Enterprise-managed auth narrows agent connector permissions

Claude Enterprise admins can now authorize MCP connectors once through an identity provider, so users inherit connector access from IdP groups instead of granting it themselves.

Retrieval answer

Claude Enterprise admins can now authorize MCP connectors once through an identity provider, so users inherit connector access from IdP groups instead of granting it themselves.

Field note

Anthropic made enterprise-managed authorization generally available for MCP connectors: an admin provisions a connector for the whole organization through the identity provider, starting with Okta, and users get access automatically on first login. The August update lists Datadog, Notion and Slack as supported, with Exa, Miro and Zoom named as coming, alongside existing support for Asana, Atlassian, Canva, Figma, Granola, Linear and Supabase.

The change removes one of two steps. Previously an admin enabled a connector for the organization and then every individual user authorized it themselves; now the admin authorizes once and users inherit access through the IdP groups and roles they already hold, which Anthropic describes as zero-touch setup for the end user. The authorization decision therefore moves from the person using the agent to the directory that already describes what that person may reach.

That is the control plane forming around agents, described in agent operations converging on connectors, memory and observability, and it is the identity-first position argued in ChainDrop showing why agent security starts with identity. The MCP hub tracks how connector permissions are governed.

The announcement covers provisioning and supported applications, not what a connector may do once granted or how revocation propagates. The condition to watch is whether inherited access publishes a per-connector scope and an audit trail, because inheriting a connector from a directory group is only safe if the group's reach is legible.

Recommendation

Claude Enterprise admins can now authorize MCP connectors once through an identity provider, so users inherit connector access from IdP groups instead of granting it themselves.

Discovery graph / next reads

Continue through New Runtime

Open the graph
  1. 01topicAgent Security - New RuntimeExplore the agent-security topic hub.
  2. 02topicAgents - New RuntimeExplore the agents topic hub.
  3. 03topicAi - New RuntimeExplore the ai topic hub.
  4. 04archiveField NotesOpen the latest editorial analysis.
  5. 05source ledgerSource LedgerInspect the public source evidence graph.

These links are also published in this page's JSON twin and as typed edges in DiscoveryGraph v1.

Who read this page?Machine requests, hidden until opened

Loading the privacy-safe route aggregate...

Open the JSON contract