惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园_首页
Y
Y Combinator Blog
Engineering at Meta
Engineering at Meta
D
Docker
GbyAI
GbyAI
aimingoo的专栏
aimingoo的专栏
大猫的无限游戏
大猫的无限游戏
腾讯CDC
P
Proofpoint News Feed
A
About on SuperTechFans
WordPress大学
WordPress大学
Stack Overflow Blog
Stack Overflow Blog
Google DeepMind News
Google DeepMind News
C
Check Point Blog
Microsoft Security Blog
Microsoft Security Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
L
LangChain Blog
MyScale Blog
MyScale Blog
博客园 - 三生石上(FineUI控件)
Hugging Face - Blog
Hugging Face - Blog
Microsoft Azure Blog
Microsoft Azure Blog
N
Netflix TechBlog - Medium
G
Google Developers Blog
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻

Cerbos - All Posts

Authentik vs Keycloak: Self-hosted IdP comparison Mapping business requirements to authorization policy for automotive Fine-grained authorization for AI gateways EIC 2026: Stop counting agents, protect what they can touch Agent skill for writing authorization policies in Claude Desktop Identity security in 2026 EIC 2026 takeaways: the identity stack built for humans will not hold up for AI agents Already have authentication? Here's the authorization layer you still need. Tokens are authorization decisions: a guide to policy-driven token issuance What is a Runtime Authorization Platform It's a dimmer switch, not a kill switch. How CISOs are rethinking AI agent governance From maps to bitmaps (and from bitmaps to bitmaps) AuthZEN, Shared Signals, SCIM Events, IPSIE: Notes from the OpenID Enterprise Panel How do you update authorization policies without redeploying your application? IIW42 recap: Where agent authorization got real Cerbos PDP v0.52.0/v0.53.0: Engine performance, security hardening, and CEL path functions Authorization Management Platforms: what they do, how they work, and where they fit PocketOS AI coding agent deleted a production database in 9 seconds Non-Human Identity management still has a blind spot Supabase alternative in 2026: Best open source auth options Benefits of on-premise authorization: Why enterprises are moving toward self-hosted Authorization policies: How to write, test, and validate them (faster with AI) Agent skill for writing authorization policies How much does it cost to build authorization in-house? Why centralized authorization governance reduces incident response time OPA alternative Why AI agents make authorization a right now problem Modernizing legacy application authorization: why it’s your biggest security blind spot How to add authorization to legacy applications without code changes 5 authorization blind spots auditors find, and how to fix them
Updated Cerbos Hub, the complete authorization solution f...
Lisa Dziuba, Emre Baran and Alex Olivier · 2025-07-17 · via Cerbos - All Posts

It’s been a big year for Cerbos Hub.

Engineering teams across all industries have been adopting Cerbos, from global utility providers and automobile leaders to fintech scaleups and SaaS startups. Today, hundreds of organizations rely on Cerbos Hub to securely manage their authorization.

Every month, Cerbos processes more than 750 million authorization checks. For many of our customers, Cerbos replaced hard-coded in-house systems and saved over half a million dollars annually in custom authorization development costs.

The latest release makes Cerbos Hub the centralized control plane for every authorization decision across applications, AI agents, services, and workloads. Organizations can now manage authorization for every identity in their system with full visibility, consistent policy enforcement, and alignment with a Zero Trust strategy.

Authorization as your business enabler

Software builders need access logic that supports real-world complexity: scaling tenants, securing MCP servers, and giving enterprise customers the power to define their own roles. It should be easy for developers to make changes, security teams to prove compliance, and engineering leadership to release features faster.

And it should come at a fair price.

After hundreds of customer conversations, we are proud to introduce a major update to Cerbos Hub. This release brings powerful new capabilities and enables new use cases across the entire authorization lifecycle.

Faster policy creation, validation, and management

We always strive to make Cerbos Hub easy to use. Our new features let you manage policies in code and deploy updates quickly without any custom infrastructure. With this update, you can:

  • Scale your policies by tenant, team, environment, or use case
    The new Policy Stores let you manage policies by tenant, team, environment, or use case. You can organize each group and control how it is tested, versioned, and deployed. This keeps your rules clean and lets you isolate tenant-specific policy, dynamic roles, or domain-specific logic.

  • Manage policies via code and CI
    Create, update, and version policies directly from your backend or internal tools using Cerbos Hub’s API, CLI, or SDKs.

  • Test every policy update automatically before it rolls out
    Every policy change is versioned, compiled, validated, and tested to catch issues early and stay production ready.

Plus, Cerbos Hub scales with your needs: unlimited policies, roles (including custom and dynamic), resource types, and tenants. You can model RBAC, ABAC, PBAC, and support runtime, event-time, admin-time, and continuous authorization.

Seamless deployment

Policy deployment should not be a bottleneck. Whether you are working across multiple teams, use cases, or environments, Cerbos Hub makes it easy to bundle, test, and roll out authorization logic securely and automatically. Cerbos Hub now offers enhanced deployment features:

  • Multi-source deployments
    Pull policies from different teams, tenants, and tools into a single deployment. Policy Stores give you clean separation between rule sets, making it easy to compose core policies, tenant-specific logic, and runtime updates into one versioned bundle that is automatically validated.

  • Flexible policy delivery
    Push policy updates from any Git provider, any CI tool, or via API. There’s no lock-in and no need to change your existing workflows.

  • Managed distribution
    Each time you update a policy, Cerbos Hub builds, tests, and deploys it automatically**.** The platform takes care of compiling and coordinating the real-time distribution of updated policies to all connected PDPs, with full version control.

Complete audit trail across all identities

Your security and compliance teams get the clarity they need to enforce least privilege, respond to incidents quickly, and meet SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR requirements. Compliance capabilities include:

  • Full visibility
    Capture every decision and link it to the exact policy version. Cerbos Hub provides a unified audit trail across services, agents, workloads, and tenants, so you always know who accessed what, when, and why.

  • Centralized log retention
    Store audit logs for both human and non-human identities in a single place. With our paid plans, you control how long logs are retained to satisfy any regulation.

  • Real-time monitoring
    Track policy versioning and authorization activity as it happens. Live monitoring makes debugging faster and incident response smoother.

Audit logs are one of our most loved features. Cerbos Hub gives you the insights you need, exactly when you need them.


Take a look at our “How it works” video to see Cerbos Hub in action.

And if you’d like a technical walkthrough to see how Cerbos Hub fits your workflow, book a workshop with our engineers. We are happy to show you all the Cerbos Hub superpowers 🛠