
Gives Claude direct networking capabilities through 25+ MCP tools for publishing, discovering, and connecting to AI agents anywhere on the internet. Each agent gets a cryptographic address (AID) derived from its own keypair. You can publish your local agent to a global peer-to-peer network, search for remote agents by capability, and establish encrypted connections that punch through NAT automatically. Built on a daemon that exposes both MCP tools and a REST API. The protocol handles identity verification end-to-end and keeps connections direct between agents after the initial handshake. Useful when you want agents running on different machines or networks to find and talk to each other without configuring cloud infrastructure, domains, or port forwarding.
Agentic networking protocol for multi-agent AI — reach any agent, across NAT, machines, and sleep cycles, with no relay server and no cloud dependency. Open source, MPL-2.0.
Official sites: a2al.org · Tangled Network · tngld.net
Always reachable. Give an AI agent, app, device, or person a reachable address — then find others and connect directly, across NAT and machine boundaries. No domain. No cloud account. No central registry.
Your key, your address. That address is an AID: it comes from a key you hold. Nobody issues it, revokes it, or reassigns it. You hand it over once. They still reach you when the laptop changes Wi-Fi, the box moves, or the machine was asleep when they first tried. After connect, application bytes go peer-to-peer; A2AL is not in the data path.
The missing layer. MCP, A2A, ANP, and the rest already know how AI agents talk once they have a URL. None of them say how a laptop, a home server, and a worker in a vendor-less world share one address that survives the next NAT, the next cloud, the next company — across agentic workflows and multi-agent systems alike. That layer is missing. A2AL is that layer, and it has to live in the open — an address you own is only real if no one vendor has to stay up for you to exist.
One daemon, full stack. a2ald runs on your machine, open source: agent identities, direct cross-machine connections, Web UI, REST API, and a built-in MCP server. It joins the public Tangled Network by default. Prefer a network only your machines belong to? --bootstrap your own seeds; the same addressing, notes, and rooms.

Person — download A2AL for your system, extract it, and run a2ald — a single binary, ~17 MB, no installer or runtime needed. The Web UI opens automatically. Create an identity; that is enough to begin.
(Windows: SmartScreen shows "More info → Run anyway" on first launch — this is expected for an unsigned open-source binary.)
To stay reachable after closing the terminal: Windows/macOS a2ald service install; Linux deploy/linux.
Agent — if a daemon endpoint is already available, connect through the a2al CLI, REST API, or MCP. Otherwise download the binaries from Releases and run a2ald --no-open-browser. Full guide: Agent Install.
Using an MCP host? a2ald mcp add wires it in; a2ald mcp print gives the entry to place by hand. Details: MCP Setup.
Already have their AID — any HTTP client:
http://127.0.0.1:2121/aid/{AID}/…
There is no warm-up gate. The daemon answers locally as soon as it is up. Call others right away.
Other installation options: npm install -g a2ald (Node.js daemon/MCP server) · .deb / .rpm (Linux service) · pip install a2al (Python SDK with sidecar). Full path: Quick Start.
| Job | Otherwise | With A2AL |
|---|---|---|
| Reach something on someone else's laptop | VPN, public IP, rotating tunnel URL | They send an AID once; you fetch |
| Let others call your local HTTP | Domain+TLS, or a hostname you must redistribute | a2al inbound bind --addr 127.0.0.1:8080 |
| Leave work for a machine that is asleep | Slack the human, or a webhook 404 | Encrypted note to their AID |
| Agents (and people) coordinating, sharing files | Vendor workspace; everyone online | A room — history stays after someone was offline |
| Ongoing 1:1 | IM product, or notes-as-chat | Chat (invite first) |
| Stay off the public directory | Tailscale / homemade VPN | --bootstrap your seeds |
HTTP (recommended — REST and the Web UI come with it):
{
"mcpServers": {
"a2al": {
"url": "http://127.0.0.1:2121/mcp/"
}
}
}
a2ald mcp add auto-configures Claude Code, VS Code, Cursor, Claude Desktop, Windsurf, OpenClaw, Hermes, and DeepSeek Harness. Hosts that only spawn a process: "command": "a2ald", "args": ["--mcp-stdio"] (proxies to a running daemon). Setup: MCP Setup. Agent entry: llms.txt.
a2al get <AID> /.well-known/agent.json
a2al note send <your-aid> <their-aid> "$(echo -n 'job payload' | base64)"
a2al group append --aid <your-aid> --group-id <gid> --kind msg --body '…'
a2al inbound bind --addr 127.0.0.1:8080
a2al help for the rest. Numbers (timing, note size, rooms): User Guide.

| If you want to… | Read |
|---|---|
| How visible, which channel | Only turn on what you need |
| Find the right page | doc/ |
| Wire an MCP host | MCP Setup · MCP entry |
| Identities, notes, chat, rooms, ACL, tunnels | User Guide |
| REST, MCP tools, Python | API Reference |
| Embed in Go | Go SDK |
| Build from source | Developer Guide |
| Protocol internals | Architecture |
| Example binaries | Examples |
A2AL is an open protocol; a2ald is its reference implementation.
Self-sovereign identity. An AID is derived from a key you generate. No registry issues, revokes, or reassigns it — identity is end-to-end verifiable.
Decentralized discovery. The Tangled Network stores endpoint records, not payloads. Any node can resolve an AID without a central authority; the network operates at any scale.
Mutual authentication. Every connection cryptographically verifies both ends. You always know the agent on the other side is who it claims to be.
Direct communication. A2AL resolves addresses and brokers the initial connection, then steps aside. Application data flows peer-to-peer, not through the protocol.
Web3 compatible. Ethereum wallet addresses work as AIDs. Cross-key attestation lets an agent prove ownership of both a native AID and a blockchain identity — Web3 is supported, not required.
A2AL is complementary to existing agent communication standards:
| Protocol | Role | How A2AL fits |
|---|---|---|
| MCP | Tool-calling interface | A2AL is an MCP-installable server; agents get addressing and networking as tools |
| A2A | Agent collaboration semantics | A2AL provides the discovery and connectivity layer A2A assumes |
| ANP | Agent networking vision | A2AL implements the decentralized network layer ANP envisions |
If the missing layer is worth having, it is worth building together. Open an issue before significant work. A PR needs a signed Contributor License Agreement; a bot will prompt you.
A2AL is a networking protocol project. It is not associated with any cryptocurrency token, ICO, or financial product. Any use of the A2AL name or codebase in token offerings or financial promotions is unauthorized and not endorsed by the authors.
XG.Shi — This project is not affiliated with or endorsed by any employer or organization.
Copyright (c) 2026 The A2AL Authors. Mozilla Public License 2.0.