Home / Companies / Arcade / Blog / Post Details
Content Deep Dive

Cisco Duo Decides, Arcade Acts: Introducing The First Content-Aware Duo Step-Up for Agent Tool Calls

Blog post from Arcade

Post Details
Company
Date Published
Author
Guru Sattanathan, Thierry Damiba
Word Count
893
Company Posts That Month
19
Language
English
Hacker News Points
-
Summary

At the RSA Conference in March 2026, Cisco introduced a significant advancement by making Cisco Duo a central authorization authority for AI agents, enhancing security by mapping agents to human owners and checking policies on every tool call. This move, supported by developers at Arcade.dev, integrates Duo's existing identity and multi-factor authentication capabilities to verify agent actions in real time, ensuring sensitive data is protected. Arcade complements this by enforcing Duo's decisions at runtime, acting as a gatekeeper that requires Duo Push notifications for sensitive requests before actions are executed. This dual-layer security approach involves initial login and scope definition using Duo Single Sign-On, followed by a real-time, content-aware authorization step when a tool runs, providing granular control over agent actions. Through this integration, agent authorization becomes a runtime question of whether an agent can perform a specific action on behalf of a user, with Duo providing the authority and Arcade executing the enforcement.

Trends Found in this Post

No tracked trend matches for this post yet.