alibaba/open-agent-auth
An enterprise framework implementing the Agent Operation Authorization protocol with cryptographic identity binding, fine-grained authorization, and semantic audit trails for secure AI agent operations.
# Technical Summary Implements request-level workload isolation using WIMSE temporary credentials and three-layer cryptographic binding (ID Token → Workload Identity Token → Agent Operation Authorization Token) to cryptographically link operations to explicit user consent. Built on Spring Boot 3.3+ with pluggable policy engines (OPA, RAM, ACL), W3C VC-based semantic audit trails, and MCP integration for LLM-native agent authorization flows compliant with OAuth 2.0, OIDC, and WIMSE standards.
Stars
34
Forks
3
Language
Java
License
Apache-2.0
Category
Last pushed
Mar 11, 2026
Commits (30d)
0
Get this data via API
curl "https://pt-edge.onrender.com/api/v1/quality/agents/alibaba/open-agent-auth"
Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.
Higher-rated alternatives
GetBindu/Bindu
Bindu: Turn any AI agent into a living microservice - interoperable, observable, composable.
opena2a-org/agent-identity-management
AIM - The open-source NHI platform for AI agents. Cryptographic identity, governance, and access control.
vestauth/vestauth
web-bot-auth for agents–from the creator of `dotenv` and `dotenvx`
kanoniv/agent-auth
Cryptographic identity and delegation for AI agents
aeoess/agent-passport-system
Cryptographic identity, delegation, governance, and commerce protocol for AI agents. Ed25519...