organizations discover and manage the AI agents they own or operate, establish each agent’s verifiable identity and ownership, define what it is authorized to do, and revoke that authority with a kill switch when trust changes.
Together, the technologies address two critical requirements for autonomous AI: identifying which agent is acting and controlling what an agent can do.
“AI agents are starting to do real work across business systems, and that means companies need to know exactly which agent is acting, what it’s allowed to do, and when to stop it,” says Amit Sinha, CEO of DigiCert. “Nvidia helps create the boundary around the agent. DigiCert helps establish who that agent is and what authority it has. Together, that gives enterprises a much clearer way to put autonomous AI to work with control and accountability.”
Nvidia OpenShell lets an agent retain its reasoning and skills while every file, network, process, credential, and inference call crosses a boundary controlled by the platform. Because enforcement occurs outside the agent’s process, even a compromised agent cannot override the restrictions. Nvidia Sentry on BlueField-4, powered by Nvidia DOCA, adds hardware-isolated, out-of-band monitoring of agent activity and security-policy enforcement that does not depend on the host. Nvidia Vera supplies the compute for agents’ CPU-intensive workloads.
DigiCert AI Trust Manager extends the OpenShell environment with enterprise-class agent management built around identity, authority, policy, and lifecycle control. DigiCert AI Trust Manager gives each agent a DigiCert AI Passport, a portable, cryptographically signed credential that verifies an agent’s identity and connects it to an accountable owner. Policy-based “visas” define which systems, data, and actions the agent may access, as well as how long that authority lasts.
Because the DigiCert AI Passport and its permissions travel with the agent, other systems and organizations can independently verify them without relying on the same identity provider. If an agent attempts a prohibited action, DigiCert’s automated kill switch can block it and, under policies set by the agent’s owner or passport issuer, revoke its authority at the source and quarantine it.
DigiCert’s support for Nvidia Open Agent Safety Platform is designed around four areas:
- Identity that policy can act on. Agents running within an OpenShell environment can be associated with an AI Passport so policies can rely on verified identity.
- Verification before execution. Agents, models, and MCP servers can be signed and associated with an AI Bill of Materials to help establish what is being deployed before execution.
- Auditable evidence. OpenShell records policy allow-and-deny decisions. DigiCert’s approach is designed to bind trusted identity and cryptographic evidence to those interactions, creating a stronger record for governance and audit.
- Trust across company boundaries. PKI already enables independent verification of identity across the internet. DigiCert is extending that same trust model to agents so organizations can verify AI identities even when agents interact across companies, clouds and technology environments.