Okta, a leading identity management provider, has introduced Cross App Access, a new protocol designed to secure AI agents’ interactions across enterprise systems. By extending OAuth, this solution enhances visibility and control, addressing critical security gaps in AI-driven app integrations.
Okta launches Cross App Access to secure AI agent interactions.
Protocol extends OAuth for better visibility and access control.
Eliminates repetitive user consents for seamless AI integrations.
Enhances enterprise security against AI-driven access risks.
Supports ISVs with secure, scalable app-to-app connections.
Available for select Okta customers in Q3 2025.
The rise of AI agents introduces complex, non-deterministic access patterns, creating security blind spots in enterprises. Current protocols like Model Context Protocol (MCP) and Agent2Agent (A2A) lack robust access management, relying on manual user consents for app integrations. “While we're actively working with the MCP and A2A communities to improve AI agents’ functionality, their increased access to data and the explosion of app-to-app connections will create new identity security challenges,” said Arnab Bose, Chief Product Officer, Okta Platform at Okta.
Cross App Access, launching in Q3 2025 for select Okta Platform customers, enables secure, enterprise-ready AI integrations. It allows AI tools to request access via Okta, which evaluates requests against enterprise policies and issues tokens for validated access. This eliminates repetitive user consents, enhancing user experience while maintaining IT oversight. The protocol supports secure connections to apps like internal communication tools or file storage services.
For Independent Software Vendors (ISVs), Cross App Access simplifies integration complexity, reducing reliance on risky token exchanges and ensuring compliance. Enterprises gain enhanced security, visibility, and seamless AI tool adoption, overcoming challenges like fragmented access controls and poor user experiences due to outdated authorization flows. This fosters secure interoperability and scalable AI deployments.
Okta’s Cross App Access strengthens enterprise security, enabling IT teams to manage AI agent interactions effectively while supporting innovation and compliance in an AI-driven world.
Okta, Inc. is The World’s Identity Company™. We secure Identity, so everyone is free to safely use any technology. Our customer and workforce solutions empower businesses and developers to use the power of Identity to drive security, efficiencies, and success – all while protecting their users, employees, and partners.