The New Stack Podcast

OAuth Works for AI Agents but Scaling is Another Question

16 snips
Feb 27, 2025
Maya Kaczorowski, a respected technologist and founder of Oblique, dives into the intersection of OAuth, AI agents, and identity management. She reveals how developers perceive AI agents as extensions of themselves, thus relying on OAuth for secure access. Kaczorowski highlights the growing challenges in managing vast numbers of AI identities, emphasizing the need for scalable solutions. The discussion addresses the complexities of integrating AI with SaaS, the balance of AI autonomy versus security safeguards, and ongoing evolution in access control methods.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Unexpected Source of Concerns

  • AI identity concerns are emerging from outside the security industry, not from CISOs.
  • Existing tools like OAuth can address some AI agent identity concerns.
INSIGHT

OAuth for AI Agents

  • AI agents often act as extensions of users, needing access to a subset of user data and capabilities.
  • OAuth is designed for this delegated access, similar to granting app permissions to a Google profile.
ADVICE

On-Device AI Permissions

  • Implement fine-grained permissions, especially for on-device AI, to control data access.
  • Consider how on-device AI interacts with user identities and online services.
Get the Snipd Podcast app to discover more snips from this episode
Get the app