Auth0 engineers demonstrate securing AI agents using open standards like OAuth 2.1, OIDC, and CIBA (Client Initiated Backchannel Authentication). They address common security challenges including excessive agency, shared credentials, and lack of user context. The presentation covers token exchange patterns, fine-grained authorization for RAG systems, and securing MCP servers. A live demo shows an AI trading assistant that requires explicit user approval for sensitive actions through CIBA, eliminating the need for shared API keys while maintaining proper user identity and access control.
•18m watch time
Sort: