How do you handle fine-grained permissions for a DevOps Agent? Here's an example that uses @aaif.io 's Goose with SpiceDB to ensure that access to prod is always secure. youtu.be/hJE3s1v929Y
authzed
@authzed.com
Authorization that scales 👷♂️ Creators of https://spicedb.io 💫 Inspired by Google's https://zanzibar.tech 🧡 YC W21 Read about how OpenAI securely connects enterprise knowledge with ChatGPT by using AuthZed: https://authzed.com/customers/openai
The New Enemy problem was first described in the Google Zanzibar paper and might be the key to keeping your app data safe. If you're interested in permissions and security, you NEED to know about this. #security #authorization
Are app permissions important to you? Then you should know about the New Enemy problem, and how to prevent it. www.youtube.com/watch?v=Luoa...
Are app permissions important to you? Then you should know about the New Enemy problem, and how to prevent it. www.youtube.com/watch?v=Luoa...
Congrats to Adora Nwodo and Sohan Maheshwar from AuthZed on being named official ambassadors for @aaif.io, joining its inaugural cohort advancing open AI infrastructure 🎉 Read more: authzed.com/blog/authzed...
Agentic AI Foundation Names AuthZed's Adora Nwodo and Sohan Maheshwar as Ambassadors
Adora Nwodo and Sohan Maheshwar from AuthZed have been selected as official ambassadors for the Agentic AI Foundation (AAIF), joining the program's inaugural cohort.
authzed.com
Wondering what the fuss about Relationship Based Access Control is? Here's an explainer using....a MIDI Keyboard?! youtu.be/nPL3W_oHSrE?...
Explaining Relationship-Based Access Control (ReBAC) with my MIDI Keyboard
YouTube video by AuthZed
youtu.be
In 2024, Slack's AI assistant was found summarizing messages from private channels - including ones the user had never joined. This is the blind spot in most RAG pipelines, and could lead to data leaks. We just dropped a video covering three ways to fix it with SpiceDB youtu.be/OdnPmBvBj-8?...
Your RAG Application is Leaking Data. Here’s How to Fix It
YouTube video by AuthZed
youtu.be
We spoke at @amsterdam.voxxeddays.com about a topic that may be controversial: "Don't use JWTs for authorization" What do you think? youtu.be/ucTOgQTk6wk?...
Stop Using JSON Web Tokens (JWTs) for Authorization! by Sohan Maheshwar
YouTube video by Devoxx
youtu.be
authorization 👏 must 👏 be 👏 deterministic www.0xsid.com/blog/meta-ac...
The Newest Instagram "Exploit" is the Goofiest I've Seen | Sid's Blog
0xsid.com
We're livestreaming how to bring fine-grained, relationship-based permissions into your LangChain apps with SpiceDB Stream starting in 4 minutes! www.youtube.com/live/xp1cELZ...
We updated our 'Timeline of Model Context Protocol (MCP) Breaches' post to include the latest security breaches form this year. Read more about why it happened, what data was exposed, and what they reveal about the new threat surface LLMs bring into organizations. authzed.com/blog/timelin...
SpiceDB has an experimental Query Planner for faster permission checks. To see how this works join our Office Hours livestream starting shortly www.youtube.com/live/uzS2GBG...
Our Open Source engineer Maria is on livestream talking about building zed, the official CLI for SpiceDB. We'll explore how zed is built, the design decisions that shape it, and how it powers developer workflows for SpiceDB users. Join here in four minutes: www.youtube.com/watch?v=yBEc...
Learn how to build a production-grade Agentic RAG system on AuthZed Cloud, where authorization is hardcoded into the LangGraph pipeline—not a prompt instruction the agent can skip. Check it out:
If you're using #Postgres and needed fine-grained permissions in your app - this foreign data wrapper for SpiceDB might just be the thing for you
Here's a new way to bring real-time authorization context from SpiceDB into Postgres queries, all without duplicating data, or rewriting policies. Check out this demo by AuthZed CTO and co-founder Joey Schorr of the SpiceDB Foreign Data Wrapper youtu.be/3C72jVHIqCg?...
Here's a new way to bring real-time authorization context from SpiceDB into Postgres queries, all without duplicating data, or rewriting policies. Check out this demo by AuthZed CTO and co-founder Joey Schorr of the SpiceDB Foreign Data Wrapper youtu.be/3C72jVHIqCg?...
The @langchain.bsky.social SpiceDB integration is now live! Adding fine-grain authorization in AI Agents or RAG is not a trivial task. This library simplifies the process and gives you a Retriever for RAG. It also has tool and a LangGraph node for AI Agents. docs.langchain.com/oss/python/i...
SpiceDB integrations - Docs by LangChain
Integrate with SpiceDB using LangChain Python.
docs.langchain.com
SpiceDB Community Day kicks off in few mins with Manuel from @docker.com talking about Testcontainers & RAG Also, Mark Fogle of @clawtocracy.ai will share how he built Agentic Permissions for OpenClaw Oh and you might hear a spicy update about SpiceDB too! www.youtube.com/watch?v=Upwy...
SpiceDB Community Day 2026 feat. Docker, Clawtocracy & more
YouTube video by AuthZed
youtube.com
Excited to announce the @langchain.bsky.social SpiceDB integration 🎉 This library brings SpiceDB's authorization model into LangChain & LangGraph workflows, so you can build Agentic and RAG workflows with fine-grained authorization that scales. Check it out: authzed.com/blog/langcha...
Introducing the LangChain SpiceDB Integration
We're announcing langchain-spicedb, a new library that brings SpiceDB's relationship-based access control into LangChain and LangGraph workflows. Build RAG pipelines that respect what users are allowe...
authzed.com
If we find permissions systems complex for humans, adding AI Agents to your organization will only compound the problem. Here are some falsehoods that people believe about AI Agent Authorization youtu.be/PTWrOCyCfaI?...
Falsehoods People Believe About AI Agent Authorization - Webinar w/ Jake Moshenko, AuthZed CEO
YouTube video by AuthZed
youtu.be
Model Context Protocol is does not secure by default. One of the big reasons is what @simonwillison.net calls the Lethal Trifecta. Watch this video to learn more about access control around MCP and how that caused some recent high-profile breaches www.youtube.com/watch?v=u0fU...
Model Context Protocol (MCP) is Not Secure!
YouTube video by AuthZed
youtube.com
Cedar is not a good fit for AI Agent Authorization. That's because policy engines don't easily have access to what we like to term 'ambient context. See this video to learn more about why policy engines are NOT suited for AI Authorization www.youtube.com/watch?v=9HvE...
Policy Engines Don't Work For AI Authorization. Here's Why:
YouTube video by AuthZed
youtube.com
Building an AI agent is easy. Teaching it to keep a secret? 😅 At WebExpo, Sohan Maheshwar from @authzed.com scrutinises the leaks. 🤫 He architects permissions using the Google Zanzibar model to ensure your RAG system knows what to withhold. Live demo with Pinecone and SpiceDB.
How to prevent AI Agents from accessing unauthorised data
May 27-29, 2026
webexpo.net
Policy Engines are not a good fit for AI Agent authorization. Here's why that's the case, featuring an example that uses Cedar youtu.be/9HvE9Tm6Sss
Policy Engines Don't Work For AI Authorization. Here's Why:
YouTube video by AuthZed
youtu.be
AuthZed Serverless will be sunset on April 5th 2026. Here's a livestream on how to migrate to AuthZed Cloud or self-managed SpiceDB - starting in 5 minutes www.youtube.com/watch?v=xIZG...
Migrate from AuthZed Serverless to AuthZed Cloud
YouTube video by AuthZed
youtube.com
Your RAG pipeline works… until it shows a user data they shouldn’t see. Learn how to enforce permissions, safely post-filter RAG results, and test the whole flow end-to-end with Testcontainers, while using SpiceDB, the same system OpenAI uses to secure 37B docs for 5M users: https://bit.ly/3ZwdyaB
RAG Permission Testing with Testcontainers & SpiceDB | Docker
Learn how to validate permissions in RAG pipelines end to end using Testcontainers and SpiceDB - covering setup, test data, and policy checks developers can trust.
bit.ly
ICYMI here's the timestamped video of Jake's predictions for 2026. Includes insights about Agentic RAG, China, Postgres, and a whole lot more! www.youtube.com/live/AHlKWyT...
We're hosting a 'Authorization In 2026' livestream tomorrow, featuring CEO Jake Moshenko. We'll discuss the big events in the AuthZ space that defined 2025, and what 2026 has in store for us. It's Office Hours format so bring any questions you have. youtube.com/live/AHlKWyT...
Stream starting in 4 minutes!
We're hosting a 'Authorization In 2026' livestream tomorrow, featuring CEO Jake Moshenko. We'll discuss the big events in the AuthZ space that defined 2025, and what 2026 has in store for us. It's Office Hours format so bring any questions you have. youtube.com/live/AHlKWyT...
I've posted my latest recap of the world of databases: www.cs.cmu.edu/~pavlo/blog/... All the hot topics from the last year: • More Postgres action! • MCP for everyone! • MongoDB gets litigious with FerretDB! • File formats! • Market movements! • The richest person in the history of the world!
Databases in 2025: A Year in Review
The world tried to kill Andy off but he had to stay alive to to talk about what happened with databases in 2025.
cs.cmu.edu