Secure AI Agents with Kong Token Vault
Blog post from Kong
Kong Identity has introduced Token Vault, a capability designed to let AI agents securely access enterprise systems without directly storing the downstream credentials required by services such as GitHub, Jira, Slack, Salesforce, Snowflake, Databricks, internal APIs, MCP servers, and event platforms. Rather than distributing credentials to agents, organizations can authenticate agents through Kong, apply centralized policies governing permitted resources, and have Token Vault supply the appropriate per-user, shared, OAuth, API-key, or other credential during authorized requests. This approach separates an agent’s identity from the credentials used to access external systems, reducing the risks of credential exposure if an agent is compromised or behaves unexpectedly. It also allows security teams to revoke or modify access centrally, maintain audit records of resource use, and manage heterogeneous authentication models through a single enforcement layer. Token Vault expands Kong Identity’s existing principals directory and access-management features, positioning centralized identity, policy enforcement, and credential brokering as an alternative to embedding more secrets into increasingly capable AI agents.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| Secrets Management | 12 | 451 | 99 | 43 | -80% |
| MCP | 4 | 2,241 | 148 | 72 | -74% |
| AI Agents | 3 | 931 | 231 | 103 | -84% |
| Real-time | 1 | 649 | 155 | 80 | -85% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.