Skip to content
Preprint

Agent-OSI: An Interoperability Architecture for Communication and Settlement in the Decentralized Internet of Agents

Feb 2026 · 3 citations · 15 references
Computer Science

TL;DR

Results show that, for generative workloads, end-to-end latency is dominated by task execution rather than settlement confirmation, and that keeping negotiation and delivery off the settlement backend reduces per-session settlement cost by approximately 51\% relative to a more on-chain baseline.

Abstract

Large Language Models (LLMs) are accelerating the shift from an Internet of information to an Internet of Agents (IoA), where autonomous entities discover services, negotiate, execute tasks, and exchange value. Yet today's agents are still confined to platform silos and proprietary interfaces, lacking a common stack for interoperability, trust, and pay-per-use settlement. This article proposes \textit{Agent-OSI}, a functional interoperability architecture for a decentralized IoA, whose core contribution is agent-to-agent (A2A) communication and a Web-compatible, backend-agnostic settlement protocol built on HTTP 402 (Payment Required); identity, verifiable execution, and semantic orchestration are treated as boundary layers with interfaces to existing standards. We treat HTTP 402 as an application-layer challenge-response primitive -- analogous to HTTP 401 for authentication -- whose settlement backend (escrow contract, payment channel, or signed off-chain receipt) is a pluggable choice, instantiated via a blockchain escrow in our prototype. We implement a prototype and evaluate its communication and settlement performance. Results show that, for generative workloads, end-to-end latency is dominated by task execution rather than settlement confirmation, and that keeping negotiation and delivery off the settlement backend reduces per-session settlement cost by approximately 51\% relative to a more on-chain baseline.

View source

Similar papers

Preprint Aug 2026

InterSAGE: The Secure and Verifiable Interoperability Protocol for An Internet of Agents

The emerging Internet of Agents enables LLM-powered agents to discover peers, invoke tools, and delegate tasks across organizational boundaries. Existing protocols increasingly define how agents exchange messages, but not how an agent proves its identity, authorization, advertised capabilities, or accountability after...

Zhen-Hua Zou, Sheng Guo, Qiu-Yang Zhan et al. · 0 citations
Book Open access Oct 2026

Poster: Agent Transfer Protocol: Server-Mediated Authentication and Messaging for Agent-to-Agent Communication

The Internet of Agents (IoA) is emerging as a paradigm in which AI agents communicate and collaborate across organizational boundaries, attracting growing attention from both industry and standards communities. However, designing an agent communication protocol that can be deployed at both Internet and intranet scales...

Xiang Li, Yu-Qi Qiu, Zu-Yao Xu et al. · 0 citations
Preprint Aug 2026

Beyond the Mandate: A Systematic Security Analysis of the Agent Payments Protocol (AP2)

A systematic security analysis of AP2 v0.2 based on its roles, transaction lifecycle, deployment architectures, and trust boundaries shows that valid mandate signatures alone do not ensure that an agent-mediated transaction reflects the user's intent when its pre-authorization context is manipulated.

Avital Aviv, Parth A. Gandh, Ron Bitton et al. · 0 citations
Preprint Aug 2026

A Gateway Architecture for Enterprise MCP Authentication: Unifying Heterogeneous Auth, Identity Delegation, and the User / Non-User Persona Problem

The Model Context Protocol (MCP) has become the de-facto interface for connecting LLM agents to enterprise tools, and adoption has been explosive: within a year, large organizations went from zero to dozens of internally built MCP servers. That speed created a governance crisis. Each team implemented authentication ind...

Suraj Kumar, Amy Wang, Srinivasan Manoharan · 1 citation
#large language models Open access Sep 2026

ARES: Securing Agents for Computer Use Through Endpoint Resource Mediation and Behavioral Guardrails

Large language model (LLM)-based agents are evolving into agents for computer use (ACUs) that read files, invoke applications, communicate over networks, and operate graphical interfaces, moving the effective security boundary from model inputs and outputs to autonomous actions that alter endpoint state. Conventional i...

Changhee Kim, Seong-je Cho · 0 citations
#artificial intelligence Preprint Aug 2026

A Formal Analysis of Agent Payment Protocols

This work formalizes four representative agent payment protocols: x402, MPP, ACP, and AP2 in Tamarin, and constructs source-grounded models that capture each protocol's roles, state, trust assumptions, and lifecycle transitions.

Ke Jiang, Mo-Han Yu, Yuan-Yi-Chun-Min-Chieh Chang et al. · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.