







Decentralized Auth — User Controlled Authorization Networks - UCAN Working Group
UCAN - User Controlled Authorization Network
A trustless, secure, local-first, user-originated, distributed authorization scheme.

WAVE: A Decentralized Authorization Framework with Transitive Delegation | USENIX
Michael P Andersen, Sam Kumar, Moustafa AbdelBaky, Gabe Fierro, John Kolb, Hyung-Sin Kim, David E. Culler, and Raluca Ada Popa, University of California, Berkeley
`rs-ucan`: Rust crates to support UCAN-based authz · Issue #668 · filecoin-project/devgrants
Open Grant Proposal: rs-ucan Name of Project: rs-ucan Proposal Category: core-dev Proposer: @cdata (Optional) Technical Sponsor: @autonome Do you agree to open source all work you do on behalf of t...

Enterprise-Managed Authorization: Zero-touch OAuth for MCP
The Enterprise-Managed Authorization extension to the Model Context Protocol is now stable, enabling organizations to centrally provision MCP server access through their identity provider so users get connected servers on first login without per-app OAuth.

Service Auth | Bluesky
There are currently two "types" of auth supported in the atproto network: client-server auth and service-to-service auth.

Building AIP: An ATProtocol Authorization Gateway - Nick's Blog
OAuth is the first challenge developers face in the atmosphere. This post is about AIP, the authorization gateway we built at Graze Social to alleviate some of the pain.

Updated Auth Scopes Proposal · bluesky-social atproto · Discussion #4013
This is a discussion thread for the July 2025 Auth Scopes proposal
OAuth for AT Protocol | Bluesky
We are very happy to release the initial specification of OAuth for AT Protocol! This is expected to be the primary authentication and authorization system between atproto client apps and PDS instances going forward, replacing the current flow using App Passwords and createSession over time.

Cirrus (my single-user PDS than runs in a Cloudflare Worker) now supports granular OAuth scopes and permission sets. github.com/ascorbic/cirrus
Cirrus (my single-user PDS than runs in a Cloudflare Worker) now supports granular OAuth scopes and permission sets. github.com/ascorbic/cirrus
I'm pretty sure UCANs are awesome. They're not the easiest thing to understand how to apply, and I need to see how they work out in practice, but I'm excited about the cool things that you can do with them. They've got some cool capabilities. 😉
UCAN - User Controlled Authorization Network
ucan.xyzI'm pretty sure UCANs are awesome. They're not the easiest thing to understand how to apply, and I need to see how they work out in practice, but I'm excited about the cool things that you can do with them. They've got some cool capabilities. 😉
UCAN - User Controlled Authorization Network
ucan.xyz