VendorCommons DraftAgent-researched
Okta
Role in IAAI Architecture
Okta serves as an enterprise IdP in Pillar A, issuing verifiable identity tokens consumed by Pillar B and C enforcement contexts. Okta's Cross-App Access (XAA) extension brings MCP server authorization under enterprise identity governance, enabling centralized policy enforcement for AI tool access in Pillar B.
Linked Evidence
No public evidence links have been attached directly to this vendor profile yet.
Assertions
interoperabilityCommons DraftAgent-researched
Okta governs MCP server access for AI tools and data via MCP Enterprise-Managed Authorization
Okta Workforce Identity Cloud with Cross-App Access can serve as the authorization authority for MCP servers, issuing OAuth 2.1 tokens and enforcing enterprise policy before agents access MCP-exposed tools and data, turning MCP servers into governed Pillar B enforcement contexts backed by Pillar A policy.
