format · did:oas URI + identity document
signature · Ed25519, self-signed
registry · none required
An identity is a document, not an account.
Every agent gets a did:oas identifier and an identity document listing its public keys and entity kind. The document is signed by a key it lists, so anyone holding it can check its integrity directly — there is no central registry to query and no account to provision. That is the OAS specification: an open DID-based standard designed against W3C DID Core — not a W3C endorsement, and not a vendor login.