CTO · IAM Architect · Identity Standard Specialist · Founder
Digital Identity · Authentication · AI · Authorization · Identity Standards · OSS
-
Release of Agent Native Authorization (ANA) at TwoGenIdentity
Agent-Native Authorization with Human-in-the-Loop -
Passkeys Just-In-Time Authorization for AI Agents
Based on the TwoGenIdentity ANA Framework -
Just-In-Time (JIT) Authorization for CLI AI Agents — Claude Code & GitHub Copilot CLI
Human-in-the-Loop interactions with OAuth native experiences -
AuthZEN MCP Gateway — MCP Security Support
Dynamic, context-aware authorization and FGA in a live MCP app demo -
First Secure Keycloak MCP App with AuthZEN Gateway
Protected by the AuthZEN MCP Gateway following FGA and zero-trust principles -
Agentic AI Platform for Enterprise IAM (Article)
Secure agent-driven governance with Keycloak MCP, based on zero-trust principles and FGA — from vision to implementation -
Keycloak MCP Server
First MCP server for managing Keycloak using natural language through LLMs and AI agents -
MidPoint MCP Server
First MCP server for managing MidPoint IGA using natural language through LLMs
-
Authenticate 2025 — FIDO Alliance (Conference Talk)
Enhancing User Experience with Native Authentication and Passkeys for Apps and Agents -
TwoGenIdentity Blog
A compilation of articles on IAM, Agentic AI, and identity standards -
KeyConf25 (Conference Talk · Recorded)
Agentic AI for Enterprise IAM -
KeyDev25 (Conference Talk)
Mastering Access Control: Low-Code Authorization with ReBAC, Decoupling Patterns and Policy as Code -
Cloudland 2025 - Addressing Modern Authorization Challenges (Conference Talk)
Externalize Authorization based Open Standards, Low-Code Authorization with ReBAC and Policy as Code -
KeyConf24 (Conference Talk)
Enhancing User Experience with Native Authentication and Passkeys in Keycloak -
Keycloak — Identity and Access Management for Modern Applications, 2nd Edition (Technical Reviewer)
OIDC and OAuth 2.0 to secure apps
- OAuth 2.0 Agents Native Authorization (Draft)
OAuth 2.0 Agents Native Authorization via Structured Elicitation
-
Release of Passkeys 360 at TwoGenIdentity
Passkeys for Every Surface Unified Security for Apps & Agents -
Deep Dive into Enhancing User Experience with Native Authentication and Passkeys in Keycloak (Article)
-
Passwordless Experience with Passkeys and Passkeys Autofill (Conditional UI) (Article · Workshop)
-
Step-Up Authentication Challenge Protocol based on RFC 9470 (Article · Workshop)
-
Step-Up and Multi-Factor Authentication (MFA) for Web Apps and APIs (Article)
-
Interoperability Workshop: Microsoft Verifiable Credentials for Identity Claims (Workshop)
-
Release of OpenID AuthZEN for API/AI Gateway
Turning API and AI gateways into standardized AuthZEN Policy Enforcement Points -
Mastering Access Control: Low-Code Authorization with ReBAC, Decoupling Patterns and Policy as Code (Article · Workshop)
-
Keycloak Integration with OpenFGA based on Zanzibar for Fine-Grained Authorization at Scale (Article · Workshop)
-
Building Scalable Multi-Tenancy Authentication and Authorization using Open Standards and OSS (Article · Workshop)
Keycloak, OpenFGA and Apache APISIX





