Hardware Keystores for AI Agent Signing Workflows: A Zero-Trust MCP Enforcement Architecture
arXiv:2608.06130v2 Announce Type: replace-cross Abstract: AI agents increasingly sign Git commits, certify documents, and attest release artifacts on behalf of their operators, using private keys that live in software-accessible locations (plaintext files, environment variables, container memory)…