DigiCert, a pioneer in intelligent trust, introduces a new AI Trust architecture designed to help organisations secure AI systems and their outputs. The company is also unveiling new capabilities to help secure autonomous agents and AI models, along with separate capabilities to provide verifiable content authenticity in the age of AI.
Artificial intelligence is accelerating innovation at an unprecedented pace while simultaneously breaking traditional models of trust. Autonomous agents act across enterprise systems at machine speed; AI models introduce new supply chain and IP risks; and digital content can no longer be trusted at face value. At the core of this challenge is a lack of cryptographically verifiable control over AI systems. Specifically, what they are, what they are authorised to do, and what they produce.
Embedding cryptographic verification
“AI has created a new trust challenge,” said Amit Sinha, CEO of DigiCert. “Organisations are relying on agents, models, and content they can’t always verify. At DigiCert, our purpose is to give people confidence in the security, privacy, and authenticity of their digital interactions. With our AI Trust solution, we help organisations confirm what’s real, secure, and approved so AI can be used with confidence.”
To address this challenge, DigiCert is introducing a unified trust layer that spans AI agents, models, and content. By embedding cryptographic verification across the AI lifecycle, organisations can enforce identity-based governance for autonomous systems, validate model integrity, and establish content provenance all within a single, cohesive framework. This unified approach is realised through new DigiCert ONE enhancements:
Ensuring verifiable origin
Content Trust Manager enables organisations to cryptographically sign and verify digital content, providing tamper-evident provenance and transparency using the C2PA standard, which is adopted by Adobe, Microsoft, Google and more. This allows organisations to prove where content originated, how it was created, and whether it has been altered, helping combat misinformation, brand impersonation, and AI-generated fraud while strengthening confidence in digital media.
Taking content authenticity even further, organisations can establish trust at the moment of capture through cryptographic signing and timestamping enabled by embedded C2PA certificates on trusted devices. Delivered through DigiCert Device Trust Manager, this capability allows imaging device manufacturers to embed trust directly into devices such as cameras, microscopes, and scanners. Content can be signed and timestamped at the source, ensuring verifiable origin and authenticity from the start and preserving trust throughout the content lifecycle.
Audit autonomous systems
AI Agent Trust - Provides discovery, identity, governance, and lifecycle management for AI agents, enabling organisations to authenticate, authorise, and audit autonomous systems. By issuing cryptographic identities and enforcing policy-based controls, DigiCert enables enterprises to govern AI agents like a new digital workforce, ensuring every action is attributable, controlled, and aligned with security and compliance requirements.
AI Model Trust - Delivers cryptographic protection and verification for AI models, including secure packaging, signing, and runtime validation. By establishing a verifiable chain of custody for models, from development through deployment, organisations can create models that have not been tampered with, are running in trusted environments, and are handling sensitive data securely, even in distributed or third-party infrastructure.
Automated trust architecture
Together, these innovations help organisations move from fragmented, manual approaches with an automated trust architecture that delivers verifiable identity, tamper-evident integrity, and continuous validation across AI systems.
“AI is forcing organisations to rethink trust from the ground up,” said Jennifer Glenn, Research Director for IDC Security and Trust Group. “Bringing cryptographic assurance to AI systems gives enterprises the ability to independently verify identity, integrity, and provenance of content, enabling these organisations to build trustworthy AI at scale.”
Proven PKI principles
With a unified AI Trust foundation, organisations can reduce reputational and regulatory risk while accelerating responsible AI adoption. They gain the ability to verify content provenance, ensure model integrity, and govern AI agents with accountability, transforming security and compliance from reactive processes into measurable, audit-ready capabilities.
As AI adoption accelerates, the ability to establish and verify trust will become a defining requirement for enterprise success. DigiCert is defining the trust infrastructure required for AI, extending proven PKI principles to agents, models, and content.