Skip to main content
Authorization

Authorization

Search complete. 2 mentions across 2 episodes found for "Authorization".

Sep 1, 2026

Travis McPeakGUEST
21:47
Like maybe I want, you know, my bot to be able to perform this action, but only on this subset of resources, you know, like as soon as you get, you can do that well in an AWS IAM, but like most other systems you can't.
Travis McPeakGUEST
21:57
So I think part of this is just, we're going to have more permissions for these than we want, at least in the medium term until we like redo AuthZ everywhere.
Travis McPeakGUEST
22:06
And so then it's like, okay, well, how do I control it? That would be like, you know, the review, that would be things like proxy where it just drops it conditionally, but that's also a lot of stuff to implement.
Ali HoweHOST
22:15
Yes, it's a lot to implement.
Ashay RautGUEST
29:21
I would, um-- But if you haven't read the IETF draft on AI agent authentication and authorization, I would highly recommend reading that one because it just tries to cover everything at once.
Ashay RautGUEST
29:31
That's a really good starting point.
Ashay RautGUEST
29:33
And then you should definitely look at OpenID's AuthZ work and Shared Signals Framework work for continuous access evaluation protocol.
Ashay RautGUEST
29:41
I'm throwing a lot of words here.
Ashay RautGUEST
29:42
But essentially, it's OpenID and Shared Signals Framework group and IETF work.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.