Back to the registry
Agent passport

AGLedger - Change Control for AI Agents and Automated Work

AG Ledger · Cybersecurity & IT

No attestation published

Certification per AWS Marketplace.

Provenance reach4 of 12 layers traced

Evidence tier Source Confirmed · 4 captures on record

User ratingNot rated0 reviews on the listing
Runs onUnknownContainer
ProvenanceUnknown44% of the provenance layers this product can disclose
Evidence riskHighSign in to see the basis for this band.

What the publisher says

As described on AWS Marketplace.

AGLedger is a self-hosted notary engine for AI agents, RPA bots, CI pipelines, and any system that speaks HTTP or MCP. It runs entirely on your own infrastructure - Docker Compose or Kubernetes (Helm on EKS), on-premises or fully air-gapped - with no phone-home and no vendor in the data path. You hold the signing keys, the database, and the records.

SIGNED INTENT - Before the work, an agent records what it was told to do, the bar for "done right," and where the result should go - each entry Ed25519-signed and hash-chained the moment it is written. After a context wipe or a hand-off, the agent reads back its own goal byte-for-byte instead of reconstructing it.

Show the rest of the publisher’s description (3 more lines)

LIVE COORDINATION - When a result posts, a principal - a human, an agent, or a rules engine - renders the verdict, and AGLedger holds the signed record of accept or reject. Every subscriber hears it the instant it happens, inside one team or across company lines via peer-to-peer federation.

THE ACCOUNT, BY ARCHITECTURE - Every intent, verdict, and outcome is tamper-evident and attributable, verifiable offline by anyone holding the public keys, without trusting your infrastructure or ours. It produces the account the EU AI Act requires and satisfies Article 12's record-keeping requirements; the same records also serve ISO/IEC 42001, NIST AI RMF, and non-AI frameworks like SOX and HIPAA.

INTEGRATION AND DEPLOYMENT - An agent-optimized API (OpenAPI 3.0; responses carry nextSteps and recovery hints so agents self-correct), TypeScript and Python SDKs, a CLI, and an MCP server. Works with any model - Claude, GPT, Gemini - and any process that speaks HTTP. Contract types are your own JSON Schemas, registered through the API. Deploy on EKS or any Kubernetes via Helm, or Docker Compose on any Linux host; bring your own PostgreSQL (Aurora, RDS, on-prem) and your own Ed25519 keys. Perpetual license that fails open - no kill switch, no expiry, no quota.

Highlights

Highlighted by the publisher on AWS Marketplace.

Signed intent: agents recover their goal byte-for-byte after a context wipe or hand-off, each entry Ed25519-signed and hash-chained at the moment it happens.

Live coordination: a principal renders the verdict, AGLedger holds the signed accept or reject, and every subscriber hears it instantly - across teams or companies via peer-to-peer federation.

The account, by architecture: tamper-evident and verifiable offline by anyone holding the public keys. Self-hosted, even air-gapped - producing the account the EU AI Act's Article 12 requires.

Agent build and provenance

See the full provenance

The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.

Compliance

Government
  • FedRAMPConfirmedNot listed90%, registry-checkedNo FedRAMP Marketplace entry matched this vendor's domain, checked 2026-08-27registry recordas observed 2026-08-27

Confirmed means matched to a public authoritative registry. Claimed means the vendor or its listing states it, not yet cross-checked. A framework not shown was not found in any source we hold, which is not evidence against it. Not listed means a scoped registry check found no match for this vendor's domain: a No is a scoped registry check, not a compliance judgment. Confidence bands: 95% domain-verified, 90% registry-checked, 80% self-attested, 70% weak signal. Self-attested items marked “vendor's site” are gathered from the vendor's own website and are not verified by us.

Vendor

External enrichment

CompanyAGLedger LLCAutomated
HQUnited States of AmericaAutomated

Plans and pricing as listed

6 listed
AGLedger Enterprise - Single Database Instance
  • Units
$3,000.00
P12M
AGLedger Enterprise - Single Database Instance
  • Units
$3,000.00
P24M
AGLedger Enterprise - Single Database Instance
  • Units
$3,000.00
P36M
AGLedger Annual Support
  • Units
$1,000.00
P12M
AGLedger Annual Support
  • Units
$2,000.00
P24M
AGLedger Annual Support
  • Units
$3,000.00
P36M

Refund terms

As stated by the publisher on AWS Marketplace.

Full refund available within 30 days of activation, no questions asked. Contact support@agledger.ai with your AWS account ID to request a refund.

Sources

Marketplace listingaws.amazon.comSource
App certificationaws.amazon.comSource
StandardEulaStandardEulaSource

Publisher resources

1 link
Documentationagledger.aiSource

Linked repositories

RepositoriesUnknownUnknown

Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.

Pricing
Paid
6 plans listed
Delivery
Container
Email: support@agledger.ai URL: https://agledger.ai/docs Support description: All AGLedger Enterprise licenses include technical support via email with a 24-hour initial response SLA on business days. Support covers installation, configuration, upgrades, and troubleshooting of the AGLedger API and its deployment packaging (Docker Compose, Helm, federation). A built-in diagnostic tool (GET /admin/support-bundle) generates a sanitized system report that can be securely uploaded to our support team for faster resolution. Critical production issues (P0) receive priority handling. Documentation, integration guides, and API reference are available at agledger.ai/docs.
Open the source listing ↗

Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.