Products Lemma APIProof issuance & verification platformTrust402Delegate to agents, and transactSealSign-in for the agent era — no keys handed over
Use cases Manufacturing & Critical InfraInspection Record AssuranceFinance & FinTechCounterparty Record VerificationPublic SectorCertificate-less ProceduresHealthcareQualified Worker AssuranceProcurement & Supply ChainSupplier Credential MonitoringMedia & ContentContent AuthenticityService & RetailCross-group IdentityAI Adoption (cross-industry)AI Run GovernanceDevelopers & Agent OpsAgent Authority Control ▸ Browse the use-case index
Pricing
Resources Critical BriefThe frontier of AI × trustBlogThinking and implementation notesDocumentationAPI & specsVerification CenterReal verification & issuance countsAbout usFRAME00, Inc.ContactSales & press inquiriesGlossaryDefinitionsFAQFrequently asked questions
Get Started ↗ JA
Use case — Agent Authority Proof

Agentic Payment Fraud

Attach a ZK proof to every AI-agent payment call — who delegated, within what scope, and up to what limit — so the receiving side can verify the delegation cryptographically before settlement, instead of trusting an API key.

AI agent operations · Financial services · Crypto exchanges · API-based payment platforms Plan Lemma Critical
01 · WHO IT'S FOR

For teams running AI agent payments

The risk of agent payments clearing on nothing but an API key and a prompt-engineered guardrail, resolved by independent verification of delegation and spend limits before settlement.

  • Security leads at organizations starting to embed AI agents into operational workflows

  • Developers and operators running payments over x402 / MCP / A2A environments

  • Compliance owners responsible for audit and control of agent-driven actions

02 · THE SHIFT

Hand over the source, or just the facts?

Nothing changes on the floor. Everything changes for the receiver.

① Your team just saves, as always.

Your team's existing screen
The usual step
Fill in the record and save
On save
A proof is attached (API, behind the scenes)
The document itself
never sent

② They just open a link.

Their browser — verification
Not tampered
Proven fact
each payment stayed within an authorized delegation
the agent's keys and the intermediate delegation steps
not shown
Login / keys
not needed
Why Lemma
  • The document stays private — the record itself is never sent or disclosed.
  • Independent verification — the receiver just opens a link. No account, no keys.
  • Edits are detected — even a one-character edit fails verification.

Lemma attaches a Trust402 attestation to every payment an agent issues. Inside the attestation: the principal that delegated the action, the role and scope of the delegation, a per-call spend limit, and any jurisdiction attribute the counterparty needs to verify (e.g. "this agent acts on behalf of a JP-registered entity").

The attestation is a ZK proof, not a bearer credential. The agent never carries the principal's keys. The receiving side — be it a settlement contract, an x402 middleware, or a counterparty's risk engine — verifies the proof before clearing the payment, against an on-chain registry of the principal's delegation policy. Revocation propagates the same way: a single transaction at the principal's level invalidates every downstream attestation that depended on it.

The result is that "who delegated, within what scope, against which jurisdiction" stops being an after-the-fact reconstruction problem and becomes a precondition for settlement.

See the technical details ↗
03 · HOW TO CHOOSE

Why the usual methods fall short.

Only work that needs all three at once — pass without exposing, independent verification, tamper-evidence — is Lemma's domain.

Method Pass without exposing Independent verification Tamper-evident What happens
Access control / permissions“Someone inside could have edited it” remains possible
Masking / redacted copiesRedaction work grows; the original is still unproven
Encrypt and store / sendTo verify, the receiver needs it disclosed after all
Lemma (ZK proof)the only one with all 3 The receiver just opens a link
04 · HOW IT WORKS

How it works — and how to start.

What you prove
Proveeach payment stayed within an authorized delegation
Keep hiddenthe agent's keys and the intermediate delegation steps
01 — youChoose the record to prove Start with the one flow where hand-offs cost you the most explaining.
Issue the proof
Senthash only
The documentnever sent
Issued 0x68d4…9f01
02 — you → themAdd issuance Call the API once when the record is finalized. The document itself is never sent.
The verifier's screen
Not tampered
SignatureIntegrityIssuer
03 — themLet the receiver verify They open a link — no account, no keys.

We help design disclosure scope and retention, run the PoC, and support production.

Start with a 30-minute call.

Tell us one delegation path where settlement risk is concentrated, in the first 30 minutes. No agent implementation details or production payload required.

Talk to us about this use case →

Find the case that matches your industry and problem

Browse all 36 use cases →

TRY LEMMA

Run it yourself.

No sales call needed — start hands-on with Lemma's products.