Enterprise Authorization Patterns for AI Agents — Garrett Galow, WorkOS | MCP Night @WorkOS
Enterprise Authorization Patterns for AI Agents — Garrett Galow, WorkOS | MCP Night  @WorkOS
Uploaded December 2025 | Updated September 2026, 2 days ago
Modern AI agents don’t just respond to prompts — they need to act.

That means querying real systems, scheduling meetings, updating tickets, and working across the same SaaS tools your teams already use. But the moment an AI agent needs to act on a user’s behalf, you hit the hardest problem in enterprise AI:

authorization, consent, and governance.

In this talk, Garrett Galow (Product Manager at WorkOS) walks through a live MCP server demo that shows how delegated authorization actually works in practice — not as a concept, but against real enterprise systems like Linear and Google Calendar.

You’ll see how:
• MCP servers use tool calls and elicitation to request access only when needed
• Users explicitly grant consent per system, in real time
• Tokens are issued, rotated, and managed without exposing OAuth complexity to your application
• AI agents can safely impersonate users within clearly defined boundaries

This isn’t about building a scheduler. It’s about establishing the identity and authorization layer that makes MCP viable inside real organizations.

WorkOS Pipes acts as the enterprise identity substrate behind MCP:
• One API call to generate authorization URLs
• One API call to retrieve access tokens
• Automatic handling of refresh tokens, lifetimes, and rotation
• Clear consent flows and auditable access paths

The result is AI infrastructure that respects enterprise requirements around security, governance, and user trust — without forcing every team to re-implement OAuth and token management from scratch.

If you’re evaluating MCP, building AI agents that need real system access, or thinking about how these tools move from demo to production, this talk is for you.
Enterprise Authorization Patterns for AI Agents — Garrett Galow, WorkOS | MCP NightWhy Agents Break Your Access Control — Umaimah Khan, Opal Security | Enterprise Ready Conf 2025Can Your AI Survive Crashes? Fault-Tolerant Gen Code — Maxim Fateev, Temporal | HumanX 2026AI Is Rewriting Healthcares Hidden Layer — Zack Kanter, Stedi | re:Invent 2025Live July 20Agent Night: Is AGI Already Here? Jaya Gupta, Flo Crivello & swyx on AI AgentsLower Your Incident Cost to Ship Faster — Chris Evans, Incident.io | re:Invent 202510x the Tokens, Only 2x the Output — Nicholas Arcolano, Jellyfish | AI Engineer Worlds Fair 2026Dwarkesh Patel | Dwarkesh Unplugged presented by WorkOSThe Danger of Giving AI MetricsWhy AI Agents Can’t Run Your Business (Yet) — Colin Zima, Omni | HumanX 2026The Secret to AI Automation
WorkOS |

Enterprise Authorization Patterns for AI Agents — Garrett Galow, WorkOS | MCP Night

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER