Talk
Weaving Trust into the Fabric of Agent-to-App Auth
Agentic apps only really become useful when we let them act across our apps, but we’re currently stuck between friction-heavy consent pop-ups and "sudo access" API keys that offer limited oversight. This creates a governance gap, making it difficult to track and audit what an autonomous agent is actually doing. In this session, I’ll show you how to bridge that gap by modernizing your OAuth implementation to use Identity Providers as secure brokers. We’ll dive into the mechanics of identity assertions to build a model that governs and traces permissions, giving your agents the autonomy they need without stripping away the security guardrails your users require.
About Alisa Duncan
Alisa Duncan is a Principal Developer Advocate at Okta, a full-stack developer, content creator, conference speaker, and community builder who loves the thrill of learning new things. She is a Google Developer Expert in Angular and Identity, and a Pluralsight author. When not coding or volunteering, you can find her traveling, cooking, watching K-Dramas, and drinking a glass of wine.