Skip to main contentArrow Right
Android

Identity provider for your MCP servers

Identity provider for your MCP servers

Build secure MCP servers and AI agents with standards-based identity infrastructure. Add auth, consent management, access control, credential management, and policy controls to your MCP servers with the Descope MCP authentication provider.

Trusted by innovative AI companies like yours

Logo white SVG
 white logo SVG
6Sense Logo White SVG
Cequence Security
Reco logo
Daylight Security Logo White SVG
 logo SVG
logo SVG White
7AI Logo White Website
Lema AI logo
Notch logo SVG
Zyg Logo
Introducing Agentic Identity Hub

Manage agentic identities, connect MCP servers to AI agents, manage purpose-built AI agent credentials for downstream connections, and enforce granular policies to govern AI agent access.

Learn more
Agentic Identity Hub video thumbnail website
Built for MCP server authentication and more
Server

MCP server auth

Securely expose your external and internal-facing MCP servers to AI agents with OAuth, client registration, user consent, and more.

Integrations

MCP gateway

Support MCP gateway implementation patterns with Descope acting as the IdP: issuing tokens, managing consent, and storing and refreshing credentials.

Flexibility

Bring Your Own Auth

Add Descope as your MCP auth provider without changing your existing homegrown or third-party user authentication stack.

Agentic Identity Hub capabilities

User authentication

Authenticate users in your AI apps


Add auth to AI apps thumbnail

Agentic Identity Management

Get a unified view of agentic identities

  • Get dedicated identities for each AI agent alongside several attributes such as associated users, tenants, tool-level scopes, etc.

  • Filter, group, and tag agents based on business needs and logic.

  • Bring in existing workforce / customer IDs to make authorization decisions.

  • Monitor every AI agent action, identify potential misconfigurations, revoke access for potentially rogue agents.


Descope Agentic Identity Management website image

MCP Auth

Secure MCP servers with auth and access control

  • Securely expose MCP servers to MCP clients with OAuth 2.1 and PKCE.

  • Validate access to MCP servers with user auth and consent management.

  • Support context-aware MCP client registration through DCR and CIMD with agent risk assessment flows.

  • Assign granular per-agent and per-tool scopes to MCP clients.

  • Bring Your Own Auth: Federate with existing homegrown or third-party user auth stacks.


MCP server auth website image

Connections

Manage credentials for your AI agents

  • Issue portable, revocable tokens designed specifically for agents, independent of platform or downstream authentication requirements.

  • Manage, store, and refresh credentials for AI agents to access third-party or internal services.

  • Choose from 50+ prebuilt templates or vanilla OAuth and API key implementations.

  • Leverage presets to connect AI agents to third-party MCP servers.

  • Request scopes at the user and tenant level for B2C and B2B coverage.


AI connections website image

Policies

Govern AI agent access to MCP servers, tools & resources

  • Define authorization controls for per-agent and per-tool access to MCP servers or enterprise resources.

  • Create policies that take context from the user, tenant, MCP server, agent, JWT claim, and downstream service into account.

  • Bring in existing workforce / customer IDs for authorization decisions.

  • Ensure least privilege access and have AI agents progressively request elevated scopes if needed.


Descope AI policies website image

Auditing and Reporting

Get visibility into the entire AI agent identity lifecycle

  • Log every AI agent’s identity, the delegating user, and the tools / scopes / MCP servers they have access to.

  • Identify access misconfigurations and instantly revoke access for potentially rogue or shadow agents.

  • View detailed audit logs in the Descope dashboard or stream them to your SIEM.


Agentic Identity Hub auditing and reporting website image

Ecosystem

Identity for your AI systems–wherever you build them

  • Deploy MCP servers with built-in auth and access control with FastMCP and Vercel.

  • Build full-stack AI apps on Reflex with Descope as the IdP.

  • Build privacy-preserving MCP servers with Descope and Skyflow.

  • Protect against threats and data leaks with Descope and Golf.dev.


Agentic Identity Hub ecosystem image

Trusted by AI scaleups and innovators

Cequence Security Logo White SVG 150 px

“Descope is a key under-the-hood component of the Cequence AI Gateway. Their flexible, developer-friendly handling of MCP auth has played an important role in helping Cequence AI Gateway customers securely connect their applications, APIs, and data to AI agents.”

Shreyans Mehta, Co-Founder and CTO

logo SVG White

“Descope has been super helpful in managing auth for both our MCP server as well as for managing OAuth tokens when Wisdom connects to various other MCP servers. Both flows have been extremely smooth.”

Tanish Lad, Founding Engineer

Logo white SVG

“Descope has been a great partner to our IAM team. We appreciate the simplicity of their product, the speed of innovation, and their active and responsive support. Whenever we launch a new application or user portal for external stakeholders, Descope is now the default auth provider in our minds.”

Naveen Zutshi, CIO

 white logo SVG

"We love Descope SSO flows from a CX standpoint. A customer we onboarded just told us it was the fastest implementation ever. It usually takes weeks but we were done in 15 minutes - small talk included!"

David Li, Senior Software Engineer

Pieces for Developers Logo White SVG New

"We needed a better provider who would actually pay attention to the platform and not just muscle people around. With the flexibility of the social auth, passkeys, everything Descope has—it was an easy drop-in for our authentication flow. ”

Brian Powell, VP of Engineering

Popular MCP auth and identity resources
What is MCP video thumbnail

Video

MCP Explained in 15 Minutes

WatchArrow Right
MCP authorization thumbnail

Blog

Diving Into the MCP Authorization Specification

Read moreArrow Right
MCP Webinar Nov 2025 Email Thumbnail No Date

Webinar

MCP Identity Best Practices

WatchArrow Right
MCP Server Security Best Practices Blog from Descope

Blog

MCP Server Security Best Practices

Read moreArrow Right
Developer's Guide to MCP gateways

Blog

Developer's Guide to MCP Gateways

Read moreArrow Right
MCP vs. CLI Thumbnail

Blog

MCP vs CLI

Read moreArrow Right

Frequently asked questions

Ready for liftoff?

If you’ve seen all you need to see, sign up and get started with Descope. If you'd like a demo, meet with our auth experts.