ELSEIF
Your brief EB
451 stories from 137 feeds 663 clusters Refreshed 2 minutes ago next pull 17:24

SECURITY Signal 484

Algorand publishes AC2 protocol for hardware-signed AI agent approvals

Algorand has published the AC2 protocol, which it describes as a layer that adds FIDO2 hardware-bound signature approval between AI agents and sensitive actions such as payments and code signing.

WHY IT MATTERS

Only a single Hacker News feed carries this, and the supplied material is the product's own page, so adoption and reception are unverified in the source. Building on it requires the OpenClaw agent framework, the AC2 plugin, and a phone-based AC2 Wallet paired via QR code, which makes it a custom stack rather than a transparent layer over existing agents. The protocol-level claims of phishing resistance and verifiable intent are design goals stated by the publisher, not independently audited findings in the material.

Written by elseif from the cluster below · every claim links back to a source

The three things worth knowing

01

AC2 (Agentic Communication + Control Protocol) is described as an open protocol from Algorand that places cryptographic approvals between AI agents and sensitive operations.

02

It relies on FIDO2/WebAuthn via a companion AC2 Wallet app, with the protocol stating that private keys remain on the user's device and approvals are bound to a hardware authenticator.

03

The material only references integration with the OpenClaw agent framework and only one feed (Hacker News) carries the announcement, so independent adoption signals are absent.

THE READ

What the cluster adds up to.

ORIGINAL ANALYSIS

AC2, or Agentic Communication + Control Protocol, has been published by Algorand as an open protocol aimed at AI agent workflows. The protocol positions itself as a layer between an AI agent and sensitive actions such as payments, code signing, and outbound communications, replacing chat-button human-in-the-loop confirmation with hardware-bound cryptographic signatures. The supplied material is a product page rather than an independent news article, and the only feed carrying the announcement is a Hacker News submission whose summary is simply 'Comments'. That means the framing here comes entirely from the publisher.

Integration as described requires a specific agent framework, OpenClaw, plus a plugin install and a setup command, with QR code pairing to the AC2 Wallet app on the user's phone. The protocol uses DIDComm v2.0 message formats and passkey-based authentication through Liquid Auth, which the page describes as built on FIDO2/WebAuthn. The approval UX depends on whatever the user's device exposes, facial recognition, fingerprint, or device PIN, and the wallet is listed only for Android and iOS. For teams running other agent frameworks, the supplied material does not describe how to bridge AC2 in.

The product page asserts phishing resistance, credential isolation, and verifiable intent, but the supplied material does not include independent audits, threat models, or third-party implementations. Specific interoperability targets are narrow: x402 payments and Google AP2 IntentMandate are named, which couples the protocol to those particular ecosystems. The protocol says it requires no central relay and no blockchain, yet the relationship between AC2 and Algorand's broader stack is implied rather than detailed in the excerpt provided. With a single feed and no corroborating coverage, the security properties are still publisher claims.

The protocol's design surface includes JSON-LD schemas for custom workflows, real-time voice and text streaming alongside signing delegation, and signed audit trails. None of these are tied to benchmarks, performance numbers, or version identifiers in the supplied excerpt. For a working engineer evaluating this, the practical question is whether an existing OpenClaw deployment, plus a paired phone wallet, is an acceptable control plane for the agent actions in scope, and which actions remain out of scope until broader framework support exists.

Written by elseif from the cluster below · checked for specifics the sources never contained

THE CLUSTER

Same story, 1 feed.

ORDERED BY FIRST SEEN
ac2protocol.org via Hacker News AC2 Protocol: The missing security layer for AI agents Open ↗