A flexible Fine-Grained Authorization system inspired by Google's Zanzibar, designed for reliability and low latency at scale. @CloudNativeFdn Incubation proj.
Join tomorrow for our May OpenFGA meeting as we dive into a major architectural shift unlocking next-level performance: Weighted Graphs. 🚀
✅ Why we’re making the shift
✅ The impact on engine internals
✅ Model Migration & compatibility
Details here https://t.co/sumxizEV3L
AI Agent Security: Intent-Based Access Control Blocks Prompt Injection (Source: Ibac)
Intent-Based Access Control (IBAC) prevents prompt injection by enforcing permissions at tool invocation.
#AISecurity#PromptInjection#AccessControl#AIAgents#OpenFGA
🤔 How will intent-based security models reshape the fundamental architecture of secure AI agent interactions?
https://t.co/h2bila6w3f
It's awesome to see OpenFGA featured in the Springer journal, Data Science and Engineering!
"Traditional Role-Based Access Control (RBAC) is too static for dynamic environments like Smart Cities"
https://t.co/33aEQxp3IH
We'll start sharing all the cool projects the OpenFGA community is building!
This week, check @Siddhant_K_code's Fine-grained authorization for AI agents using OpenFGA blog and github project https://t.co/L54rVAY2Qf
Every enterprise is racing to deploy AI agents
But here's the problem no one's talking about:
- These agents need access to production systems. Customer data. Source code. Databases. Finance data. etc.
And most companies? They're giving agents the same permissions as users.
That's not a security model. That's a breach waiting to happen.
I built fine-grained authorization for AI agents using @OpenFGA
Three levels of control:
→ Team level: Engineering gets code tools, Marketing doesn't
→ Project level: auth-service gets DB access, landing-page doesn't
→ Operation level: Only leads can delete repos
Every action verified. Every decision is audited. Blast radius contained.
Full demo: https://t.co/Mff5Fs4tyJ
We're introducing 𝚜𝚔𝚒𝚕𝚕𝚜 – the "npm" of AI skills. Excited to see an open, agent-agnostic ecosystem of skills flourish.
To get started, try:
▲ ~/ npx skills i vercel-labs/agent-skills
Don't build AI agents on top of flat authorization.
If your API can't handle granular delegation or scopes, an autonomous agent is just a security breach waiting to happen.
I wrote about the 4 levels of authorization you need before you're ready for AI: https://t.co/FicpSAQCNo
Excited that @OpenFGA has been selected for a Project Lightning Talk at KubeCon Europe 2026 ⚡
One of us from the OpenFGA team will be there to talk about Fine-Grained Authorization, OpenFGA, and security at scale.
See you in Amsterdam 🇳🇱
Tomorrow, January 8th, we'll host our the first OpenFGA community meeting of 2026!
Agenda:
- Learn how caching and database throttling work in OpenFGA and ListObjects performance improvements
- Watch a live demo of using OpenFGA for MCP Authorization
https://t.co/sumxizEned
According to @owasp, broken access control is a top application and API security risk.
This guide explores solving it via fine-grained authorization using @auth0 FGA or @OpenFGA
https://t.co/xdWfppOGCU
Next Thursday 11th, we are wrapping up 2025 with a special presentation!
In addition of our usual agenda, @sfunkrysarah (Head of Engineering & Co-Founder of Openlane) will share their OpenFGA journey :)
⏰December 11th, 11 AM ET/4 PM UTC/8 AM PT
https://t.co/sumxizEV3L
AI agents can now chain 12 (even more) API calls autonomously.
Most have zero authorization checks beyond initial OAuth tokens.
Wrote about why RBAC fails for agentic AI and how to build task-scoped delegation with OpenFGA 👇
https://t.co/OsljBWpZkk
🗣️ @chira001, Chief Architect @ @Akamai, discusses three emerging Kubernetes tools: KCP for scaling control planes, OpenTelemetry for observability challenges, and advanced access control systems like OpenFGA and Cedar
Watch the full interview: https://t.co/mFvRkZl0f3
Today at KubeCon: Design Patterns for Consistent Centralized Authorization
Catch @jpadilla_ (@auth0) & @alicejgibbons (Diagrid) today at 2:30pm. as they show how to keep OpenFGA’s authorization data in sync without relying on a brittle shared database.
Using Dapr’s pub/sub and state management building blocks, they’ll walk through an event-driven architecture that coordinates consistent dual writes across microservices—cleanly, reliably, and at scale.
https://t.co/ErC0Nn8Y4p
Join the OpenFGA community tomorrow, November 13th, at 4 PM UTC (8 AM PT / 11 AM ET) for our monthly community meeting!
We are thrilled to host Jeremy Loy from @Headspace as our guest of honor, sharing how they use OpenFGA in production.
https://t.co/sumxizEV3L
Ready for KubeCon?
- Today at 11:27am, @tnix will deliver a Lightning Talk.
- Wednesday 10:15 am - 5:00 pm, @tnix and @jpadilla_ will be at the Kiosk at the Project Pavilion.
- Thursday, 2:30pm, @jpadilla_ and @alicejgibbons will demo how to use @daprdev and OpenFGA!
Esta semana vuelve @madridrb!!
El jueves 30, a las 19:30, @CarlaStabile nos hablará de su experiencia escribiendo la gem para OpenFGA.
Nos vemos en la nueva sede de Lingokids, en Madrid.
Regśitrate en https://t.co/xmXQTNwTrn
Get ready for October Fine-Grained News:
- Due Diligence for CNCF Incubation is open for comments!
- New query planner for major performance gains.
- Write endpoint enhancements & SDK updates.
- Catch us at KubeCon North America
Full details: https://t.co/9bWUWcw44S