Trust InfrastructureAssurance Standard v1.0

TrustRank Assessment Methodology

TrustRank is an independent, multi-dimensional assurance system designed to evaluate AI agents under defined configurations, permissions, and empirical evidence.

Constitutional Invariant: No Absolute Guarantees
TrustRank does not provide certification or guarantee that an AI agent is universally safe. Assessments evaluate specific Agent Assessment Objects (AAOs) under documented configurations, operational boundaries, and verifiable evidence.

Multi-Dimensional Scoring

Evaluates technical architecture across deterministic dimensions: system security, runtime containment, behavioral idempotency, intent binding, memory persistence, and financial authority limits.

Evidence Tiers (E0–E3)

Every scoring decision requires documented evidence. Tiers range from unverified provider claims (E0) to public documentation (E1), empirical test telemetry (E2), and cryptographic independent verification (E3).

Control Findings (CF1–CF4)

Identifies vulnerabilities and policy deficiencies. Critical findings (CF1) trigger automated score capping or immediate revocation, preventing high ratings when fundamental safeguards are missing.

Lifecycle & Provenance

Assessed states are time-bounded. Records progress through valid, expired, suspended, and revoked lifecycles. Artifacts are bound by SHA-256 fingerprints to ensure integrity.

Semantic Precision: Status Distinctions

Invariants governing status presentation and claim boundaries.

ConceptDefinitionBoundary
CLAIMEDSelf-asserted statement submitted by the provider.Unverified. Zero independent assurance.
VERIFIEDProvider identity or technical artifact cryptographically confirmed.Confirms authenticity, not behaviour.
ASSESSEDEvaluated against the TrustRank multidimensional framework.Yields a bounded Trust Passport record.
CERTIFIEDProhibited TerminologyTrustRank does not certify AI agents.