OAuth 2.1
Authorization-code flow with PKCE for agents and reviewers, per-tenant protected-resource metadata.
Developer and enterprise architecture
Bifrost implements the interoperability contracts and security controls enterprise systems already rely on. Cedar makes every authorization decision; the AuthZEN interface exposes those decisions to your identity provider or gateway, which remains the enforcement point.
Bifrost trust exchangeIdentifyAuthorization-code flow with PKCE for agents and reviewers, per-tenant protected-resource metadata.
Sender-constrained tokens (RFC 9449). Restricted material is never released without a DPoP-bound token, and owners can require DPoP workspace-wide.
Agents connect to a tenant trust center over the Model Context Protocol to ask, search and browse governed evidence.
A tenant Agent Card and a JSON-RPC SendMessage endpoint, sharing MCP’s token, policy, citation and receipt guarantees.
Access-evaluation endpoints (single and batch) backed by the real Cedar decision. A decision point, never an enforcement point.
The owner’s policy decides what each principal may see or do for a purpose, before retrieval and before any action decision.
Ed25519 JWS receipts bound to a Merkle root of the cited evidence, logged in an RFC 6962 transparency log with witness cosignatures and OpenTimestamps anchors.
The Apache-2.0 @odingard/bifrost-verify package and CLI verify receipts, packets, credentials and action chains offline.
Row-level security forced on every tenant table, envelope-encrypted secrets, rate limits and a per-tenant kill switch for agent access.
Recorded delegation chains up to three levels; each child can only narrow its parent’s actions, limits, purpose and expiry.
Revoking a delegation blocks every later decision that depends on it. Earlier records stay verifiable and show when revocation happened.
Proposal, decision, acceptance and execution report are linked by hash and exported as a single chain the verifier checks offline.
Bifrost does not execute purchases, move money or operate a customer’s ERP. The customer’s business systems perform the underlying operations. Bifrost governs and records the trust exchange.
Evaluations run on synthetic data. Deployment model, data residency and eligibility for regulated data are agreed during onboarding.
Enterprises, software vendors, procurement teams, and trust and security leaders.
Request a Bifrost DemovCISOs, security consultants, GRC service providers, and technology partners.
Become a Bifrost PartnerDevelopers, platform architects, and enterprise AI teams.
Explore Bifrost Integration