惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

L
LINUX DO - 最新话题
NISL@THU
NISL@THU
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
P
Privacy & Cybersecurity Law Blog
Schneier on Security
Schneier on Security
宝玉的分享
宝玉的分享
Cisco Talos Blog
Cisco Talos Blog
Help Net Security
Help Net Security
月光博客
月光博客
V
V2EX
量子位
T
Threat Research - Cisco Blogs
A
About on SuperTechFans
Google DeepMind News
Google DeepMind News
Google DeepMind News
Google DeepMind News
P
Privacy International News Feed
S
Secure Thoughts
T
The Exploit Database - CXSecurity.com
P
Proofpoint News Feed
C
CXSECURITY Database RSS Feed - CXSecurity.com
Engineering at Meta
Engineering at Meta
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
A
Arctic Wolf
S
Schneier on Security
H
Hacker News: Front Page
P
Proofpoint News Feed
MyScale Blog
MyScale Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
C
Cisco Blogs
G
GRAHAM CLULEY
The Cloudflare Blog
博客园 - Franky
N
News and Events Feed by Topic
TaoSecurity Blog
TaoSecurity Blog
云风的 BLOG
云风的 BLOG
H
Heimdal Security Blog
The GitHub Blog
The GitHub Blog
C
Check Point Blog
Recent Commits to openclaw:main
Recent Commits to openclaw:main
T
The Blog of Author Tim Ferriss
小众软件
小众软件
Hacker News: Ask HN
Hacker News: Ask HN
T
Tenable Blog
The Last Watchdog
The Last Watchdog
J
Java Code Geeks
T
Troy Hunt's Blog
B
Blog
Blog — PlanetScale
Blog — PlanetScale
腾讯CDC

OpenID Foundation

Public Review Period for Proposed OpenID Connect Ephemeral Subject Identifier 1.0 Final Specification - OpenID Foundation How we got here: what six decades of identity history tell us about the agent age Call for Participation: Demonstrate MCP-based AI agent security with open identity standards Public Review Period for Proposed Implementer’s Draft of OpenID Connect Key Binding - OpenID Foundation As AltID launches, Danish media seek OIDF view Errata to OpenID Identity Assurance Specifications Approved - OpenID Foundation Public Review Period for Proposed Implementer’s Drafts of Two OpenID Federation Extensions - OpenID Foundation OIDF proud to support BIS Innovation Hub’s Aperta Report Announcing the new Digital Credentials Harmonized Presentation Working Group OpenID Foundation advances authorization for the agent era with new AuthZEN Working Group Drafts Australian Digital Trust Community Group’s 2nd Innovation Day – 24th June 2026 - OpenID Foundation OIDF conformance tests deliver results in La Ciotat Four OpenID Foundation voices at ID4Africa 2026 in Abidjan CrowdStrike joins the OIDF as a Sustaining Corporate Member OpenID AuthZEN wins EIC 2026 Outstanding Project Recognition Insights from the OIDF’s Australia Innovation Day OIDF presents at ITU-T workshop on digital ID and agentic AI Implementer’s Draft of International Government Assurance (iGov) Profile for OAuth 2.0 Approved - OpenID Foundation Notice of Vote to Approve Proposed Errata to OpenID Identity Assurance Specifications - OpenID Foundation OpenID Connect Advanced Syntax for Claims (ASC) 1.0 Implementer’s Draft Approved - OpenID Foundation OIDF has implemented a new Liaison Policy effective immediately - OpenID Foundation The OIDF Groups, Activities, & Events Code of Conduct Policy has been updated – here’s what you need to know - OpenID Foundation Notice of Vote to Approve Proposed Errata to OpenID Connect for Identity Assurance 1.0 - OpenID Foundation OpenID Federation 1.1 Final Specifications Approved - OpenID Foundation **Save the Date** OpenID Foundation Global Conference 2027 - OpenID Foundation Calling all members – register for the GDC Conference now Notice of Vote to Approve the Proposed Implementer’s Draft of OpenID Connect Advanced Syntax for Claims (ASC) 1.0 - OpenID Foundation Notice of Vote to Approve Proposed OpenID Federation 1.1 Final Specifications - OpenID Foundation
AuthZEN at Identiverse 2026: authorization in the agent era
Serj Hallam · 2026-07-15 · via OpenID Foundation

By Alex Olivier

Authorization, and specifically authorization for AI agents, emerged as the defining challenge of the year. That shift was visible at Identiverse 2026. One marker of how far the work has come is that the AuthZEN sessions ran as a full masterclass and a main-program talk rather than the side birds-of-a-feather slots such topics occupied a year or two ago. 

I co-presented both sessions with my fellow AuthZEN Working Group co-chair, Atul Tulshibagwale (CrowdStrike) and joined by Mark Berg (Axiomatics). The rooms were full, and questions after both sessions concentrated on how to authorize AI agents safely.

From SARC to agent tool calls

The masterclass reinforced the scope discipline at the core of AuthZEN. The standard defines only the interface between a Policy Enforcement Point (PEP) and a Policy Decision Point (PDP); it is not a policy language, and it does not dictate how a PDP sources its information. Its information model is built around Subject, Action, Resource, and Context (SARC), and its contract is deliberately strict: a deny is never a 4xx, and a malformed request is never a decision: false. The material that drew the most engagement was agent authorization, via the AuthZEN profile for Model Context Protocol tool authorization (COAZ). It answers the question OAuth scopes cannot — whether this agent, acting for this user, may call this tool with these arguments — by having a gateway or MCP server consult the PDP before a tool runs.

The second session set AuthZEN in the wider landscape. Authentication is largely solved; authorization is not, and no single specification resolves it alone. The strength is in composition. Three standards fit together: Shared Signals (SSF/CAEP) to bring fresh security context to the decision point, AuthZEN for the fast local PEP/PDP decision, and Transaction Tokens (TraTs, an IETF OAuth Working Group draft) to propagate that decision across the services inside an application.

Delegation and human-in-the-loop

The room was engaged and practical, focused on how the standard applies to specific systems rather than on whether it matters. The questions that drew the most discussion were the hard, real-world ones: how to handle delegated authorization when an agent acts on a user's behalf, and how approval flows fit in when a decision needs a human-in-the-loop. Several attendees wanted to contribute directly, and a new organization signalled its intent to join the Working Group following the session (more will be shared on this once it finalises). Both of those edges are already on the agenda, with the AuthZEN Access Request and Approval Profile (AARP) taking on the approval-flow case the room raised.

Why it matters for the identity community

Agents change the shape of the access-control problem. A non-deterministic system acting on a user's behalf, with implicitly delegated access, is exactly the setup that produces confused-deputy failures, in which one component is tricked into misusing its authority — now at machine speed and scale. The community has spent years standardizing how a principal proves who they are; the agent era makes it urgent to standardize, with the same rigor and interoperability, what that principal is then allowed to do.

This is where the OpenID Foundation's authorization work sits. The AuthZEN Working Group is standardizing the PEP/PDP decision interface and, through the AARP and COAZ profiles, extending it to approval flows and agent tool authorization. Its interop events and conformance certification program let independent implementations trust one another. That work composes with the Shared Signals Working Group and with Transaction Tokens in the IETF, advancing the Foundation's mission of open, interoperable standards that work across vendors and trust domains rather than being locked to any one of them.

Get involved

Robust, interoperable authorization standards depend on broad industry collaboration. The conversations at Identiverse 2026 made clear how much that collaboration matters, and how much work remains to do together - across working groups, across vendors, and across the PEP/PDP interface itself. This is how the agent-era access-control problem gets solved. 

This post is drawn from two sessions delivered at Identiverse 2026 (Las Vegas, June 15–19) by the OpenID AuthZEN Working Group co-chairs:: the masterclass "Mastering the OpenID Authorization Standard," and "Beyond Authentication: Updates from the Authorization Frontier."

About the author: Alex Olivier is co-chair of the OpenID AuthZEN Working Group, as well as the co-founder and Chief Product Officer at Cerbos, an Authorization Management Platform and implementer of the AuthZEN standard. He specializes in authorization systems, with a recent focus on workload identity and AI security. With over a decade of experience building and scaling authorization systems at Microsoft, Qubit, Zencargo, and multiple startups, Alex has published extensively on securing Model Context Protocol (MCP) servers and AI agents. A frequent speaker at events on authorization, AI, security, and identity, including ISC2 Congress, Identiverse, EIC, KubeCon, and Google Cloud NEXT, he combines standards development with practical implementation experience, focusing on the future of authorization for traditional applications, distributed workloads, and emerging AI systems.

About the OpenID Foundation

The OpenID Foundation (OIDF) is a global open standards body committed to building trusted identity ecosystems. Our mission is to lead the global community in identity standards that are secure, interoperable, and privacy respecting. Founded in 2007, we are a community of technical experts. The Foundation's OpenID Connect standard is now used by billions of people across millions of applications. More recently, the FAPI security profile - built on OAuth 2.0 - has become the standard of choice for interoperable Open Banking and Open Data implementations, while OpenID for Verifiable Credentials specifications are underpinning a new generation of digital wallets. Today, the OpenID Foundation's standards are the connective tissue that enable people to assert their identity and access their data at scale, the scale of the internet, enabling "networks of networks" to interoperate globally. Individuals, companies, governments and non-profits are encouraged to join or participate. Find out more at openid.net.