# Standards and

> How Rangoon separates agent protocols, identity, policy evaluation, execution authority and operational evidence. Assess integration requirements against versioned release evidence.

Canonical: https://rangoon.ai/standards/

Status: Launch specification. Application source and releases arrive at launch. Screenshots contain illustrative data.

## What a support claim establishes

This is a launch architecture reference. Naming a standard or framework identifies an integration requirement; it does not establish a shipped adapter, certification or tested deployment. A support record identifies the specification revision, implementation version, supported operations, limitations and conformance results.

### Protocol target

A versioned interface that an adapter is designed to implement. Compatibility depends on the negotiated features and the tested client/server pair.

### Evaluation reference

A framework used to organize risks, controls and evidence. A mapping is not certification or proof that every requirement has been satisfied.

### Release-backed support

A claim tied to a published artifact, exact version and reproducible test evidence. The release matrix is the source of support truth.

## Agent and tool interoperability

MCP defines interfaces between model-facing applications and external tools or resources. A2A defines communication between independent agents. Rangoon treats these as integration protocols; permission to contact an endpoint remains distinct from approval to perform a consequential operation.

### Model Context Protocol

Record the MCP revision, transport, authentication configuration, tool schemas, resource access and error handling. HTTP authorization uses its specified OAuth flow; local process transports have a different credential boundary.

### Agent2Agent

Record the A2A version, advertised capabilities, identity requirements, task lifecycle and artifact handling. Delegated tasks must retain the original data restrictions and action scope.

## Identity, policy and authority

Authentication identifies a principal. Delegated resource access, policy evaluation and execution approval answer different questions. Rangoon preserves those distinctions when combining existing infrastructure with LNSAT or another authority adapter.

### OIDC, OAuth and SPIFFE

OpenID Connect provides an authentication layer; OAuth delegates access to protected resources; SPIFFE describes workload identities. An adapter must bind the verified identity and access scope to the requested operation.

### OPA, Cedar and OpenFGA

These are policy or relationship-authorization technologies, not interchangeable protocol standards. Adapters supply typed input, preserve denial and error states, and record the policy or relationship version used.

### LNSAT authority contract

The reference contract binds the request, target and digests to policy, any required human approval, scoped authorization and a receipt. Unknown outcomes require reconciliation. A transport token or policy allow does not independently satisfy that lifecycle.

## Deployment and observation

Portable packaging and telemetry help teams operate the system, but neither establishes an execution permission. Each deployment needs an explicit isolation model, network policy, credential boundary and evidence retention policy.

### OCI, Docker and Compose

Use versioned container artifacts and declared service configuration. Record image digests, secret references, persistent storage and rollback procedures. Container packaging alone is not a sufficient sandbox for unrestricted agent actions.

### OpenTelemetry and CloudEvents

Use versioned observation and event schemas to correlate operations. Traces are diagnostic records, not execution receipts. Prompt text, tool arguments and sensitive payloads need explicit collection and redaction policy.

### Release review

Inspect dependency inventories, artifact provenance, signatures or explicit unsigned status, test results and known limitations before adopting a release. This site does not claim published attestations or a completed supply-chain assessment.

## Public-sector and organizational evaluation

NIST AI RMF is a voluntary risk-management reference. Rangoon’s architecture can help organize evidence for an organization’s evaluation; the following mapping is Rangoon’s interpretation, not a NIST assessment.

### Govern and Map

Assign accountable owners and review roles. Record intended use, affected systems, provider facts, data classes and action scope before enabling a workload.

### Measure and Manage

Evaluate representative and adversarial cases, record failures and compatibility limits, and define approval, monitoring, incident and rollback procedures.

### Independent assessment

Agency authorization, procurement acceptance and any required control assessment belong to the responsible organization. No FedRAMP authorization, FIPS validation, NIST certification or government endorsement is claimed.


## References and related documentation

- [MCP authorization specification](https://modelcontextprotocol.io/specification/2026-07-28/basic/authorization)
- [A2A specification](https://a2a-protocol.org/dev/specification/)
- [OpenID Connect Core](https://openid.net/specs/openid-connect-core-1_0.html)
- [OAuth 2.0 (RFC 6749)](https://www.rfc-editor.org/rfc/rfc6749)
- [SPIFFE overview](https://spiffe.io/docs/latest/spiffe-about/overview/)
- [OpenTelemetry specifications](https://opentelemetry.io/docs/specs/)
- [CloudEvents specification](https://github.com/cloudevents/spec)
- [NIST AI Risk Management Framework](https://www.nist.gov/itl/ai-risk-management-framework)
- [Government evaluation](https://rangoon.ai/solutions/government/)
- [Security architecture](https://rangoon.ai/security/)

## More information

- [Documentation index](https://rangoon.ai/llms.txt)
- [AI access and policies](https://rangoon.ai/ai/)
- [Source repository](https://github.com/hypler-dev/rangoon)
