Vint Cerf Wants to Wire AI Agents Directly Into the Internet
The man who helped design TCP/IP just left Google with a plan to rearchitect the web for autonomous AI. If he succeeds, the internet as we know it...

Vint Cerf left Google last week. Twenty years. Founding engineer of the internet itself ? one of three people who built the protocols everything else runs on. He didn't leave to retire. He left to fix what he sees as a fundamental mismatch between how the web was built and how it's being used.
That mismatch: AI agents.
The Problem With Agents Crawling the Open Web
Today's AI agents interact with the web the same way humans do ? through browsers, through crawlers, through APIs that were never designed for autonomous actors making decisions at machine speed. A single AI agent can fire off thousands of requests in the time a human takes to read one page. The infrastructure wasn't built for that. Sites either block it, throttle it, or get overwhelmed by it.
Cerf's core argument is that this is a protocol problem, not a policy problem. You can't solve agentic web access through robots.txt amendments and CAPTCHAs. You need a new layer in the architecture ? one that lets websites and agents negotiate terms of interaction at the protocol level, before a single packet is exchanged.
It's a big idea. And it's controversial.
What Cerf Is Actually Proposing
The details are still forming, but the broad strokes are clear from Cerf's public comments over the past month. He's working on a framework ? not yet a formal standard ? that would allow websites to publish machine-readable "agent terms of service" alongside their human-facing content. These terms would specify what an agent can and cannot do: read, extract, transact, submit forms, make purchases. Agents would be expected to parse these terms, comply with them, and identify themselves uniquely so sites can hold them accountable.
In effect, Cerf wants to build a handshake ? a protocol-level handshake ? between websites and agents. No more scraping in the dark. No more "were we blocked or did we time out?" confusion. If an agent violates the terms, the website can revoke its credentials and flag it by identity, the same way HTTPS certificates work today.
The internet worked because we standardized how computers talk to each other. Cerf thinks we need to standardize how agents talk to websites.
Why This Matters More Than Any Single AI Product Launch
Most AI news focuses on models ? bigger, faster, smarter. But the infrastructure underneath determines what those models can actually do in the real world. The current state of agentic web access is chaotic: Browserbase, Anthropic's tool use, OpenAI's operator ? all different approaches to the same problem, none of them talking to each other.
If a protocol-level standard emerges, it could do something the current ecosystem can't: let any agent, from any developer, interact with any website under agreed-upon rules. That would be the TCP/IP moment for AI. Standards don't sound as exciting as new model releases, but they're what makes everything else possible.
Browserbase ? which now handles 2.8% of all agentic traffic and is growing 4? month over month ? would either become a compliant layer on top of a new standard or be forced to adapt. That's the bet Cerf is making: the infrastructure builders will follow the protocol.
The Pushback Is Real
Not everyone is convinced this is the right approach. The proposal raises immediate questions: Who writes the agent terms? Who enforces them? What happens when an agent from a jurisdiction with no consumer protection laws agrees to terms and then violates them? The current internet's governance model ? messy, fragmented, regionally inconsistent ? wasn't designed to answer those questions at machine speed.
There's also the commercial problem. Companies building AI agents today have strong incentives to maximize their agents' access to web data. A standard that restricts that access is not something they're going to welcome voluntarily. Adoption would require either government mandate or a big enough coordinated effort from the major AI labs that non-compliance becomes commercially suicidal.
Cerf has credibility. He also has the patience to work on timescales that make product launches look trivial. But twenty years at Google didn't produce this idea by accident ? it produced it in spite of Google's interests. A protocol that levels the playing field between AI agents and proprietary data silos isn't obviously in Google's commercial interest. That might be exactly why it needs to come from him.
What Comes Next
The working group Cerf is assembling is small ? a handful of engineers and one or two people from standards bodies. He expects to have a draft framework document by the end of the year. Whether it goes anywhere depends on whether the IETF or W3C picks it up, and whether any of the major AI labs signal they're willing to build to it.
The smart money is watching. Because if Cerf gets this right, it won't just change how agents use the web. It will define what the web looks like in the age of AI ? whether it's a commons or a collection of fortified data silos. That's worth paying attention to.


