SSO For Your Agents: Cross-App Access Support in Agentic Identity Hub
Blog post from Descope
Descope has made Cross-App Access (XAA) generally available through its Agentic Identity Hub, enabling enterprises to manage AI agent access to APIs and Model Context Protocol (MCP) servers through their existing identity providers. Built on the ID-JAG token-exchange standard and adopted as an Enterprise-Managed Authorization extension to MCP, XAA replaces long-lived shared API keys and repetitive OAuth consent flows with short-lived, scoped assertions issued according to company policy. Descope supports both validating ID-JAG tokens for organizations exposing MCP servers and issuing them for organizations operating internal agents, allowing access policies, tenant-specific trust, scopes, and audit logging to be centrally managed. The platform also provides self-service setup for tenant administrators and works with standards-compliant providers such as Okta and Ping. Examples include customer-facing analytics MCP servers whose clients can control agent access from their own identity systems, and internal enterprise agents that require governed access across third-party services. For systems not yet supporting ID-JAG, Descope offers connections that manage OAuth tokens or API keys while retaining policy enforcement.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| MCP | 28 | 2,241 | 148 | 72 | -74% |
| AI Agents | 13 | 931 | 231 | 103 | -84% |
| Platform Engineering | 7 | 358 | 65 | 25 | -70% |
| LLM | 1 | 747 | 162 | 79 | -85% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.