Security

Identity management leader Okta has launched a new protocol called Cross App Access, aimed at enhancing the security and oversight of AI agent interactions across enterprise systems. Built as an extension of OAuth, this open protocol is designed to help IT and security teams monitor and control how AI tools interact with apps like Slack, Google Drive, and internal platforms, eliminating the current blind spots in app-to-app access.
As AI agents increasingly use protocols like Model Context Protocol (MCP) and Agent2Agent (A2A) to connect to enterprise data, current security controls have struggled to match their speed, autonomy, and complexity. These AI systems can act across boundaries, trigger actions, and access sensitive data—often without proper oversight. Manual logins and scattered consent approvals are still required for each integration, and these steps often bypass enterprise visibility.
Cross App Access solves this by shifting control to the identity provider. Instead of the user manually authorizing each integration, Okta evaluates the AI agent’s request based on enterprise-defined policies. If approved, it issues a secure token that allows access to the required app—all without repetitive user logins and with full transparency.
For instance, when an AI assistant needs access to an internal communication app, Cross App Access eliminates the need for repeated logins. Okta handles the authorization, issues a secure token, and the access is logged and auditable. This significantly reduces security risks like token sprawl and enhances user experience.
Okta is collaborating with top Independent Software Vendors (ISVs) to implement Cross App Access, which will be available for select customers in Q3 2025. The goal is to help ISVs deliver secure, enterprise-grade AI integrations while easing compliance and governance.
By providing a unified, scalable solution for AI interoperability, Cross App Access empowers enterprises to confidently adopt next-gen AI tools without compromising security. It marks a significant step in securing the future of autonomous, AI-driven work environments.
Key Benefits:
Eliminates repetitive user logins and consent prompts
Empowers IT with full control and visibility over AI interactions
Reduces security risk and compliance gaps
Enhances user experience and speeds AI adoption across enterprises
As AI agents increasingly use protocols like Model Context Protocol (MCP) and Agent2Agent (A2A) to connect to enterprise data, current security controls have struggled to match their speed, autonomy, and complexity. These AI systems can act across boundaries, trigger actions, and access sensitive data—often without proper oversight. Manual logins and scattered consent approvals are still required for each integration, and these steps often bypass enterprise visibility.
Cross App Access solves this by shifting control to the identity provider. Instead of the user manually authorizing each integration, Okta evaluates the AI agent’s request based on enterprise-defined policies. If approved, it issues a secure token that allows access to the required app—all without repetitive user logins and with full transparency.
For instance, when an AI assistant needs access to an internal communication app, Cross App Access eliminates the need for repeated logins. Okta handles the authorization, issues a secure token, and the access is logged and auditable. This significantly reduces security risks like token sprawl and enhances user experience.
Okta is collaborating with top Independent Software Vendors (ISVs) to implement Cross App Access, which will be available for select customers in Q3 2025. The goal is to help ISVs deliver secure, enterprise-grade AI integrations while easing compliance and governance.
By providing a unified, scalable solution for AI interoperability, Cross App Access empowers enterprises to confidently adopt next-gen AI tools without compromising security. It marks a significant step in securing the future of autonomous, AI-driven work environments.
Key Benefits:
Eliminates repetitive user logins and consent prompts
Empowers IT with full control and visibility over AI interactions
Reduces security risk and compliance gaps
Enhances user experience and speeds AI adoption across enterprises
See What’s Next in Tech With the Fast Forward Newsletter
Tweets From @varindiamag
Nothing to see here - yet
When they Tweet, their Tweets will show up here.