AgentKey
Biometric Hardware Identity & Authorization Key for the AI-Agent Era
Powered by eSE + Secure MCU + Fingerprint Sensor
Product Lineup
Five models designed for every use case — from consumer passkeys to government-grade FIPS security
AgentKey Lite
$39
USB-C | FIDO2 Consumer
- FIDO2 / WebAuthn
- Passkey Support
- USB-C Interface
- Secure MCU
- Hardware TRNG
Target: Consumer / Developer
AgentKey NFC
$59
USB-C + NFC | Mobile + Passkey
- FIDO2 / WebAuthn
- NFC ISO14443 Type A
- USB-C + NFC
- Passkey Support
- Mobile Compatible
Target: Mobile / Passkey Users
AgentKey Bio
$79
USB-C | Enterprise Biometric
- Fingerprint Sensor (MOC)
- FIDO2 / PIV / OpenPGP
- eSE CC EAL5+
- Biometric Verification
- SSH Key Support
Most Popular — Enterprise
AgentKey Pro
$99
USB-C + NFC | AI-Agent + Enterprise
- Full eSE + Secure MCU + FP
- AI-Agent Authorization
- API-Key Protection
- USB-C + NFC
- Enterprise MDM Ready
Target: AI-Agent / Enterprise
AgentKey FIPS
$149
USB-C + NFC | Government / Banking
- FIPS 140-2 Certified
- eSE CC EAL6+
- PIV / OpenPGP / OTP
- FIDO2 + Passkey
- USB-C + NFC
Government / Banking
Hardware Architecture
Three-layer silicon security — eSE, Secure MCU, and Fingerprint Sensor working in harmony
🔐
eSE
Embedded Secure Element
- CC EAL5+ / EAL6+ Certified
- ECC / RSA Key Storage
- Secure Signing & Attestation
- API-Key Sealing
- Secure Counter
- Hardware-bound Identity
⚙️
Secure MCU
ARM Cortex-M33 Secure Core
- TrustZone / Secure Boot
- Hardware Crypto Engine
- USB / NFC Stack
- FIDO2 / PIV / OpenPGP
- Trusted Execution Env
- Secure Signed Firmware
👆
Fingerprint Sensor
Goodix MOC Technology
- Match-on-Chip (MOC)
- Local Biometric Match
- Secure Template Storage
- Human Presence Verify
- Zero Data Transmission
- Offline Capable
Core Hardware Specifications
| MCU | ARM Cortex-M33 Secure MCU |
| Secure OS | Trusted Execution Environment |
| eSE | CC EAL5+ / EAL6+ |
| Fingerprint | Goodix MOC Sensor |
| Matching | Local Match-on-Chip |
| Secure Boot | Yes |
| TRNG | Hardware TRNG |
| USB | USB-C 2.0 |
| NFC | ISO14443 Type A |
| Power | USB Bus Powered |
| Tamper | Tamper Resistance |
| LED | RGB Status Indicator |
AI-Agent Security Features
What makes AgentKey different from traditional security keys — built for the AI automation era
Human Approval Gate
Fingerprint verification required before any AI agent action is authorized. Physical human presence is cryptographically proven.
Agent Action Signing
eSE signs every AI agent action with a hardware-bound private key. Each authorization is cryptographically traceable and non-repudiable.
API-Key Vault
API keys are sealed inside the eSE. They are never exposed in memory or storage. Only the eSE can use them — not extract them.
Temporary Token
Time-limited authorization tokens are issued per-action. AI agents cannot reuse or extend tokens without fresh human approval.
Risk-Based Auth
Policy engine integration allows adaptive authentication — high-risk actions require stricter biometric + hardware confirmation.
Secure Audit Log
Every authorized action is hardware-signed and logged. Immutable audit trail for compliance, forensics, and accountability.
AI-Agent Authorization Workflow
AI Agent requests action → Risk Engine checks policy → Human Approval required → Fingerprint verification → eSE signs challenge → Temporary token issued → AI Agent executes action
Security & Protocol Support
Full enterprise security stack — from FIDO2 to AI-Agent Authorization
Security Protocols
- FIDO2 / WebAuthn
- Passkey
- PIV Smart Card
- OpenPGP
- SSH Key
- OTP / TOTP
- Challenge Response
AI-Agent Features
- Hardware-bound Identity
- AI-Agent Authorization
- API-Key Protection
- Secure Attestation
- Secure Audit Log
- Temporary Token
- Local AI Auth (Offline)
Platform Support
- Windows / macOS / Linux
- Android / ChromeOS
- AI PC
- Linux Embedded
- Android XR (Planned)
SDK & Integration
- PKCS#11
- WebAuthn API
- OpenSSL Engine
- Python SDK
- Node.js SDK
- Rust SDK (Planned)
- AI-Agent SDK (Planned)
Enterprise Integration
Seamlessly integrates with your enterprise identity and cloud infrastructure
Azure AD
Okta
Google Workspace
GitHub
AWS IAM
Kubernetes
Ready to Deploy AgentKey?
Contact us for samples, datasheets, and enterprise pricing