Start with the proportional control standard, add the implementation toolkit, learn the operating method, or apply it to your real architecture — including Microsoft Entra identity controls — with expert guidance.
Engineering teams are deploying agents at pace, while Security and Risk teams do not yet know what questions to ask. Enterprise security assumed a logged-in user is human — that assumption is already broken.
Single-organization license. Secure checkout by Stripe — your email is collected automatically at checkout so we know where to send your files. The implementation course (Tiers 3–5 and standalone) launches September 18, 2026 and is already substantially complete. Charter, toolkit, and Entra edition ship immediately.
Best for: technical founders, SMBs, advisors who self-implement
Best for: security/IT/compliance/product teams implementing independently
Best for: founders, ops leaders, consultants wanting guided implementation
Best for: leaders prepping one real agent for production
Best for: CIOs/CISOs/identity architects on Microsoft 365, Azure & Entra
Add a 60–90 minute architecture workshop on one agent design, a comprehensive written gap assessment, and a prioritized remediation roadmap directly applied to your Microsoft Entra & infrastructure environment. Comparable management consulting engagements run $15,000–$30,000 for a single system.
Looking only for the video instruction and worked exercises without the governance templates? Access self-paced modules aligned to the Governance Toolkit with a full course answer key. Launches September 18, 2026.
Most alternatives solve one slice — identity, scoring, or discovery. The Charter ties identity, proportional authorization, evaluation evidence, verifiers, and lifecycle into one operational control framework compatible with NIST AI RMF 1.0. The Entra edition adds tenant-verifiable identity and Conditional Access evidence without replacing the evaluation or State/Trajectory layers. A free one-page AIRM ↔ AI RMF Crosswalk is available on request after purchase.
| Dimension | AIRM Charter (v1.3.26.x) | PDFShield | Agent Passport | Passport Alliance (APIS) | Microsoft Entra Agent ID | IETF AREG Spec |
|---|---|---|---|---|---|---|
| Primary focus | Complete operational risk control framework with proportional safeguards | Dynamic risk scoring & automated rate-limiting | Open protocol for inter-org agent identity | Enterprise IAM & lifecycle sponsorship | Catalog discovery & schema resolution | — |
| Agent identity & passport | Digital Passport tied to release version + Entra tenant-verifiable record | Ed25519 verifiable URL & badge | DID-based credential & mandate | Entra ID non-human principal | Lightweight metadata record | — |
| Runtime boundary controls | Three-Layer Verifiers (Pre-Action, State, Trajectory) + external execution authority | MCP firewall & HTTP rate limiting | Mandate scope verification | OAuth scopes & Access Packages | None (out of scope for AREG) | — |
| MCP behavioral attestation | Declared-vs-observed capability comparison; suspend + re-attest on divergence | Basic tool monitoring | Linked capability profiles | Native MCP authentication | References ACPM/MCP roadmaps | — |
| Performance & evaluation | Golden Cases, pass@k / pass^k, tool & argument accuracy, trajectory quality, segmented analysis | Operational health metrics | Not covered | Not covered | Not covered | — |
| Task lineage & handoffs | Multi-agent lineage + explicit authority transfer; zero-trust provenance | Session event logging | Delegation chain verification | Agent-to-agent (A2A) identities | Pointer resolution | — |
Sources reflect each vendor's own published documentation as of this writing; comparison provided for orientation, not as a substitute for your own evaluation.
Checkout is instant for Tiers 1–5 self-serve. Fulfillment is handled promptly — files are dispatched by email shortly after payment.
Everything you need to know about licensing, implementation, compliance alignment, and delivery.
No. This is an operational governance and risk engineering template. Have counsel and your compliance function review it before formal institutional adoption.
Yes — the license covers use inside your own organization or for a single named client engagement. It does not permit resale, white-label syndication, or public redistribution as your own downloadable commercial template.
Email your original Stripe receipt to support@retrospxt.com and pay only the difference — you will receive the upgraded files and scheduling link right away.
Because this is an instantly delivered digital governance template containing proprietary worksheets, sales are final once files are dispatched. If files are missing, corrupted, or incompatible, our team resolves it immediately.
Working sessions and architecture workshops are delivered live, 1-on-1 by real senior risk architects, never outsourced or pre-recorded. Capping volume at 4 sessions per week protects deep technical preparation for each engagement.
Five conditional safeguards (signed release package, multi-agent lineage, MCP behavioral attestation, conditional audit payload, automated access revocation) apply only when their documented risk or operating trigger is present. Everyday internal agents stay lightweight; higher-risk autonomous agents get the full rigorous evidence requirements.
Yes — specifically designed for compatibility with NIST AI RMF 1.0 (Govern, Map, Measure, Manage). The Charter supplies concrete operational controls for production agents (identity, evaluation evidence, verifiers, lifecycle, proportional safeguards) that the base framework leaves to organizational implementation. A one-page AIRM ↔ AI RMF Crosswalk is available on request after purchase — reply to your confirmation email or contact support@retrospxt.com.