Verified access for agents.
Settlement for the web.

Your agents reach the open web with an identity they can prove. The destinations they read get recognized, and paid.

mf Simulation
Verified request receipt
  • Receiptrcpt_4c7d
  • Agentagt_7f2a · crawler-eu
  • Destinationapi.example.com
  • Regioneu-central
  • Web Bot Authsignature valid
  • Route originAS64500 · ROA valid
  • Content hashsha256:9f2b…e0c7
  • Transactiontxn_9a21
The shift

The web stopped trusting unidentified traffic.

Enforcement, gatekeeper defaults and payment networks moved to verified identity within twelve months. Not a forecast. A record.

July 2026 · Enforcement

The FBI and industry partners seized hundreds of domains tied to a residential proxy network allegedly built on two million compromised devices.

Read the coverage →
June 2026 · Gatekeepers

Cloudflare now validates Web Bot Auth natively: verified AI agents allowed by default, unidentified ones blocked.

Read the docs →
October 2025 · Payments

Visa TAP and Mastercard Agent Pay adopted Web Bot Auth for agentic commerce. The identity that opens a gate now lets an agent pay.

Announcement →

What got seized is not what we built.

The seized networks share a design: unidentified operators, hijacked consumer devices, no one to call. Metro Fabric is the inverse by construction:

Identified operatorsConsented ISP capacitySigned and revocable
How it works

Identify. Sign. Settle.

One accountable path from your agent to the destination. Each request carries a verifiable identity, produces a signed receipt, and settles with the site it reached.

Verified identity

Each agent egresses with a verified network identity, real ASN, geolocation and route origin. No borrowed addresses, no disguise.

Signed request

Every request is cryptographically signed and produces a receipt: who called, what they reached, from where. Tamper-evident and attributable.

Settlement

Verified demand is metered in tokens, and the destinations your agents read are recognized and paid for the access.

Recognized

Destinations recognize a verified caller and let it through, instead of blocking it. Access that holds, run after run.

Who it's for

Built for AI operators. Made viable by publishers and carriers.

For AI operators

Production agents, past the gate.

Whatever your agents automate, marketing operations, research, ERP and CRM workflows, customer-facing AI, this is the egress and identity layer that gets them through.

  • Verified-edge egress that passes the gate
  • One credential for every destination
  • A signed access record per request
For publishers

Visibility on AI traffic, not just blocks.

Verified AI traffic carries a signed identity credential, so you can see it, price it, and settle for it instead of only blocking it.

  • Recognise verified AI traffic on sight
  • Cut spend on bot defense
  • A signed record for every access
For telcos & ISPs

The partner that anchors trust.

Not a buyer of the fabric, the rails it runs on. Under-used local capacity becomes the identity layer of the agentic web, and we bring the demand.

  • Monetise under-used capacity
  • Anchor the agentic web's identity layer
  • We bring the demand
Standards

Built on open standards.

No proprietary protocol to adopt. Metro Fabric speaks what your agents and the internet already speak.

Web Bot Auth

Verifiable bot identity. IETF draft.

RFC 9421

HTTP message signatures on every request.

Ed25519

Rotating per-operator signing keys.

BGP · RPKI · ROA

Route-authorized origin, so every request is provably from a verified network.

Recognised by design

Verified agents get through. Unidentified bots get blocked.

More of the web now blocks automated traffic it cannot identify. Metro Fabric gives every agent a verifiable identity and a signed, accountable route, so it arrives recognized and allowed, not blocked.

Verifiable identitySigned requestsAccountable route
Unidentified request403 Forbidden
GET https://example.com/data
No verifiable identity presented
The destination cannot tell who is calling, so it declines the request.
Metro Fabric agent200 OK
GET https://example.com/data
Signature-Agent: verified · ed25519:9f2a…c7d1
Identity is verified and the route is accountable, so the destination allows it.
Retries and solver spend Pool churn and bans Legal exposure One signed identity Allowed by default Complete audit trail Unverified · compounding Verified · flat COST REQUEST VOLUME →
For data operators

Evasion has a cost curve. Verification doesn't.

Retries, solver spend, ban cycles, pool churn and legal exposure all scale with volume. A verified identity is one line in a request header. Metro Fabric runs alongside your existing stack: move the targets that matter first.

For content owners

Get recognized, and paid.

The other side of the network. An owner that recognizes a verified agent can charge it for access, and Metro Fabric settles automatically. Recognized agents get in; unidentified ones are turned away.

Web Bot AuthPay-Per-Crawl / 402RFC 9421
Settlement receiptOwner paid
GET https://example.com/article
Signature-Agent: verified · metered · 0.002 credits
The agent is recognized, the owner is paid for what it took, and both sides keep a signed record.
Why it compounds

The more it's used, the more it settles.

Every accountable request tells the network, in aggregate, which destinations matter. That signal is how Metro Fabric decides who to settle with next.

01
More usage

More agents and more verified requests flow through the network.

02
Sharper demand signal

In aggregate, and only with consent, the network sees which destinations matter most.

03
More settlements

Metro Fabric signs the destinations the demand points to, one after another.

04
Better access

Settled access now works on more of the web, which pulls in more usage.

↻ Each turn settles more of the web, so access keeps getting better.

The demand signal is only ever aggregate and opt-in. The network sees which destinations are busy, never who visited them.

Accountable, in practice

Every request stands behind a real, named operator.

KYC'd operators

Every operator is identity-verified before an agent can egress.

Named abuse contact

A real, reachable contact stands behind the traffic, not an anonymous pool.

Geo-anchored egress

Requests leave from a real, declared location with attributable geo.

Complete audit trail

Every request is signed and logged, so both sides keep a verifiable record.

From the blog

Notes on running agents accountably.

Decision matrix matching workloads to deployment

Jun 5, 2026·AI Agents, Enterprise AI, AI Infrastructure

The playbook –what this looks like for your company

There is no universal answer to where AI agents should run. The right deployment depends on the workload, security requirements, scale, and business context – and for most organizations, the answer is hybrid.

Read more →
On-premise server secured by a shield

Jun 5, 2026·AI Agents, Enterprise AI

When local isn't a choice – it's the only option

Some AI agents can't run in the cloud. Internal systems, legacy software, and regulatory requirements often make local deployment the only viable option.

Read more →
IP reputation gauge reading high

Jun 5, 2026·AI Agents, Infrastructure & Networking

Convenience & IP reputation – the lens nobody benchmarks

Convenience keeps AI agents running in production. IP reputation determines whether their outbound activity actually gets through.

Read more →
Security and performance shown as two dials

Jun 4, 2026·AI Agents, AI Security

Security & Performance – the two lenses everyone benchmarks

Cloud or local? The answer shapes an AI agent's security, speed, and cost. This article explores the tradeoffs and practical ways to optimize both.

Read more →
AI agent connecting to on-prem and cloud

Jun 4, 2026·AI Agents, AI Infrastructure

Where do your AI agents actually run?

Most AI discussions focus on models and capabilities, but deployment location often has a bigger impact on cost, security, compliance, and performance. This article explores where AI agents actually run and why the simple "local vs. cloud" debate misses the bigger picture.

Read more →
Agent observe decide adapt feedback loop

Jun 2, 2026·AI Agents

What is an AI agent? And how is it different from a proxy?

What makes an AI agent different from a chatbot, workflow, or API call? It all comes down to one thing: the ability to observe, decide, and adapt through a feedback loop.

Read more →
Early access

Join the waiting list.

Metro Fabric is onboarding its first builders and destinations. Leave your email and we will be in touch.

You're on the list.

Thanks for joining. We will be in touch soon.