AI AGENT ACTIONS
Money · data · communications · enterprise systems
Authority for AI agents at the policy layer. A firewall for AI agent actions at the execution boundary.
Fidacy is the execution firewall for payments, refunds, supplier changes and binding communications made by AI agents. Define what any agent may do, block what exceeds its mandate and independently prove every consequential action.
Works with the AI agents and frameworks your teams already run.
Fidacy already implements the core authority chain in software: identity, signed mandates, pre-action decisions, enforceable grants, revocation and independently verifiable evidence.
Money · data · communications · enterprise systems
Already implemented at the software authority layer.
Gateway · device identity · local enforcement · safety validation
Mission-level authority for robots, drones, vehicles and safety-critical autonomous infrastructure, without entering the motor-control loop.
≈90% is an architecture-reuse estimate, not physical-product readiness or safety certification.
Intelligence decides what to do.Authority decides whether it may happen.
Fidacy submitted a production-backed enforcement case study to Singapore's Model AI Governance Framework for Agentic AI consultation.
Read the technical contribution →Fidacy has joined Pillar I, contributing implementation practices for trustworthy AI and AI Act readiness.
View the AI Pact →Fidacy turns identity, authorization, enforcement and evidence into one compact authority layer between an AI agent and the real world.
Fix the identity, action, payee, amount, invoice, policy, expiry and delegation depth.
A connected executor refuses an altered payee, excessive amount or side effect without one matching grant.
Every ALLOW, REVIEW and DENY is signed, hash-chained and independently verifiable.
Follow a consequential request from agent intent to signed authority, enforced execution and independent evidence. Switch scenarios to see the same boundary protect payments, refunds, communications and enterprise systems.
Trust is not a dashboard full of warnings. It is the confidence to let automation move faster because the boundaries are real.

The agent can solve the ordinary case. Commitments outside its authority wait for the person who owns the consequence.

Bind every grant to the payee, amount and invoice.

Give auditors and underwriters a record neither party can quietly rewrite.
Most products observe risk after an agent acts. Fidacy identifies the agent, verifies its mandate, enforces the boundary before execution and produces independently verifiable evidence after every decision.

Fidacy Firewall and Spend Guard refuse altered payees, excessive amounts, replayed grants and unauthorized side effects before the connected system is called.

KYA binds the workload identity. A signed mandate fixes the action, resource, amount, destination and duration. One matching request receives one executable grant.

Every ALLOW and DENY is signed. Continuous Control Monitoring shows whether the path was gated, merely observed, incomplete or outside current evidence.

Signed records enter append-only history, become Merkle checkpoints and receive an external Bitcoin timestamp that any third party can verify.
The action is only half the risk. Fidacy preserves neutral evidence of what moved, what was said and which exact artifact existed, without taking custody of the payment, transcript or file.
Bind payee, amount, invoice, currency and expiry. Where the payment rail is connected through Fidacy, an altered, excessive or replayed request is refused before settlement.
Hash each message locally, anchor the final session digest through Fidacy and give both sides a receipt they can verify. The transcript stays inside your infrastructure.
Anchor the hash of a prescription, insurance claim, contract, invoice, image or recording. Fidacy receives the digest, never the source file.
Fidacy does not price risk or issue policies. It gives underwriters a defensible view of which controls were operating, which actions were hard-gated, where coverage stopped and what happened in a specific incident.
Current boundaries, policy versions, connector state and evidence gaps.
Require hard-gated actions and current evidence for protected workflows.
Identity, mandate, signed decision, receipt, chain position and checkpoint.
Courts and regulators in three jurisdictions reached the same practical conclusion: an organization remains responsible for the automated action it deploys.
CONTROL COVERAGE · LIVE BOUNDARIESFidacy separates a hard gate from a heartbeat, current coverage from historical proof and a complete trail from a telemetry gap.
Fidacy is neutral to the model, agent framework, payment rail and system of record. The proof can be checked without calling us.
Decision, agent identity, governing mandate, policy version, receipt, chain position and external checkpoint in one portable package for the owner, auditor, insurer or regulator.
See the evidence package →Start through an SDK, MCP host or API. One compact layer fits the stack you already run while private prompts, files and tool arguments remain inside your environment.
One local server for agent tools and action boundaries.
npx -y @fidacy/mcpWrap the tool so a denied call never executes.
@fidacy/langchainEnforce between model intent and the external action.
@fidacy/openai-agentsObserve sessions, gate actions and export independent proof.
@fidacy/openclaw-pluginPut Fidacy between your agents and the payments, suppliers, enterprise systems, data and communications they can affect. Start with the highest-exposure workflow and expand under one production contract.