Discussion about this post

User's avatar
The Grove Foundation, Inc.'s avatar

The A2A discovery problem you've named is why agent interoperability is stalling, and the 100-agent registry vs. 3,000 MCP servers gap tells the whole story. One-to-one only works when both sides already know each other. The piece I'd add: the registry model doesn't just fail at discovery. It concentrates. Whoever runs the authoritative A2A registry becomes the infrastructure; the same position Google holds in web search, Apple in mobile apps. Cryptographic identity (Nostr's approach) is one of the few ways to avoid that outcome, because the agent's existence isn't contingent on any company's continued goodwill. That's a meaningful architectural choice, not just a technical preference. Curious whether the A2A community is treating it as one.

Colleen Avarene's avatar

Hey Sruly, Ilan, Tim — the agent discoverability gap is the part of the A2A conversation almost nobody is having, and this frames it perfectly. 100 publicly accessible agents versus 3,000 MCP servers is a number that tells the whole story in one breath.

I work with a team that builds custom AI agents for small businesses, and the discovery problem is something our clients bump into from the other side. They build an agent that's great at handling customer intake for their specific niche — say, a mobile mechanic in Austin who can quote brake jobs and schedule same-day appointments. That agent is invisible to anyone who doesn't already know to visit that mechanic's website. There's no way for a customer's agent to find it by broadcasting "I need a brake job in Austin today." The value is locked behind the same door that existed before agents — you have to already know who to call.

The SMTP-to-social-media analogy is the cleanest way to explain why this matters. Email didn't kill the phone book -- it just replaced one directory with another. Social media actually let you find people you didn't know existed. Agents are stuck at the email stage right now.

The Nostr angle is interesting — the tradeoff between discoverability and prompt injection exposure is real. Curious whether you see a middle path where agents can broadcast intent without exposing their full instruction set. Something like a structured capability card that's public while the agent's actual logic stays private.

No posts

Ready for more?