Okta debuts Cross App Access to secure Artificial Intelligence agents and app-to-app connections

Okta introduced Cross App Access, an extension of OAuth designed to bring oversight and policy control to how Artificial Intelligence agents and applications connect across enterprise systems. The open protocol targets visibility gaps, token sprawl, and repetitive user consent flows.

Okta announced Cross App Access, a new open protocol built as an extension of OAuth to secure interactions between Artificial Intelligence agents and enterprise applications. The company positions the approach as a remedy for today’s opaque app-to-app connections and manual, inconsistent consent flows that leave IT and security teams with limited oversight. Cross App Access is designed to provide policy-based control and auditing of what tools connect, which data they can reach, and how access is granted at scale.

The launch comes as more Artificial Intelligence tools adopt protocols such as Model Context Protocol and Agent2Agent to tap enterprise data and services, introducing non-deterministic access patterns that cross system boundaries. Okta argues that existing identity standards and controls were not built for autonomous agents or the rising volume of app-to-app connections. While Model Context Protocol improves transparency and communication, it does not manage access, which is the gap Cross App Access aims to fill by shifting authorization decisions to the identity provider.

In a typical workflow outlined by Okta, an Artificial Intelligence tool requests access to an internal communication application through Okta, which evaluates the request against enterprise policies. If permitted, Okta issues a token that the Artificial Intelligence tool presents to the target application for validation. Once validated, the application grants access without additional user interaction, and the enterprise gains visibility into when the tool acts on a user’s behalf. The model removes repetitive consent prompts and reduces reliance on long-lived tokens while centralizing governance.

Okta is building Cross App Access with independent software vendor partners to help them deliver secure, enterprise-grade integrations in an Artificial Intelligence-powered environment. For ISVs, the protocol targets risky token exchanges, fragmented identity flows, and mounting compliance demands. For enterprises, it promises stronger security, better interoperability, and lower friction for end users when agents perform actions across file storage, project management, and communications tools. Okta expects Cross App Access to be available to select Okta Platform customers as a feature in the third quarter and is inviting ISVs to apply for early access.

55

Impact Score

Nvidia to sell fully integrated Artificial Intelligence servers

A report picked up on Tom’s Hardware and discussed on Hacker News says Nvidia is preparing to sell fully built rack and tray assemblies that include Vera CPUs, Rubin GPUs and integrated cooling, moving beyond supplying only GPUs and components for Artificial Intelligence workloads.

Navigating new age verification laws for game developers

Governments in the UK, European Union, the United States of America and elsewhere are imposing stricter age verification rules that affect game content, social features and personalization systems. Developers must adopt proportionate age-assurance measures such as ID checks, credit card verification or Artificial Intelligence age estimation to avoid fines, bans and reputational harm.

Large language models require a new form of oversight: capability-based monitoring

The paper proposes capability-based monitoring for large language models in healthcare, organizing oversight around shared capabilities such as summarization, reasoning, translation, and safety guardrails. The authors argue this approach is more scalable than task-based monitoring inherited from traditional machine learning and can reveal systemic weaknesses and emergent behaviors across tasks.

Contact Us

Got questions? Use the form to contact us.

Contact Form

Clicking next sends a verification code to your email. After verifying, you can enter your message.