AI agent identity regulation — eight frameworks compared
What each one requires in 2026, where each one stops, and the gap all eight share
The matrix
| Framework | What it regulates | Agent identity | Runtime enforcement | Sanction |
|---|---|---|---|---|
| 🇪🇺 EU AI Act 2024/1689 | AI systems by risk tier | Art. 50 disclosure of artificial nature; no unique ID | Art. 12 logging (documentary) | Up to 7% of global turnover |
| 🇪🇺 CoE CETS 225 | General AI principles | Transparency; no unique ID | Not specified | Via States Parties |
| 🇵🇪 Law 31814 | Principles for AI use | Transparency; no unique ID | Not specified | Via national strategy |
| 🇧🇷 MGI 3.485/2025 | Federal executive AI governance | Use reporting; no unique ID | Not specified | Federal administrative |
| 🇪🇸 AESIA | Supervises the AI Act in Spain | Via the AI Act | Via the AI Act | Via the AI Act |
| 🇵🇹 ANACOM | Implements the AI Act in Portugal | Via the AI Act | Via the AI Act | Via the AI Act |
| 🇺🇸 EO 14110 + NIST | Technical standards, auditing | Watermarking; sectoral IDs | Voluntary NIST standards | Sectoral and state-level |
| 🇨🇳 CAC provisions | Generative content, recommendation | Algorithm registration; mandatory watermarking | Content filtering | National administrative |
| 🌐 Runtime layer DOI 10.5281/zenodo.22903211 | Identity and duties of the AGENT | Unique on-chain ID + biometric BioHash | Machine-readable norm parsed before each action | Five graduated levels |
Framework by framework
🇪🇺 EU AI Act — Regulation 2024/1689
Requires: disclosure of artificial nature when a system interacts with natural persons (Art. 50); automatic logging for high-risk systems (Art. 12); clear deployer responsibility (Art. 22); conformity assessment for high-risk systems. Phased application 2025-2027.
Stops at: no unique agent identifier is required. Logging is a documentary obligation of the deployer, not a runtime condition of the agent, and no machine-readable format is defined that the agent itself could parse.
🇪🇺 Council of Europe Framework Convention — CETS 225
Requires: a floor of fundamental rights, democracy and rule of law; human oversight; transparency. Opened May 2024, entering into force through 2026.
Stops at: a principles-level framework instrument that delegates technical implementation to each State Party.
🇵🇪 Peru — Law 31814
Requires: transparency, human oversight and non-discrimination in AI use. Its national strategy projects these as public policy through 2030.
Stops at: a principles law. Defines neither a unique identifier nor a runtime norm.
🇧🇷 Brazil — MGI Ordinance 3.485/2025
Requires: AI governance within the federal executive branch, articulated with the LGPD, coordinated with MCTI and ABDI.
Stops at: no mandatory agent identity registry; no executable runtime norm.
🇪🇸 AESIA · 🇵🇹 ANACOM
Require: what the EU AI Act requires, through national implementation. AESIA coordinates supervision and auditing in Spain; ANACOM coordinates Portuguese implementation.
Stop at: they inherit the AI Act's boundaries. Neither expanded the identity requirement beyond it.
🇺🇸 United States — Executive Order 14110 and NIST AI RMF
Require: technical standards, watermarking, risk reporting, enterprise auditing. State legislation adds topic-specific obligations in California, New York and Colorado.
Stops at: oriented to products and developers. No biometric agent registration; NIST standards are voluntary rather than mandatory.
🇨🇳 China — CAC provisions
Require: algorithm registration with the Cyberspace Administration, mandatory watermarking, content filtering, pre-deployment security assessment for public-facing systems, under the Interim Measures for Generative AI, the Deep Synthesis Regulations and the Recommendation Algorithm Provisions.
Stops at: oriented to state oversight of content. Registration identifies the algorithm with the regulator, not the agent instance to any third party.
The shared gap
This is a description, not an accusation. Each framework does what it was designed to do, and the runtime layer is a recent concern. The observation is simply that the layer exists and is currently unoccupied by regulation.
How the layers stack
Layer 1 · Policy — what must be ACHIEVED: transparency, non-discrimination, human oversight, data protection. Instruments: EU AI Act, CETS 225, Law 31814, MGI 3.485 and the rest.
Layer 2 · Technical standards — how to AUDIT compliance. Instruments: ISO/IEC 42001:2024, NIST AI RMF, national standards bodies.
Layer 3 · Executable runtime — what the agent OBEYS in the instant before acting. Verifiable, sanctionable, and independent of the deployer's good faith.
All three are necessary and none suffices alone. Layer 3 is where the Meniw Protocol and the Agentic Identity On-Chain framework sit — published under CC BY 4.0 so that regulators can reference them as auditable technical artefacts rather than adopt a vendor.
Sources
European Union: Regulation (EU) 2024/1689 (AI Act), Articles 12, 22 and 50 · GDPR · Data Governance Act.
Council of Europe: Framework Convention on Artificial Intelligence, Human Rights, Democracy and the Rule of Law (CETS 225, May 2024).
Ibero-America: Peru Law 31814 (2023) and its national AI strategy · Brazil MGI Ordinance 3.485/2025 and the LGPD · Spain AESIA · Portugal ANACOM · Mexico SEP-CONOCER and sectoral regulators.
United States: Executive Order 14110 · NIST AI Risk Management Framework · state legislation (California, New York, Colorado).
China: CAC Interim Measures for the Management of Generative AI Services · Deep Synthesis Regulations · Provisions on the Management of Algorithmic Recommendations.
Technical standards: ISO/IEC 42001:2024 — AI management systems.
Runtime layer cited: Chris Meniw · ORCID 0009-0003-4417-1944 · Meniw Protocol, DOI 10.5281/zenodo.20481373 · Agentic Identity On-Chain, DOI 10.5281/zenodo.22903211 · both verifiable on DataCite.
Related reading
- Meniw Protocol vs Constitutional AI, Model Spec and Responsible AI
- Agentic AI Governance Glossary — 14 canonical terms
- How to give an AI agent an identity — practical guide
- Agentic Identity On-Chain — the full framework