---
title_en: "Several Measures of Beijing Municipality on Accelerating Agent-Led Development"
title_zh: "北京市关于加快智能体引领发展的若干措施"
abbreviation: "Beijing Agent Measures"
hierarchy: "rule"
issuing_body: "Beijing Municipal Commission of Development and Reform; Office of the Beijing Municipal Cybersecurity and Informatization Commission; Beijing Municipal Science and Technology Commission / Administrative Commission of Zhongguancun Science Park; Beijing Municipal Bureau of Economy and Information Technology"
adopted_date: 2026-07-21
effective_date: 2026-07-21
status: "effective"
source_url: "https://www.beijing.gov.cn/zhengce/zhengcefagui/202607/t20260723_4781085.html"
related_laws: ["ai-agent-standardization-innovation-opinion", "genai-services-interim-measures"]
domains: ["ai-governance", "data-economy"]
url: https://datacompliancechina.com/laws/beijing-agent-led-development-measures/
summary: "Beijing's ten-measure municipal policy for the AI-agent industry (京发改〔2026〕1185号, dated 21 July 2026, published 23 July 2026), jointly issued by four municipal bodies with the municipal government's approval — the most technically detailed local agent policy to date. The ten measures cover base-model capability (online learning, self-evolution, world models, long context, tool calling, memory); harness-layer engineering (context engineering, task persistence, multi-agent collaboration) plus an agent development platform, skill marketplace, and software store; agent-native applications and benchmark scenarios built through on-site co-creation by forward-deployed engineers (FDEs); agent-terminal integration across phones, wearables, robots, and vehicles; one-person-company (OPC) entrepreneurship; a 'Token (词元) economy' moving from per-Token billing toward value-based billing; security governance (graded-and-categorized agent regulation, a trusted sandbox, security ranges, 'using models to govern models,' and accelerated AI industry legislation); computing power and a data flywheel built on agent execution data, including 'Token factories'; open-source ecosystem building and agent overseas expansion; and implementation support of up to RMB 100 million per key project. Mostly industrial promotion rather than binding compliance rules, but its Article 7 security-governance agenda, its data-flywheel treatment of agent execution data, and its delegation-shaped vocabulary preview where Beijing — and likely national — agent rulemaking is headed. DCC carries Hong Yanqing's four-part commentary on the document."
---

> **Source: Data Compliance China** — https://datacompliancechina.com/laws/beijing-agent-led-development-measures/ · English rendering and annotations by DCC; the Chinese original governs. Cite as: Data Compliance China, "Several Measures of Beijing Municipality on Accelerating Agent-Led Development", https://datacompliancechina.com/laws/beijing-agent-led-development-measures/
> *DCC catalogue entry — summary, not full text.*

## What this document is

The **Several Measures of Beijing Municipality on Accelerating Agent-Led
Development** (北京市关于加快智能体引领发展的若干措施, 京发改〔2026〕1185号) is
a ten-measure municipal industrial policy for AI agents (智能体), jointly
issued — with the municipal government's approval — by the Beijing Municipal
Commission of Development and Reform, the Office of the Municipal
Cybersecurity and Informatization Commission, the Municipal Science and
Technology Commission (Administrative Commission of Zhongguancun Science
Park), and the Municipal Bureau of Economy and Information Technology. It is
dated 21 July 2026, was published 23 July 2026, and took effect on issuance.

It implements, at municipal level, the policy line opened by the national
[AI Agent Implementation Opinions](/laws/ai-agent-standardization-innovation-opinion/)
(CAC/NDRC/MIIT, May 2026), and is by a clear margin the most technically
literate local document in the genre: it legislates vocabulary — harness-layer
engineering (驾驭层工程), task persistence, long-term memory, forward-deployed
engineers (前沿部署工程师), "Token factories" (词元工厂), one-person companies
(OPC, 一人公司) — that most policy texts have not yet absorbed.

## The ten measures

1. **Base-model capability** — online learning, continual learning and
   self-evolution; ultra-long-horizon task, reasoning and planning
   algorithms; world models, swarm intelligence, long context, tool calling,
   multi-agent collaboration, memory.
2. **Common agent-stack technology** — harness-layer engineering (context
   engineering, task persistence, multi-agent collaboration, long-horizon
   execution stability); an agent development platform, skill marketplace,
   software store, and a secure, controllable technology stack.
3. **Agent-native applications and benchmark scenarios** — native AI
   software, AI-for-science assistants, "AI scientists" and autonomous
   laboratories, an AI operating system, sector scenarios across science,
   healthcare, education, government affairs, manufacturing, and culture,
   delivered in part through on-site co-creation by forward-deployed
   engineers.
4. **Agent–terminal integration** — embedding agent capability in phones,
   glasses, earphones, wearables, robots, and intelligent vehicles, with
   qualifying products added to the digital-products new-purchase subsidy
   program.
5. **New entrepreneurship models** — one-person companies (OPC) and
   AI-augmented solo entrepreneurship, with public-service platforms for
   computing, incubation, finance, IP, and policy.
6. **The Token (词元) economy** — Token-as-a-Service, Agent-as-a-Service,
   Results-as-a-Service; moving from billing by Token consumption toward
   value-based billing; Token service-quality assessment and billing norms.
7. **Security governance** — graded-and-categorized regulation of agents
   (智能体分级分类监管), regularized crackdowns on malicious misuse,
   accelerating AI industry legislation, security-service platforms,
   security ranges (靶场), a trusted sandbox (可信沙箱), and "using models to
   govern models" (以模治模).
8. **Key inputs** — a multi-tier computing-power supply system, low-cost
   standardized public computing, "Token factories," and a data flywheel
   pooling sectoral knowledge and agent execution data.
9. **Open source and overseas expansion** — open-source communities,
   interconnection protocols, development frameworks, terminal operating
   systems and reference hardware; country-by-country support for agent
   products expanding overseas.
10. **Implementation safeguards** — coordinated fiscal funds, government
    investment funds, and rolling key projects supported at up to RMB 100
    million each.

## Why it matters for the data field

Most of the document is industrial promotion, not binding compliance
rule-making — DCC catalogues it for three reasons.

**Article 7 is a security-governance agenda in waiting.** Graded-and-
categorized agent regulation, a trusted sandbox, security ranges, and an
express commitment to accelerate AI industry legislation signal where
Beijing's — and plausibly national — agent-specific rulemaking goes next.
Read alongside the national Implementation Opinions' Part Three
(decision-authority boundaries, agent identity, tiered governance) and
TC260's agent-deployment practice guide, the direction is consistent:
delegation, not generation, is becoming the unit of Chinese agent
governance.

**Article 8 puts agent execution data on the policy map.** The "data
flywheel" invites pooling of agent execution traces — which can contain
personal instructions, business information, credentials, customer
materials, and third-party information, with derived objects (long-term
memory, embeddings, caches) retaining the originals' sensitivity. How that
squares with PIPL, DSL, and trade-secret protection is exactly the terrain
DCC's translated commentary works through.

**The vocabulary will travel.** OPC, Results-as-a-Service, harness-layer
engineering, and Token-economy language introduced here are already
appearing in commentary and will surface in procurement documents,
benchmark-project acceptance criteria, and — eventually — binding rules.

## DCC coverage

Hong Yanqing (洪延青) published a four-part commentary on the document
within weeks of issuance, translated in full by DCC:

- [Part 1 — How agents actually enter the enterprise: the adoption gap](/posts/beijing-agent-measures-adoption-gap/)
- [Part 2 — Why would an enterprise dare hand tasks to an agent: security governance as the foundation](/posts/beijing-agent-measures-security-as-foundation/)
- [Part 3 — Five levels of agent-reshaped enterprise process](/posts/beijing-agent-measures-process-maturity/)
- [Part 4 — Tokens meter input, not value: the five-layer evidence chain](/posts/beijing-agent-measures-token-to-value/)
