Permit.io / agent.security
Authorization-as-a-service for human, machine, and agentic identities. agent.security is the dedicated AI agent security platform.
What it does
Permit.io provides zero-latency fine-grained authorization as a service, supporting RBAC, ABAC, and ReBAC models across human, machine, and agentic identities. agent.security (agent.security/) is Permit's dedicated platform for enterprise-grade AI agent security. Customers include Tesla, Cisco, BP, Palo Alto Networks, and Intel. Built on open-source foundations (OPAL, OPToggles).
Security relevance
Addresses the authorization challenge for AI agents that act on behalf of users — the delegated identity problem. Permit.io's model supports the hybrid identity pattern where an agent authenticates as a machine workload but operates under a human's delegated permissions. The agent.security platform provides purpose-built controls for AI agent authorization and governance.
When to use it
Evaluate when you need a developer-friendly authorization layer that extends naturally from human users to AI agents. Particularly useful for teams building agentic applications that need fine-grained, policy-driven access control without building authorization infrastructure from scratch. The agent.security platform is purpose-built for security teams assessing AI agent risks.
OWASP coverage
Risks addressed — mapped to both OWASP Top 10 standards. 2 in LLM, 2 in Agentic.
The raw record
What Yuntona stores. Single source of truth — fork it on GitHub.
name: Permit.io / agent.security slug: permit-io-agent-security type: Mixed category: Identity & AppSec url: https://www.permit.io reviewed: 2026-04 added: 2026-04 updated: 2026-04 risks: llm: [LLM07, LLM08] asi: [ASI02, ASI03] complexity: Guided Setup pricing: — audience: Builder lifecycle: [deploy] tags: [ABAC, Agentic, AuthZ, RBAC, ReBAC, SaaS]