Trust boundary
The point at which one organisation's agent identity infrastructure stops being able to directly verify a claim and must instead rely on an external mechanism, such as a decentralised identifier or a trusted agent registry, to confirm who or what it is dealing with. Identity design gets materially harder at every trust boundary an agent crosses.
Defined in 3 GAGE programs, which carry 6 distinct definitions of it. The wording above is taught in Agentic AI Governance: Applied Mastery.
How each discipline defines it
The same term does different work depending on who is using it. These are the definitions as each program teaches them, unedited.
The one-page artifact this topic produces for an AI system. It is an explicit, decision-by-decision line marking each decision "the system may decide and act alone," "a human must sign before it takes effect," or "do not ship," with every human-signs decision naming who signs and the conditions that make the signature real. It is one of the three artifacts Module 4 hands forward.
A point in an estate where an agent's action crosses from a system, team, or organization it is native to into one it is not, such as an agent acting on a different team's database or a partner organization's data feed. Actions crossing a trust boundary warrant full four-field logging under this topic's tiering guidance, regardless of how routine the action might otherwise seem.
The point at which one organisation's agent identity infrastructure stops being able to directly verify a claim and must instead rely on an external mechanism, such as a decentralised identifier or a trusted agent registry, to confirm who or what it is dealing with. Identity design gets materially harder at every trust boundary an agent crosses.
The line separating a system's owner or authenticated source from any other party or content source; a protocol that carries information across a trust boundary without marking which side it came from cannot support a downstream decision about how much to trust that information.
The line separating what a claim about a system is supported by verified evidence versus what it is supported by only where the system sits, who can reach it, or how long it has operated without incident. Mapping this boundary explicitly, for any node, is the practical mechanics behind the evidence-versus-position test.
Where it is taught
The exact lessons this term appears in. The first 7 topics of every program are free with a free account.
- The Parts That Make an Agent Act · The Agent, Deconstructed, Agentic AI Governance: Applied Mastery
- Agent Identity · Bounding by Design, Agentic AI Governance: Applied Mastery
- The agent's trail: who acted, on whose authority, using what, and why, recorded for every autonomous touch of your estate · Access and the Keys, AI Data Governance: The Data Chair
- Your lineage map under attack: the red team finds the gap you papered over · Adversarial Data Governance, AI Data Governance: The Data Chair
- Red-teaming your own system: attacks a motivated user will find · Evaluation and Trust, AI Governance: Applied Mastery
- The trust boundary: what this system may decide alone and where a human signs · Evaluation and Trust, AI Governance: Applied Mastery
Terms it appears with
Not an alphabetical neighbourhood: these are the terms taught in the same lessons, ranked by how often they appear together.