Skip to main content
OAuth3 artwork — image 1 of 2 OAuth3 artwork — image 2 of 2

OAuth3: Tsarin wakilcin wakili da aka gabatar.

A proposed standard for AI agent delegation. Scoped permissions, instant revocation, full audit trails.

Status:Ba a amince da shi ba ta IETF, W3C, ko kuma wani rukunin ƙididdigar ƙididdiga.

Menene OAuth3?

OAuth 2.0 was built for delegated authorization between apps. OAuth3 extends this to AI agents.

PH0 shi ne shawarar da aka gabatar na daidaitaccen tsari don zamanin AI. It addresses four critical problems:

Yadda OAuth3 ke aiki

1
Kuna buƙatarWani wakili ne zai taimaka masa wajen yin wani aiki
2
Jami'in ya bayyana cewaWaɗanne izini ne yake bukata daidai
3
Kuna duba & amincewako kuma su hana kowane izini
4
Ajan yana aikiA cikin iyakar abin da aka amince da shi kawai
5
Kuna iya sokewaSamun damar nan take, a kowane lokaci

Nguzo Nne za Nguzo

Ƙananan ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin ƙwayoyin

Ba za a iya samun damar shiga duk imel ba amma za a iya karanta imel daga shugaban, ba za a iya share su ba.

Bayyana yarda ta bayyana.

Kuna ganin ainihin abin da wakilin yake so, kuna amincewa ko ƙaryata, babu izini a ɓoye, babu damar shiga ba zato ba tsammani.

Canja wurin nan take

Ka daina amincewa da wakili? Ka soke samun damarsa nan take. Tokens mutu nan take. No waiting for password changes.

Cikakken Audit Trail

An tsara PH0 don tallafawa sa hannu, sa'a-tallace logs aiki. Duba kowane mataki da wakili ya yi, lokacin da ya yi shi, da kuma dalilin da ya sa. Architected for FDA Part 11 yarda (abokin ciniki inganci da ake bukata domin cikakken takardar shaida).

OAuth3 Matters Me yasa

Matsalolin da ke faruwa yanzu: Today, you either give an agent full access or no access at all.

OAuth3 bayani: An OAuth3 token contains three things: scope, TTL, and evidence requirements.

Aikin OAuth3 Token

Notice: the agent can READ inbox but not SEND. It can DRAFT replies but not DELIVER. Every action is logged.

{ "identity": "agent:gmail-triage:v1", "scopes": ["gmail.read.inbox", "gmail.modify.labels"], "expires": "2026-03-27T15:00:00Z", "revocation_ref": "srv_rev_123", // server-side only "signature": "sha256:8f3c..." }

Notice: the agent can READ inbox but not SEND.

Shin kuna shirye don ba da izini cikin aminci?

Ready to delegate safely?

Bayanan taƙaitaccen bayani:Karatasi ya OAuth3• Chanzo cha spec:Ƙungiyar ta ƙasa ta nuna alamar ƙasa