v1.0.0
First public release of the FORA Protocol (Federated Open Resource Access): the wire format (protobuf under proto/), the generated Go, Python and TypeScript wire types (under gen/), the Go, Python and TypeScript SDKs (under sdk/), and the specification site (under website/).
FORA extends IAB Tech Lab CoMP v1.0 and RSL 1.0 with resource discovery, transaction execution, post-usage reporting, dispute resolution, and provider domain verification. This is enough for an autonomous agent to negotiate licensed access to a publisher's resources through an Exchange and produce a cryptographically auditable record of the transaction.
Highlights
- A single
ExchangeService(DiscoverResources,ExecuteTransaction,ReportUsage,DisputeTransaction, and domain verification) with Brokers and agents as interchangeable clients. - Unit-agnostic metering.
- Ed25519 at every trust boundary: RFC 9421 HTTP Message Signatures for request and hop authentication, JWS (RFC 7515) for offer and attestation signatures.
- A unified
/.well-known/fora.jsonmanifest served by every role, with inline RFC 7517 JWKs and explicit key-validity bounds. - Cryptographic content attestations with a structured dispute chain.
- Multi-hop intermediary chains with agent- and exchange-published depth caps.
- Extension profiles for domain-specific behavior (news, academic, legal, C2PA, CoMP, pharma, medical imaging).
SDKs
The SDKs are consumed from this repository at the release tag. There is no PyPI or npm package yet.
go get github.com/FORA-Protocol/protocol@v1.0.0
pip install "git+https://github.com/FORA-Protocol/protocol.git@v1.0.0#subdirectory=sdk/python"
npm install github:FORA-Protocol/protocol#v1.0.0Compatibility
This release is a clean cut. The wire format and the SDK surfaces carry no compatibility guarantees toward any pre-release draft. The full history, including every revision made to the draft before this tag, is in proto/CHANGELOG.md. The curated public notes are on the specification site changelog.