Agent identity for Claude Tag
Blog post from Speakeasy
Speakeasy describes an enterprise identity and access-control model for deploying Claude Tag and other AI agents across tools such as Slack, Linear, Jira, and GitHub without relying on shared service accounts. Its approach creates a dedicated agent principal with a human owner, separate permissions, independently revocable credentials, and audit records that distinguish the agent as actor, the requesting user as operator, and the credential approver as authorizer. Each tool call is authorized using the intersection of the agent’s policy, the operator’s current permissions, and the credential’s approved ceiling, preventing users from gaining authority through the agent while allowing organization-wide deployment with user-specific access. For autonomous agents running in CI systems, Kubernetes, or cloud environments, workload identity federation exchanges short-lived platform-issued tokens for agent-bound access tokens instead of storing long-lived secrets. These checks, audit trails, DLP scanning, and policy enforcement are centralized in an MCP gateway, which also integrates with identity providers such as Okta or Entra while keeping agents distinct from human directory accounts.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| MCP | 20 | 2,241 | 148 | 72 | -74% |
| Platform Engineering | 4 | 358 | 65 | 25 | -70% |
| Kubernetes | 3 | 956 | 75 | 30 | -73% |
| AI Agents | 2 | 931 | 231 | 103 | -84% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.