Okta, a leader in identity, has announced new capabilities for its Okta Platform and Auth0 Platform. These innovations are designed to help organizations build secure, standards-first AI agents that can be integrated into an identity security fabric for end-to-end lifecycle management. The new offerings will also enable businesses to issue and verify tamper-proof digital credentials, helping to establish trust and address the rise of AI-powered fraud. This move responds to the growing security risks introduced by AI agents, which are already used by 91% of organizations.
Okta has launched new capabilities on the Okta Platform and Auth0 Platform to secure AI-driven enterprises.
The new solutions aim to combat rising AI-powered fraud and security gaps.
Okta for AI Agents integrates non-human identities into an identity security fabric for lifecycle management.
Cross App Access (XAA) is a new open protocol that standardizes secure agent-to-app interactions.
Verifiable Digital Credentials (VDCs) will be introduced to issue tamper-proof digital IDs to prevent fraud.
The innovations address the fact that only 10% of organizations have a strategy for managing non-human identities.
AI is changing the workplace at an unprecedented speed, but governance is lagging, with most organizations unprepared to manage the security risks of non-human identities. This is not a theoretical problem; the press release cites an incident where an AI hiring bot exposed millions of applicants' data due to a simple password. In this new landscape, fragmented architectures can no longer keep up with AI agents that operate at machine speed. Okta’s innovations weave these agents into an identity security fabric, providing holistic visibility and control. Kristen Swanson, SVP of Design and Research at Okta, noted, “AI is changing the workplace faster than organizations can adapt. We’re starting to see poorly built, deployed, or managed agents expose the risks of using a traditional patchwork of identity solutions. The modern enterprise requires an identity security fabric that can unify silos and reduce the attack surface. Our latest innovations weave agents into that fabric to manage their entire identity lifecycle, leveraging open standards like Cross App Access that help elevate the entire industry and create a more secure AI-powered ecosystem.”
The new Cross App Access (XAA) protocol is a key innovation. It extends OAuth to secure agent-driven and app-to-app interactions, shifting control from individual applications to the identity layer for enhanced security and visibility. With support from major industry players like Salesforce and Google Cloud, XAA will reduce user friction, enhance auditability, and enable centralized, policy-based access management. Marla Hay, SVP of Product at Salesforce, said, “As our customers scale their use of agentic AI, providing a secure and trusted platform is our top priority. We're excited to see the continued investment into securing agentic workflows with XAA and to work together to bring Okta's valuable identity insights into Salesforce Security Center, helping shared customers manage their security posture with greater confidence.” Additionally, the new Okta Verifiable Digital Credentials (VDCs) platform will combat AI-powered fraud by enabling organizations to issue and verify tamper-proof, reusable identity data. This will simplify a user's experience while providing a reliable way to digitally prove identity in a world where deepfakes are increasingly common.
Okta, Inc. is The World’s Identity Company™. We secure Identity, so everyone is free to safely use any technology. Our customer and workforce solutions empower businesses and developers to use the power of Identity to drive security, efficiencies, and success — all while protecting their users, employees, and partners.