alibaba/open-agent-auth

An enterprise framework implementing the Agent Operation Authorization protocol with cryptographic identity binding, fine-grained authorization, and semantic audit trails for secure AI agent operations.

39
/ 100
Emerging

# Technical Summary Implements request-level workload isolation using WIMSE temporary credentials and three-layer cryptographic binding (ID Token → Workload Identity Token → Agent Operation Authorization Token) to cryptographically link operations to explicit user consent. Built on Spring Boot 3.3+ with pluggable policy engines (OPA, RAM, ACL), W3C VC-based semantic audit trails, and MCP integration for LLM-native agent authorization flows compliant with OAuth 2.0, OIDC, and WIMSE standards.

No Package No Dependents
Maintenance 13 / 25
Adoption 7 / 25
Maturity 11 / 25
Community 8 / 25

How are scores calculated?

Stars

34

Forks

3

Language

Java

License

Apache-2.0

Last pushed

Mar 11, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/agents/alibaba/open-agent-auth"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.