ST-2026-219 · Authentication & identity
Okta makes Agent SSO generally available for governed AI-agent identity
Okta made Agent SSO generally available, using Cross App Access so supported AI agents can be represented as first-class identities in Universal Directory and governed through centralized identity policy with identity-governed short-lived token flows.
Previous state
Okta's 24 August 2026 announcement states that Agent SSO is generally available but does not state a prior Agent SSO availability state.
Current state
Okta Agent SSO is generally available; supported Cross App Access AI agents can be represented as first-class identities in Universal Directory and governed through centralized identity policy using the documented token flow.
Affected users
Who needs to care
Okta customers governing supported AI-agent access to applications through Agent SSO and Cross App Access.
Required response
What to do
Inventory supported AI-agent and application combinations, verify Cross App Access support, define agent identity and access policy in Okta, and validate token and audit behavior before production rollout.
Evidence boundary
What the source does not prove
Okta proves Agent SSO general availability and the documented Cross App Access identity-governance model. It does not mean every SaaS application supports Cross App Access, every customer has enabled Agent SSO, or static credentials are universally eliminated; the separate Auth0 Cross App Access early-access family is not republished.
Lifecycle history
Dated event sequence
- Agent SSO becomes generally available
Okta announced general availability of Agent SSO powered by Cross App Access.
Evidence ledger
First-party sources
- 01Okta — Okta Brings First-Class Identity to AI Agents with Agent SSO
Official Okta press release · 2026-08-24
Open official source ↗