<?xml version="1.0" encoding="UTF-8"?><urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9" xmlns:news="http://www.google.com/schemas/sitemap-news/0.9" xmlns:xhtml="http://www.w3.org/1999/xhtml" xmlns:image="http://www.google.com/schemas/sitemap-image/1.1" xmlns:video="http://www.google.com/schemas/sitemap-video/1.1"><url><loc>https://agentlair.dev/</loc></url><url><loc>https://agentlair.dev/about/pico/</loc></url><url><loc>https://agentlair.dev/agent-payments/</loc></url><url><loc>https://agentlair.dev/badges/</loc></url><url><loc>https://agentlair.dev/behavioral/</loc></url><url><loc>https://agentlair.dev/blog/</loc></url><url><loc>https://agentlair.dev/blog/a2a-trust-leaderboard-may-2026/</loc></url><url><loc>https://agentlair.dev/blog/after-fido-and-agentdid-behavioral-trust-is-where-the-rails-stop/</loc></url><url><loc>https://agentlair.dev/blog/agent-behavioral-monitoring-enterprise/</loc></url><url><loc>https://agentlair.dev/blog/agent-first-web/</loc></url><url><loc>https://agentlair.dev/blog/agent-identity-is-not-enough/</loc></url><url><loc>https://agentlair.dev/blog/agent-identity-landscape-2026/</loc></url><url><loc>https://agentlair.dev/blog/agent-identity-shipped-behavior-didnt/</loc></url><url><loc>https://agentlair.dev/blog/agent-tool-marketplaces-dont-know-who-is-calling/</loc></url><url><loc>https://agentlair.dev/blog/agentic-ai-trust-infrastructure/</loc></url><url><loc>https://agentlair.dev/blog/agentlair-primitives-v0-1-0/</loc></url><url><loc>https://agentlair.dev/blog/agentlair-vs-microsoft-agt-2026/</loc></url><url><loc>https://agentlair.dev/blog/agents-can-pay/</loc></url><url><loc>https://agentlair.dev/blog/ai-automates-what-you-can-verify/</loc></url><url><loc>https://agentlair.dev/blog/ai-benchmarks-are-meaningless/</loc></url><url><loc>https://agentlair.dev/blog/ai-framework-security-monoculture/</loc></url><url><loc>https://agentlair.dev/blog/ai-lies-about-your-favorite-restaurant/</loc></url><url><loc>https://agentlair.dev/blog/anthropic-platform-lockdown/</loc></url><url><loc>https://agentlair.dev/blog/april-2026-changelog/</loc></url><url><loc>https://agentlair.dev/blog/arc-agi-3-agent-infrastructure/</loc></url><url><loc>https://agentlair.dev/blog/aws-mcp-context-keys-stop-at-the-first-lambda/</loc></url><url><loc>https://agentlair.dev/blog/behavioral-telemetry-proof-of-work/</loc></url><url><loc>https://agentlair.dev/blog/behavioral-trust-without-surveillance/</loc></url><url><loc>https://agentlair.dev/blog/benchmark-is-not-the-behavior/</loc></url><url><loc>https://agentlair.dev/blog/building-on-visa-tap/</loc></url><url><loc>https://agentlair.dev/blog/claude-47-acts-before-asking/</loc></url><url><loc>https://agentlair.dev/blog/claude-code-behavioral-telemetry/</loc></url><url><loc>https://agentlair.dev/blog/claude-code-git-reset-approval-gate/</loc></url><url><loc>https://agentlair.dev/blog/claude-code-identity-regression/</loc></url><url><loc>https://agentlair.dev/blog/claude-code-source-leak-fake-repos/</loc></url><url><loc>https://agentlair.dev/blog/cloudflare-agent-memory-behavioral-trust/</loc></url><url><loc>https://agentlair.dev/blog/cloudflare-email-agents-validates-identity-layer/</loc></url><url><loc>https://agentlair.dev/blog/cloudflare-stripe-projects-spending-cap-not-trust/</loc></url><url><loc>https://agentlair.dev/blog/co-authored-by-is-not-enough/</loc></url><url><loc>https://agentlair.dev/blog/commitment-is-the-new-link/</loc></url><url><loc>https://agentlair.dev/blog/copilot-edited-1-5m-repos-audit-trail/</loc></url><url><loc>https://agentlair.dev/blog/csa-study-68-percent-cant-distinguish-agent-from-human/</loc></url><url><loc>https://agentlair.dev/blog/cve-2026-31431-agent-sandbox-security/</loc></url><url><loc>https://agentlair.dev/blog/declarations-are-gameable/</loc></url><url><loc>https://agentlair.dev/blog/defenseclaw-governs-actions-not-identity/</loc></url><url><loc>https://agentlair.dev/blog/developer-quickstart/</loc></url><url><loc>https://agentlair.dev/blog/dont-let-agents-hold-their-own-credentials/</loc></url><url><loc>https://agentlair.dev/blog/eddsa-jwts-agent-credential-problem/</loc></url><url><loc>https://agentlair.dev/blog/emdash-trust-guard/</loc></url><url><loc>https://agentlair.dev/blog/eu-ai-act-article-12-agent-logging/</loc></url><url><loc>https://agentlair.dev/blog/eu-ai-act-article-12-behavioral-logging/</loc></url><url><loc>https://agentlair.dev/blog/eu-ai-act-article-12/</loc></url><url><loc>https://agentlair.dev/blog/eu-ai-act-behavioral-logging-before-august-2026/</loc></url><url><loc>https://agentlair.dev/blog/fdx-ai-agents-compliance-traceability/</loc></url><url><loc>https://agentlair.dev/blog/five-eyes-audit-trail-gap/</loc></url><url><loc>https://agentlair.dev/blog/five-layer-agent-trust-model/</loc></url><url><loc>https://agentlair.dev/blog/from-0-to-41-building-behavioral-trust-in-production/</loc></url><url><loc>https://agentlair.dev/blog/git-history-attack-surface/</loc></url><url><loc>https://agentlair.dev/blog/governance-gap-already-measured/</loc></url><url><loc>https://agentlair.dev/blog/governance-gap-csa-incidents/</loc></url><url><loc>https://agentlair.dev/blog/gtg-1002-twenty-minutes/</loc></url><url><loc>https://agentlair.dev/blog/hermes-md-billing-git-history/</loc></url><url><loc>https://agentlair.dev/blog/how-should-agents-get-credentials/</loc></url><url><loc>https://agentlair.dev/blog/human-verified-agent-email/</loc></url><url><loc>https://agentlair.dev/blog/ietf-agent-identity-drafts-l1-l3-not-l4-l5/</loc></url><url><loc>https://agentlair.dev/blog/insurance-without-telemetry-blind-underwriting/</loc></url><url><loc>https://agentlair.dev/blog/l3-just-got-bought-l4-has-no-sellers/</loc></url><url><loc>https://agentlair.dev/blog/litellm-fork-bomb-was-an-accident/</loc></url><url><loc>https://agentlair.dev/blog/litellm-supply-chain-mcp/</loc></url><url><loc>https://agentlair.dev/blog/litellm-supply-chain/</loc></url><url><loc>https://agentlair.dev/blog/live-trust-substrate/</loc></url><url><loc>https://agentlair.dev/blog/llms-corrupt-your-documents-we-verify/</loc></url><url><loc>https://agentlair.dev/blog/mastercard-vi-l4-gap/</loc></url><url><loc>https://agentlair.dev/blog/mcp-action-chaining-the-attack-your-permissions-cant-see/</loc></url><url><loc>https://agentlair.dev/blog/mcp-action-tools-approval-gate/</loc></url><url><loc>https://agentlair.dev/blog/mcp-path-traversal-pattern/</loc></url><url><loc>https://agentlair.dev/blog/mcp-security-identity-gap/</loc></url><url><loc>https://agentlair.dev/blog/mcp-security-missing-layer/</loc></url><url><loc>https://agentlair.dev/blog/mcp-security-vulnerabilities-2026/</loc></url><url><loc>https://agentlair.dev/blog/mcp-supply-chain-top-50/</loc></url><url><loc>https://agentlair.dev/blog/mcpi-l4-behavioral-trust-proposal/</loc></url><url><loc>https://agentlair.dev/blog/measuring-agent-trust-beyond-vibes/</loc></url><url><loc>https://agentlair.dev/blog/memorix-agentlair-integration/</loc></url><url><loc>https://agentlair.dev/blog/microsoft-agt-trust-islands/</loc></url><url><loc>https://agentlair.dev/blog/model-policy-silent-breaking-change/</loc></url><url><loc>https://agentlair.dev/blog/multi-hop-delegation-gap-nist-named/</loc></url><url><loc>https://agentlair.dev/blog/mythos-paradox/</loc></url><url><loc>https://agentlair.dev/blog/oauth-for-autonomous-agents/</loc></url><url><loc>https://agentlair.dev/blog/openclaw-credential-crisis/</loc></url><url><loc>https://agentlair.dev/blog/osworld-problem-computer-use-governance/</loc></url><url><loc>https://agentlair.dev/blog/owasp-mcp-accountability-gap/</loc></url><url><loc>https://agentlair.dev/blog/payment-rails-trust-rails/</loc></url><url><loc>https://agentlair.dev/blog/pocketos-nine-seconds-behavioral-monitoring/</loc></url><url><loc>https://agentlair.dev/blog/pocketos-nine-seconds/</loc></url><url><loc>https://agentlair.dev/blog/pre-ssl-moment-agent-identity/</loc></url><url><loc>https://agentlair.dev/blog/prism-mcp-agentlair-integration/</loc></url><url><loc>https://agentlair.dev/blog/quantum-deadline-agent-credentials/</loc></url><url><loc>https://agentlair.dev/blog/quickstart/</loc></url><url><loc>https://agentlair.dev/blog/receipts-vs-reputation/</loc></url><url><loc>https://agentlair.dev/blog/rsac-2026-agent-identity-gaps/</loc></url><url><loc>https://agentlair.dev/blog/rsac-2026-confirmed-the-gap/</loc></url><url><loc>https://agentlair.dev/blog/safety-training-is-not-runtime-protection/</loc></url><url><loc>https://agentlair.dev/blog/scitt-phase-2-receipts/</loc></url><url><loc>https://agentlair.dev/blog/self-hosted-agent-stack-the-gap-it-leaves/</loc></url><url><loc>https://agentlair.dev/blog/sixty-percent-want-approval-gates/</loc></url><url><loc>https://agentlair.dev/blog/skill-provenance-attestation/</loc></url><url><loc>https://agentlair.dev/blog/skills-for-autonomous-agents-are-different/</loc></url><url><loc>https://agentlair.dev/blog/spa-verifier-in-ci/</loc></url><url><loc>https://agentlair.dev/blog/ss7-was-the-first-agent-trust-crisis/</loc></url><url><loc>https://agentlair.dev/blog/state-of-agent-trust-q2-2026/</loc></url><url><loc>https://agentlair.dev/blog/state-of-mcp-security-q1-2026/</loc></url><url><loc>https://agentlair.dev/blog/sycophancy-accountability-failure/</loc></url><url><loc>https://agentlair.dev/blog/teampcp-ai-infrastructure-heist/</loc></url><url><loc>https://agentlair.dev/blog/the-agent-passed-all-the-checks/</loc></url><url><loc>https://agentlair.dev/blog/the-identity-layer-mpp-needs/</loc></url><url><loc>https://agentlair.dev/blog/the-l4-gap/</loc></url><url><loc>https://agentlair.dev/blog/three-agent-incident-archetypes/</loc></url><url><loc>https://agentlair.dev/blog/three-gaps-agent-identity/</loc></url><url><loc>https://agentlair.dev/blog/toctou-of-trust/</loc></url><url><loc>https://agentlair.dev/blog/trust-mcp-v0-2-0-x402-payment/</loc></url><url><loc>https://agentlair.dev/blog/trust-middleware-for-agent-framework/</loc></url><url><loc>https://agentlair.dev/blog/two-answers-to-who-is-the-agent/</loc></url><url><loc>https://agentlair.dev/blog/two-layers-not-two-standards/</loc></url><url><loc>https://agentlair.dev/blog/vault-langchain-crewai-mcp/</loc></url><url><loc>https://agentlair.dev/blog/vercel-breach-oauth-attack-vector/</loc></url><url><loc>https://agentlair.dev/blog/vercel-incident-agent-credentials/</loc></url><url><loc>https://agentlair.dev/blog/verify-any-agent-from-claude-desktop/</loc></url><url><loc>https://agentlair.dev/blog/web-bot-auth-ships-in-agentlair/</loc></url><url><loc>https://agentlair.dev/blog/what-goes-in-x402-extensions-slot/</loc></url><url><loc>https://agentlair.dev/blog/what-verifiable-ai-actually-requires/</loc></url><url><loc>https://agentlair.dev/blog/who-decides-what-agents-can-buy/</loc></url><url><loc>https://agentlair.dev/blog/why-agent-trust-cannot-be-proprietary/</loc></url><url><loc>https://agentlair.dev/blog/why-agent-trust-must-be-independent/</loc></url><url><loc>https://agentlair.dev/blog/why-trust-agentlair-vault/</loc></url><url><loc>https://agentlair.dev/blog/x402-settles-payment-agentlair-answers-who-pays/</loc></url><url><loc>https://agentlair.dev/blog/your-agent-card-is-naked/</loc></url><url><loc>https://agentlair.dev/blog/your-agent-dies-every-session/</loc></url><url><loc>https://agentlair.dev/blog/your-mcp-marketplace-is-already-compromised/</loc></url><url><loc>https://agentlair.dev/blog/your-mcp-marketplace-is-compromised/</loc></url><url><loc>https://agentlair.dev/calendar/</loc></url><url><loc>https://agentlair.dev/clarity-act/</loc></url><url><loc>https://agentlair.dev/compare/</loc></url><url><loc>https://agentlair.dev/dashboard/</loc></url><url><loc>https://agentlair.dev/dashboard/popa/</loc></url><url><loc>https://agentlair.dev/demo/</loc></url><url><loc>https://agentlair.dev/demos/</loc></url><url><loc>https://agentlair.dev/disputes/</loc></url><url><loc>https://agentlair.dev/docs/</loc></url><url><loc>https://agentlair.dev/docs/api-reference/</loc></url><url><loc>https://agentlair.dev/docs/audit-logger/</loc></url><url><loc>https://agentlair.dev/docs/bcc-badge/</loc></url><url><loc>https://agentlair.dev/docs/concepts/</loc></url><url><loc>https://agentlair.dev/docs/getting-started/</loc></url><url><loc>https://agentlair.dev/docs/mcp/</loc></url><url><loc>https://agentlair.dev/docs/quickstart/</loc></url><url><loc>https://agentlair.dev/docs/vault/</loc></url><url><loc>https://agentlair.dev/docs/vault/api-reference/</loc></url><url><loc>https://agentlair.dev/docs/vault/concepts/</loc></url><url><loc>https://agentlair.dev/docs/vault/quickstart/</loc></url><url><loc>https://agentlair.dev/docs/vault/security/</loc></url><url><loc>https://agentlair.dev/docs/web-bot-auth/</loc></url><url><loc>https://agentlair.dev/eu-ai-act/</loc></url><url><loc>https://agentlair.dev/eu-ai-act/assess/</loc></url><url><loc>https://agentlair.dev/explore/</loc></url><url><loc>https://agentlair.dev/faq/</loc></url><url><loc>https://agentlair.dev/getting-started/</loc></url><url><loc>https://agentlair.dev/integrations/</loc></url><url><loc>https://agentlair.dev/learn/</loc></url><url><loc>https://agentlair.dev/learn/aat-vs-eat/</loc></url><url><loc>https://agentlair.dev/learn/behavior-anomaly-vs-static-defense/</loc></url><url><loc>https://agentlair.dev/learn/behavioral-health-certificate/</loc></url><url><loc>https://agentlair.dev/learn/behavioral-monitoring-vs-observability/</loc></url><url><loc>https://agentlair.dev/learn/verify-agent-without-identity-proofing/</loc></url><url><loc>https://agentlair.dev/live/</loc></url><url><loc>https://agentlair.dev/playground/</loc></url><url><loc>https://agentlair.dev/playground/web-bot-auth/</loc></url><url><loc>https://agentlair.dev/pods/</loc></url><url><loc>https://agentlair.dev/popa/</loc></url><url><loc>https://agentlair.dev/popa/leaderboard/</loc></url><url><loc>https://agentlair.dev/pricing/</loc></url><url><loc>https://agentlair.dev/privacy/</loc></url><url><loc>https://agentlair.dev/quickstart/</loc></url><url><loc>https://agentlair.dev/register/</loc></url><url><loc>https://agentlair.dev/reputation/</loc></url><url><loc>https://agentlair.dev/security/</loc></url><url><loc>https://agentlair.dev/thesis/</loc></url><url><loc>https://agentlair.dev/tools/eu-ai-act-compliance/</loc></url><url><loc>https://agentlair.dev/vault/</loc></url><url><loc>https://agentlair.dev/verify-receipt/</loc></url><url><loc>https://agentlair.dev/verify-skill/</loc></url><url><loc>https://agentlair.dev/verify/</loc></url><url><loc>https://agentlair.dev/web-bot-auth/</loc></url><url><loc>https://agentlair.dev/whitepaper/</loc></url></urlset>