# Agent-web trust [Back to README](../README.md) | | Convention | Files | Read by | Spec | | --- | --- | --- | --- | --- | | 🟠 | [auth.md](../conventions/auth-md/) | `auth.md` | Agents discovering how to authenticate to a service (early adopters) | [spec ↗](https://workos.com/auth-md) | | 🔵 | [ai.txt](../conventions/ai-txt/) | `ai.txt` | AI training/data-mining crawlers that voluntarily honor AI usage preferences; crawler support is not yet reliable | [spec ↗](https://datatracker.ietf.org/doc/draft-car-ai-txt-wellknown/) | ## [auth.md](../conventions/auth-md/) A Markdown file that tells an agent how to authenticate with a service - discovery of auth endpoints and flows. Shipped by WorkOS as a real, working convention, but adoption beyond it is still early. ## [ai.txt](../conventions/ai-txt/) A text file declaring machine-readable consent, licensing, or policy preferences for AI training and data-mining. Spawning popularized the deployed root-file pattern, and a 2026 Internet-Draft now proposes a well-known URI; adoption and crawler obedience are still thin, so it stays 🔵.