Authorization plane

OAuth Token Exchange (RFC 8693)

Detect the token-exchange grant in OAuth metadata, the delegation / down-scoping primitive behind on-behalf-of agent access.

Live in the gateway today.

What it answers

What may it do, and on whose behalf?

OAuth Token Exchange (RFC 8693) sits in the authorization plane of the agent-interop stack. What may it do, and on whose behalf? AxioRank tracks it as one row in a coverage matrix that spans six planes, from discovery and identity to authorization, content permission, and commerce.

Plane

Authorization

Status

live

Direction

outbound

How AxioRank handles it

Governed, not just listed.

Live in the gateway today. Outbound: when the agents you run reach out to other agents and services.

Govern the whole agent stack

AxioRank verifies identities and capabilities across the agent ecosystem, from discovery to commerce. See the full coverage matrix, machine-readable.