Yubico and Delinea have announced a joint integration that addresses a key security challenge in agentic AI: establishing verifiable accountability between human authorization and AI agent actions. By combining Yubico’s hardware-rooted Role Delegation Tokens (RDT) backed by YubiKey with Delinea’s runtime authorization, identity governance, and StrongDM-powered capabilities, the solution creates an end-to-end chain of trust for high-consequence decisions in AI Software Factories and autonomous agentic operations.
Agentic AI agents are rapidly expanding as a major category of non-human identities, autonomously generating code, managing infrastructure, and executing workflows. While identity platforms authenticate agents and enforce policies, software-based controls alone cannot reliably prove that a specific human physically authorized a high-risk action. Hardware security keys verify human presence but lack scalable policy enforcement and agent identity management. This integration bridges both requirements for stronger accountability in agentic environments.
Existing security models struggle to govern fast-growing AI agents because software identities can be impersonated, replayed, or automated without clear human oversight. Yubico’s RDT delivers cryptographic proof—signed by YubiKey—that a verified, physically present human approved a specific action within defined scope and constraints. Delinea complements this with centralized governance, just-in-time runtime authorization powered by StrongDM, and StrongDM ID for linking agent identities to human sponsors. Together, they ensure high-consequence decisions require explicit human sign-off before execution.
The integration enforces hardware-attested human authorization at critical escalation points, such as production deployment gates, privileged configuration changes, or sensitive data operations. When an agentic workflow reaches these decision points, the process pauses until a human signs an RDT envelope using their YubiKey. This creates a verifiable audit trail binding every automated high-risk action to a specific human approver, while maintaining unified governance across all identity types.
The combined solution provides end-to-end accountability for AI Software Factory workflows from code generation through human-gated deployment, hardware-backed proof for agentic actions, unified identity governance with YubiKey escalation gates, and comprehensive logging that traces critical operations back to verified human decisions. This approach strengthens controls for organizations deploying autonomous AI agents at scale.
Yubico and Delinea’s integration advances secure agentic AI adoption by ensuring strong human oversight and traceability, helping enterprises maintain trust and compliance as AI autonomy increases.
About Yubico
Yubico is a modern cybersecurity company on a mission to make the digital world safer for everyone. As the inventor of the YubiKey, we set the gold standard for modern phishing-resistant, hardware-backed authentication, stopping account takeovers and making secure login simple. Since 2007, we’ve helped shape global authentication standards, co-created FIDO2, WebAuthn, and FIDO U2F, and introduced the original passkey. Today, our passkey technology secures people and organizations in over 160 countries—transforming how digital identity is protected from onboarding to account recovery. Trusted by the world’s most security-conscious brands, governments, and institutions, YubiKeys work out of the box with hundreds of apps and services, delivering fast, passwordless access without friction or compromise. We believe strong security should never be out of reach. Through our philanthropic initiative, Secure it Forward, we donate YubiKeys to nonprofits supporting at-risk communities. Headquartered in Stockholm, Sweden; Santa Clara, California; and Singapore, Yubico is proud to be recognized as one of TIME’s 100 Most Influential Companies and Fast Company’s Most Innovative Companies.
About Delinea
Delinea is a pioneer in securing human and machine identities through intelligent, centralized authorization, empowering organizations to seamlessly govern their interactions across the modern enterprise. Leveraging AI-powered intelligence, Delinea’s leading cloud-native Identity Security Platform applies context throughout the entire identity lifecycle – across cloud and traditional infrastructure, data, SaaS applications, and AI. It is the only platform that enables you to discover all identities – including workforce, IT administrator, developers, and machines – assign appropriate access levels, detect irregularities, and respond to threats in real-time. With deployment in weeks, not months, 90% fewer resources to manage than the nearest competitor, and a 99.995% uptime, the Delinea Platform delivers robust security and operational efficiency without complexity.