claude.com Okta Partners with Anthropic for Enterprise-Managed Authorization in AI Workflows
Article Content
- •Okta is now a featured identity provider for Anthropic's Claude AI tool.
- •Admins can provision MCP connectors centrally, simplifying user access management.
- •The initiative aims to enhance security and efficiency in enterprise AI workflows.
On June 18, 2026, Anthropic announced Okta as a featured identity provider for their beta program, enabling organizations to manage access to AI tools like Claude through centralized authorization. This partnership allows admins to provision Multi-Connector Protocol (MCP) connectors once, streamlining access for users based on their existing Okta roles. Key clients include Ramp, Webflow, and Hubspot, with support for connectors from Asana, Atlassian, and others. The initiative aims to enhance security and efficiency in enterprise AI workflows by implementing an open standard called Enterprise-Managed Authorization. This development is significant as it reduces the friction of user setup and enhances security by ensuring that access management is governed through a trusted identity provider. The program is currently in beta, with plans for broader availability in the future.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track Okta in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…