Now using Okta as the ID-JAG issuer, configuration Default.
How ID-JAG works
The agent never sees your password and never gets a token it can reuse elsewhere. It carries a signed statement about you from the ID-JAG issuer to the MCP's authorization server, and trades it for a scoped access token. Click any step to see the request on the right.