Descope Launches Cross-App Access for SSO-Like AI-Agent Access to MCP Servers
Summary
Descope launches Cross-App Access in its Agentic Identity Hub, enabling SSO-like AI-agent access to MCP servers through short-lived, request-validated ID-JAG tokens and self-service setup for tenant admins.
Key Points
- Descope makes Cross-App Access generally available in its Agentic Identity Hub, supporting both ID-JAG token issuance and validation for SSO-like AI-agent access to MCP servers.
- Descope lets tenant admins self-service XAA setup through its SSO Setup Suite, including selecting an identity provider, establishing trusted issuers, registering agents, and mapping user attributes.
- XAA uses short-lived, scoped ID-JAG assertions evaluated on every request, while Descope can accept assertions from Okta, Ping, other standards-compliant providers, or another Descope project.