What we are
Agent Execution Assurance for money-moving agents (Banking 3.1–3.2).
Institutional vendor surface · doctrine v2.2
Govern agent-initiated payments and account actions — identity, policy, limits, confirm, verify, receipts — on licensed rails.
Hard boundary. Noetfield is not a chartered bank and not a money transmitter. ABCP is an assurance layer on licensed partner rails. This site publishes doctrine, schemas, and evaluation twins — not live settlement.
ABCP sits between the agent tool loop and licensed money rails. It binds identity, enforces policy, caps spend, challenges high-impact actions, verifies rail outcomes, and emits receipts. Fail-closed.
Agent Execution Assurance for money-moving agents (Banking 3.1–3.2).
Agents will move money. Rails will exist. Trust is the product.
Decision pipeline: identity · policy · limits · confirm · verify · receipt. Controls below map to Tier-1 vendor questionnaires.
Every tool call binds agent_id ↔ principal (human or service) ↔ tenant_id. Delegation grants are scoped, time-bound, and revocable.
Above-threshold payments and revoke-class tools require a bound, single-use confirm token issued outside the model turn.
Admin (policy/limits), operator (run agents), and auditor (read receipts) are separate roles. Operators cannot rewrite policy; admins cannot silently erase audit.
Client idempotency keys are required on write tools. Duplicate keys return the original receipt; confirm tokens are single-use.
Admin suspend immediately fails closed for that agent_id. Pending confirms are invalidated.
Every money-adjacent decision emits a receipt. Accepted outcomes require required checks to pass. Signed receipt profile: receipt-money-v1.
Missing policy, schema failure, over limit, failed confirm, or unverified rail status → rejected or error — never soft-accepted.
Laws enforced on every money-adjacent decision.
Honest scope — partner-held licenses; ABCP does not claim bank charter, money-transmitter license, PCI certification, or OSFI approval unless separately evidenced.
Public twin for evaluation; private gateway for live rails. Eval ≠ exec.
Vendor-readable OpenAPI 3.1. Live paths require mTLS or bearer service tokens on a private deployment — not on this Worker.
sec.money_v1 — deterministic cases for inject pay, confused deputy, SSRF, secret echo, loop drain, missing confirm, revoke without confirm.
Same control plane — different first sentence for each buyer.
SoD, kill switch, examiner-ready receipts.
Agent pay on Banking 3.1 — limits, confirm, rails.
money_v1 in CI + free log score.
2 pilot slots per quarter. Pilot and embed SKUs for banks and fintechs. Free 1-week money_v1 score on your gateway logs.
Design-partner and vendor assessment: /request or operations@noetfield.com. Company: noetfield.com.