Getting Cozy with COAZ: Securing APIs and AI Agents with Standardized Authorization
By Atul Tulshibagwale and Alex Olivier, co-chairs of the OpenID Foundation’s AuthZEN Working Group The views expressed in this post are those of the authors, in their capacity as co-chairs of the AuthZEN Working Group, and do not necessarily represent the position of the OpenID Foundation as a whole. AuthZEN is a great way to […]
How we got here: what six decades of identity history tell us about the agent age
By Sar Haidar, Platform Engineer at MIT Open Learning Every identity standard we work with today was built to solve a problem someone was staring at right then. OAuth, OIDC, SAML, the token flows we spend our careers refining: each one began as an urgent answer to an immediate question. That was the premise of […]
Call for Participation: Demonstrate MCP-based AI agent security with open identity standards
Prove that MCP clients, gateways, and servers from different vendors can secure AI agents together — within and across enterprises. The OpenID Foundation’s Artificial Intelligence Identity Management Community Group (AIIM CG) is running an interoperability event to show that Model Context Protocol (MCP) flows can be secured with open identity standards. Taking place at the […]
AuthZEN at Identiverse 2026: authorization in the agent era
By Alex Olivier Authorization, and specifically authorization for AI agents, emerged as the defining challenge of the year. That shift was visible at Identiverse 2026. One marker of how far the work has come is that the AuthZEN sessions ran as a full masterclass and a main-program talk rather than the side birds-of-a-feather slots such […]