为自主交易设计实时可信清算层,解决代理行为责任归属难题
RAILS: Verification-Native Clearing For Agentic Commerce

- 构建基于证据链的实时清算协议,量化每笔交易可靠性
- 确保金融结算仅由不低于承诺门槛的证据支持,杜绝无效执行
- 适合需要高可信自动交易的金融、电商等场景
自主代理可协商、购买、部署代码并转移资金,但缺乏中立机制判定其是否履行委托义务、责任归属及后续结算动作。这是代理清算难题。现有工具协议(MCP)、代理间通信(A2A)、支付通道(x402)、授权与网络代理协议(AP2、Visa、Mastercard)及结算风险标准均假设存在判定机制,却未提供。清算才是缺失的原始能力。支付≠清算,授权≠清算,大模型裁判≠清算,结算风险托管也不等于清算——它依赖清算结果。RAILS(实时代理完整性与账本结算)是代理商业的完整性与清算层,包含每输出项的可靠性评分、公开可靠性记录和清算函数。其核心清算协议填补了空白。七项基础构件(义务对象、证据包裹、验证网、清算决策、结算指令、清算护照、终局规则),在可接受性分级验证形式模型下,实现完备性:无金融重大影响的结算不得由低于义务可接受性阈值的证据支持。该性质可对照规范验证。目前尚无先例提出此类机制性质。最接近的方案仅提供通过/交付担保/基础分数/均衡状态。本文明确规范此清算协议。
原文摘要 · Abstract (English)
Autonomous agents negotiate, purchase, deploy code, and move funds, but no neutral mechanism determines whether they met their delegated obligation, who is responsible when they did not, or which settlement action follows. This is the agentic clearing problem. Tool protocols (MCP), inter-agent communication (A2A), payment rails (x402), mandate and network agent protocols (AP2, Visa, Mastercard), and settlement-risk standards each assume that determination and none produce it. Clearing is the missing primitive. Payment is not clearing. Authorization is not clearing. LLM-as-judge evaluation is not clearing. Settlement-risk escrow is not clearing: it consumes clearing decisions. RAILS (Real-Time Agent Integrity & Ledger Settlement) is the integrity and clearing layer for agentic commerce, spanning a per-output reliability score, a published reliability record, and a clearing function that consumes them. The clearing protocol at its core closes that gap. Seven primitives (Obligation Object, Evidence Envelope, Verification Mesh, Clearing Decision, Settlement Instruction, Clearing Passport, Finality Rules), bound by a formal model of admissibility-graded verification, together yield a soundness property: no financially material settlement is supported by evidence below the obligation's admissibility floor. The property is falsifiable against the spec. We are not aware of a prior agent-commerce verification mechanism that states a property of this kind. The approaches nearest to it emit a pass, a delivery guarantee, a bare score, or an equilibrium. This paper specifies that clearing protocol.
Thank you to arXiv for use of its open access interoperability. PaperDance 不是 arXiv 官方产品;中文卡片由大模型生成,请以原文为准。