Known agent identity
Use delegated user identity or a service account.
Secure AI agent access
Authenticate each user or service account, apply policy to every request, limit named MCP tools, and manage upstream OAuth when the server requires it.
Use delegated user identity or a service account.
Attach policy to each protected MCP route.
Restrict the named tools the caller can use.
Agent identity
Put Pomerium between MCP clients and the MCP servers they use. Define one protected route for each MCP server.
MCP boundary
Pomerium controls the request and named MCP tool call. It does not infer prompt or task intent.
Pomerium MCP capabilities and route model.
Delegate a user identity through an LLM.
Restrict exact MCP tool calls.