🚀 AI Launch Week Day 1: Your dedicated identity provider for AI agents
Introducing @descopeinc Agentic Identity Hub 2.0 - a one-stop solution to help developers and security teams add auth, access control, credential management, and policies to their AI systems.
🧵👇
M(aadi) C(hill) P(lease)
Thank you to all the founders and operators that showed up to @descopeinc and @LightspeedIndia's "MCP After Hours" mixer in Bengaluru!
It was a pleasure discussing the realities of secure AI adoption and learning from your lived experience on what's working, what's not, and what the future holds.
One thing the future definitely holds is more meetups in India - see you again soon!
👱 Agents inheriting user sessions
Agents somtimes operate with the full scope of the user’s session rather than receiving their own scoped credentials. This gives the agent every permission the user holds.
Best practices for managing AI agent creds 👇
https://t.co/wOKi0N12MR
AI agents are a different class of actor within enterprise systems. This means different paradigms for credential management.
The common credential patterns applied to agents today are anti-patterns.
🧵👇
⚠️ Shared service accounts
When multiple agents authenticate through the same service account, individual agent behavior is unattributable.
This ties revoking access for one agent into revoking access for every agent using that account.
🧵👇
📈 Passkeys on the up and up
The @FIDOAlliance released their annual "State of Passkeys" report a few weeks ago, and the results paint a picture of an auth method that's becoming more commonplace by the day.
Takeaways 🧵👇
🔒 The drivers for adoption are still security-first, but business-aware
Phishing resistance leads reasons for deploying passkeys, but login speed, user experience, and compliance are close behind
🧵👇
In this month's Auth Thoughts, we cover:
💼 Hosted Admin Portal
🔒 Tenant-level user isolation
📚 Guides on building identity-aware AI agents
Read on for your regular roundup from the world of customer and agentic identity 🧵👇
Descope is locked and loaded for @DevNetwork_ AI Dev Summit!
Drop by Booth 211 to see how @descopeinc helps teams create identity journeys for their customer apps, AI agents, and MCP servers.
Join @descopeinc and Lightspeed for an evening of dinner and real conversations with fellow founders and operators, on agentic AI security, developer experience, and what MCP enterprise-readiness actually looks like in practice.
Spots are limited. Request your invite: https://t.co/7z3mEQEjKU
@dkhare@BaggaRohil@rishi_bhargava
Is agent-to-agent just client-to-server in disguise?
Just one of many questions @rohitiwnl pondered in his session at the @mcpsummit. Other questions include "Should an agent also be an MCP server?" and "Why the heck would we even do that?"
🧵👇
Introducing the Descope Admin Portal
Provide a centralized and hosted self-service experience to your users and tenant admins. Provide brand and role-aware delegated admin without spending developer time building custom tools.
https://t.co/RQgKTXKqDx
SSO is an iceberg with tons of busywork under the surface
This busywork compounds in multi-tenant, B2B2X environments:
⚠️ Multiple IdPs per tenant
⚠️ Different auth, security, and UX requirements
⚠️ Need delegated admin at user and tenant level
🧵👇