Anthropic Rolls Out Enterprise-Managed Auth for Claude’s MCP Connectors

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Spread the love

Anthropic has taken its Model Context Protocol (MCP) connector framework a significant step further, announcing on August 24, 2026, that Enterprise-managed authorization is now generally available.

The update expands support to Datadog, Notion, and Slack, joining the previously supported roster of Asana, Atlassian, Canva, Figma, Granola, Linear, and Supabase, with Exa, Miro, and Zoom slated to arrive soon.

The feature addresses a friction point that has quietly slowed enterprise adoption of Claude’s connector ecosystem. MCP connectors give Claude access to the workplace tools organizations already rely on, but until now, enabling them required two separate steps: an administrator had to switch the connector on for the organization, and then every individual employee had to authorize it themselves.

That second step, repeated across dozens or hundreds of users, created exactly the kind of fragmented, inconsistent access pattern that security teams dread.

Enterprise-managed authorization eliminates that redundancy. Admins now authorize a connector once, and employees inherit access automatically through the identity provider groups and roles they already belong to.

The first time someone logs into Claude, the connector is simply there, with no consent screen, no manual OAuth flow, and no separate credential to manage.

This capability is the first production implementation of the Enterprise-Managed Authorization extension to MCP, an open standard designed so that any connector, including custom, in-house connectors, can adopt the same behavior.

Okta is the launch identity provider, with support for additional providers expected soon. Because the underlying mechanism relies on Okta’s Cross App Access protocol and Identity Assertion JWT Authorization Grants, it extends existing OAuth infrastructure rather than introducing a parallel authentication surface for security teams to monitor separately.

For administrators, the practical benefit runs deeper than convenience. Folding MCP access into the same identity provider workflow that already governs SaaS applications means access can be scoped by group, audited centrally, and revoked instantly.

Because checking access against the IdP is now frictionless, Anthropic notes that admins can safely shorten access token lifetimes, so when an employee is deprovisioned, their connector access expires quickly rather than lingering on a stale token. Admins can also lock a connector to IdP-only authentication, preventing employees from accidentally linking personal accounts to workplace tools.

Access remains consistent across Claude chat, Claude Code, and Cowork, reinforcing Anthropic’s push to treat identity as a unifying control plane across its product surface.

Companies including Ramp, Webflow, and HubSpot are among the organizations already rolling out enterprise-managed auth across their teams, with Ramp reportedly provisioning roughly 2,000 employees with zero manual setup steps.

As agentic AI tools increasingly touch production systems and sensitive business data, this shift toward centralized, IdP-governed connector access signals a broader industry recognition that AI tooling needs to inherit the same identity discipline enterprises apply to every other SaaS application, rather than existing as an ungoverned exception.

Prevent incidents due to slow investigations. Power your Tier 1 with threat intelligence from 15K SOCs: Integrate TI Lookup in your SOC

The post Anthropic Rolls Out Enterprise-Managed Auth for Claude’s MCP Connectors appeared first on Cyber Security News.