All analysis was generated autonomously, without human review. Scores are analytical opinions drawn from the cited public sources, without hands-on testing. They are not audits, certifications, investment reports, purchasing advice, or evaluations of quality.
Descope sells no-code customer-login software to businesses. The same platform issues scoped credentials to AI agents and acts as the authorization layer in front of MCP servers, the interfaces that expose tools to agents. One FedRAMP High Authorization, obtained through the Palantir FedStart program, covers both the customer-login product and the agent product. The company says over a thousand organizations run it in production, and names GoodRx and Navan among them. Token Security and WisdomAI run their own MCP servers behind the product, in case studies Descope wrote itself. Descope has raised $88 million, all of it seed capital. No reviewed source reports revenue, and TechCrunch records that its chief executive declined to discuss it.
| Description | Descope is a customer and agentic identity platform that adds authentication, access control, and identity journeys for a company's users, business customers, partners, AI agents, and MCP servers. | [f1] |
|---|---|---|
| Founded | 2022 | [f2] |
| HQ | Los Altos, California, US | [f3] |
| Funding | $88M total | [f4] |
| Latest funding | Seed, $53M in February 2023, extended and closed with $35M in September 2025 for $88M total | [f4] |
| Deployment | SaaS | [f5] |
| Compliance | CSA STAR Level 2, FedRAMP High, ISO 27001, SOC 2 Type 2 | [f5] |
| Product | What it does |
|---|---|
| Descope | Customer and agentic identity platform providing authentication, SSO, fine-grained authorization, and scoped OAuth credentials for AI agents and MCP servers. |
AI Defense Matrix
| Govern | Identify | Protect | Detect | Respond | Recover | |
|---|---|---|---|---|---|---|
| AI-Workload Platforms Inference servers, training platforms, vector DB platforms, and the model-loading supply chain. | ||||||
| AI Orchestration Tools Agentic orchestration tools, plus their plugins, skills, hooks, system prompts, scaffolding, harnesses, configuration settings, and MCP clients on user devices. | ||||||
| AI-Generated Code Code produced by AI tools, AI-assisted reviews, AI-generated infrastructure-as-code and tests, and vibe-coded apps that bypass CI/CD. | ||||||
| AI Gateways & Routers MCP proxies and gateways, LLM routers, outbound AI-service traffic, shadow AI egress, and model-registry traffic. | ||||||
| AI Model Model weights, fine-tuning checkpoints, model cards, registries, AIBOM, and the third-party LLMs your enterprise consumes. | ||||||
| Training Data Datasets used for training, fine-tuning, and continued learning. | ||||||
| Runtime AI Data User prompts, inference inputs, RAG content, vector DB content, persistent agent memory, and interaction history. | ||||||
| AI Agent Identities AI agents as non-human principals, plus credentials, keys, permission scopes, service accounts, and delegation chains across agents and tools. |
Descope is an identity platform for AI agents and MCP servers that authenticates agents with scoped OAuth tokens, brokers their credentials to external tools, and governs and audits what each agent may do. It is mapped to the AI Defense Matrix. [f6]
Cyber Defense Matrix
| Identify | Protect | Detect | Respond | Recover | |
|---|---|---|---|---|---|
| Devices Workstations, servers, phones, tablets, storage, network devices, IoT infrastructure, and similar hardware. | |||||
| Applications Software, interactions, and application flows on the devices. | |||||
| Networks Connections and traffic flowing among devices and apps, plus communication paths. | |||||
| Data Content at rest, in transit, or in use across devices, apps, and networks. | |||||
| Users The people using the devices, apps, networks, and data. |
Descope gives a company authentication, single sign-on, delegated administration, fine-grained access, and auditability for its own users, business customers, and partners. These capabilities are mapped to the Cyber Defense Matrix. [f1]
How well the company can compete in its security market, scored across eight dimensions against public evidence.
| Dimension | Score | Rationale |
|---|---|---|
| Problem Clarity How precisely the company defines its problem, with evidence the problem exists at the scale claimed. | 3/5 | Descope names concrete buyers, MCP server developers and AI agent developers alongside its customer-login segments, and a concrete pain, agents needing short-lived scoped credentials rather than human logins or static keys. The framing is the vendor’s own and no cited source quantifies how many organizations face it, which holds the evidence at present but unproven. [s2, s4, s26, s29] |
| Capability Depth How specific the technical capabilities are, with evidence beyond marketing claims such as docs and third-party validation. | 3/5 | Descope publishes documentation for the Agentic Identity Hub covering auth patterns, core components and an agent auth SDK, its AI page details OAuth 2.1 with PKCE, Dynamic Client Registration and per-tool scopes, and its GitHub organization carries SDKs across seven backend languages. All of that is the company’s own material, and the reviewed sources carry no third-party technical evaluation, customer-authored implementation account, or independently scrutinised adoption of the scored capability. [s25, s2, s26, s24] |
| Market Timing Whether the market is ready for this product, with evidence that buyers are actively seeking solutions. | 3/5 | The enabler is dated. The Model Context Protocol published a separate authorization specification in April 2025, carried in its 2025-06-18 revision, and the You.com write-up describes Descope's Hub handling the spec-mandated pieces of it. On the buyer side the cited record carries one analyst category, the 2025 Frost Radar for Non-Human Identity Solutions, so the evidence supports plausible timing rather than corroborated demand. [s26, s27, s9, s28] |
| Team Credibility Demonstrated domain expertise with public signals such as prior exits, publications, and industry recognition. | 4/5 | The core team built Demisto and sold it to Palo Alto Networks in March 2019, which TechCrunch documents and Upstarts Media sizes above $500 million, and Den Delimarsky names Descope among the collaborators on the Model Context Protocol authorization specification. Descope’s June 2023 nOAuth disclosure was still drawing coverage from The Hacker News two years later. [s11, s18, s26, s22] |
| GTM Proof Evidence of actual traction (customers, revenue signals, partnerships) beyond stated intentions. | 4/5 | Descope’s releases name GoFundMe, Databricks, GoodRx, Navan and Linktree as customers, its AI page names WisdomAI, Daylight Security and Cequence Security as agent customers in production, and each carries its own write-up. Upstarts Media reports 1,000-plus companies and million-dollar contracts on the day Descope published matching figures of its own, without saying how it arrived at them, which keeps this below independently corroborated scale. [s16, s19, s2, s14, s18, s4] |
| Funding Efficiency Whether funding matches go-to-market ambition, with signs of capital-efficient growth. | 3/5 | Descope has raised $88 million, all of it seed capital, and no reviewed source reports a later round, against a record that now carries over a thousand organizations in production, a federal authorization and a dated 2026 release, so the raise is broadly proportional to stage and motion with visible shipping. Revenue, margin and any growth-efficiency measure stay undisclosed, which is what leaves efficiency itself unconfirmed. [s10, s18, s16, s6] |
| Category Clarity Whether the company creates or fits a recognizable category that buyers can quickly place in their stack. | 4/5 | KuppingerCole classifies Descope as a no/low-code CIAM platform, and Descope announced a Frost & Sullivan Leader placement in a Non-Human Identity Solutions radar, so at least one analyst places it in a recognized category without the company’s coaching. Descope carries two category labels at once, customer identity and agentic identity, and the second is still forming, which holds this short of category-defining. [s20, s28, s1, s4] |
| Incumbent Defensibility How vulnerable the core value proposition is to absorption as a feature by a platform vendor. | 3/5 | Agent token issuance and OAuth scoping are capabilities an identity platform could add to suites its customers already license, and TechCrunch and Upstarts Media both place Okta, which owns Auth0, directly against Descope. The installed customer-login base and the FedRAMP High authorization are real friction. The cited record documents no further asset, so it supports friction to absorption rather than a structural moat. [s11, s18, s16, s19, s17] |
Descope sells identity plumbing to companies that would rather not build it. Its customer-stories index sorts buyers into early-stage startups building an app, hyper-growth SaaS companies adding SSO and SCIM, large enterprises leaving home-grown or legacy CIAM, and MCP developers and AI agent builders. The last group is the newest, and the homepage names customers and AI agents together in its opening line.
The agent problem is a credential problem. Descope frames the pain as agents needing short-lived, scoped credentials rather than the human logins or static keys existing systems hand out, and it says a customer should be able to raise or lower that access in real time. The framing is the vendor’s own, and no cited source quantifies how many organizations face it.
The problem carries one marker from outside the company. The Model Context Protocol published a separate authorization specification in April 2025, work Den Delimarsky describes as a collaboration among Microsoft, Okta/Auth0, Arcade.dev, Hellō, Stytch and Descope. A protocol adding an authorization layer of its own is evidence that connecting agents to tools raised a question the protocol did not already answer. [s4, s2, s26, s27, s29]
The Agentic Identity Hub splits agent identity into two halves. Inbound Apps turn a customer’s own app or API into an OAuth-compliant identity provider, so an agent can authenticate into it the way a person does. Outbound Apps handle the other direction, managing the tokens an agent needs to reach third-party services on a user’s behalf.
Descope publishes the mechanics rather than only the claim. Its documentation carries the Hub’s auth patterns, core components and agent auth SDK, and the AI page describes OAuth 2.1 with PKCE, Dynamic Client Registration and Client ID Metadata Documents, per-agent and per-tool scopes, and credentials that expire so no agent keeps standing access. Every agent action is logged and exportable to a SIEM, with each agentic identity tied to a user and a tenant.
The engineering rides on public specifications. OAuth and the Model Context Protocol authorization specification are open, so Descope ships an implementation of an interface anyone can build against. Its GitHub organization publishes backend SDKs for Python, Go, Node, PHP, Java, .NET and Ruby.
Release cadence is dated and visible. Descope’s newsroom records Agentic Identity Hub 2.5 on 9 June 2026, and the underlying platform still sells the customer-login capabilities the company started with. [s15, s12, s25, s2, s24, s6, s29]
Descope competes with the login platforms it grew up against, and it says so on its own site. Its site navigation carries comparison pages against Auth0, Ping Identity, Okta CIS, Amazon Cognito, Keycloak, Stytch, WorkOS and Frontegg. TechCrunch placed the company in that same field at launch, naming ConductorOne, Stytch, Transmit Security and Okta-backed Auth0.
The agent line does not move it out of that field. Alex Konrad wrote in Upstarts Media in September 2025 that Descope is a newer entrant against Okta, which owns Auth0, along with Palo Alto Networks and Thoma Bravo-owned Ping. Descope publishes comparison pages against Auth0 and Ping Identity, so two of those three are platforms it already meets in customer login.
One company in the same corner of the market is a customer rather than a rival in the cited record. Token Security, which sells discovery and governance for non-human identities, runs its own customer-facing MCP server with Descope as the OAuth 2.1 authorization server, and its co-founder and chief executive is quoted in Descope’s case study about scoping every tool call to the right user. [s11, s18, s14, s1]
Descope’s traction record is a named customer roster with individual write-ups. Its own releases name GoFundMe, Databricks, GoodRx, Navan and Linktree, and its customer-stories index links a separate story for each. Named executives supply the quotes, and Upstarts Media separately identifies GoodRx’s chief technology officer, Nitin Shingate, as the executive who chose Descope.
Descope’s AI page names WisdomAI, Daylight Security and Cequence Security as customers in production, and separate case studies describe Token Security and You.com running customer-facing MCP servers behind the Hub. Descope wrote all of those. The one account from outside the company is Upstarts Media’s, where You.com’s chief product officer describes connecting his agents to Google Drive and SharePoint through Descope. Both customers that article quotes, GoodRx’s chief technology officer and You.com’s chief product officer, sit on the customer advisory board Descope announced in September 2025.
The record carries two scale figures. Descope’s September 2025 funding release states over a thousand organizations in production across the Americas, EMEA and APAC. Alex Konrad’s Upstarts Media report, published the same day, gives 1,000-plus companies, hundreds of millions of end users and million-dollar contracts signed, with a customer base including Databricks, Navan and GoodRx. The article does not say how it arrived at those numbers, so the record does not establish them independently of Descope’s own release.
Third-party recognition is mostly analyst-shaped, with one buyer-voted exception. KuppingerCole’s Alejandro Leal published a Rising Star note on Descope in January 2025, and Descope announced a Leader placement in the 2025 Frost Radar for Non-Human Identity Solutions in November 2025, with Frost analyst Dolores Aleman named as the report’s lead author. [s16, s19, s4, s2, s14, s9, s10, s18, s20, s28, s31]
Descope’s founders sold a security company before this one. TechCrunch reported that Descope was founded by the members of the core team that built Demisto, the security operations platform Palo Alto Networks acquired in March 2019. Upstarts Media puts that sale above $500 million. Slavik Markovich is the co-founder and chief executive named across the company’s releases.
The team publishes security research that outlives its news cycle. Descope disclosed the nOAuth weakness in Microsoft Entra ID in June 2023, and The Hacker News returned to it in June 2025 when Semperis found nine of 104 SaaS applications still vulnerable to cross-tenant nOAuth abuse.
Standing in the protocol community is documented outside the company. Den Delimarsky’s account of the Model Context Protocol authorization specification lists Descope among the collaborators, alongside Microsoft, Okta/Auth0, Arcade.dev, Hellō and Stytch.
Depth below the founders is thinly disclosed, so the reviewed record supports the founders’ track record more than the size or seniority of the team. KuppingerCole recorded a distributed team of 65 employees in January 2025, and no later figure appears in the cited sources. Israel’s companies registrar lists Descope Technologies Israel (2022) Ltd as an active private company incorporated on 6 March 2022, with an address in Tel Aviv-Yafo. [s11, s18, s22, s26, s20, s23]
Descope holds a federal authorization alongside the usual commercial attestations. Its security page lists SOC 2 Type 2, ISO 27001 and FedRAMP High Authorized, with HIPAA, GDPR, CSA STAR Level 2, FIDO Alliance and PCI DSS among the badges it publishes. The authorization was announced in July 2025 and achieved through the Palantir FedStart program.
The federal posture is productized rather than decorative. FedRAMP High deployments appear as a Growth-tier plan feature carried into Enterprise, the pricing FAQ says the add-on costs extra and is limited to those two plans, and Descope’s FedRAMP page states that data resides in a US Gov region with TLS 1.2 or later in transit and AES-256 at rest. The same page says a typical FedRAMP environment goes live in about six to eight weeks.
The one independent registry entry is worth reading closely. The Cloud Security Alliance STAR Registry has listed Descope since 27 March 2024 and shows a CAIQ self-assessment at version 4.0.3, renewed on 23 July 2026. The registry defines Level 1 as a self-assessment, so it records what Descope says about its controls rather than an auditor’s finding. The registry also shows a STAR Level 2 attestation dated 27 March 2024 and marked deprecated, while Descope’s own security page still publishes a CSA STAR Level 2 badge. The registry notes that a deprecated assessment does not by itself indicate non-compliance, only that it was not updated within its validity period. [s5, s16, s3, s17, s21, s30]
| Company | Relationship | Note | Compare |
|---|---|---|---|
| Okta | competes with | Descope publishes comparison pages against Okta Customer Identity Solution and against Auth0, which Okta owns. TechCrunch placed the two companies in the same authentication market at Descope’s launch, and Upstarts Media names Okta among the incumbents Descope entered against. | |
| Stytch | competes with | TechCrunch named Stytch among the authentication companies Descope launched against, and Descope publishes a comparison page against it. | N/AWe scored these companies at different scopes, so the totals measure different things. |
| WorkOS | competes with | Descope publishes a comparison page against WorkOS for business-to-business authentication and single sign-on, and its FedRAMP page names WorkOS as a platform customers migrate away from. | N/AWe scored these companies at different scopes, so the totals measure different things. |
| Frontegg | competes with | Descope publishes a comparison page against Frontegg, which sells to the same business-to-business customer identity buyer. | N/AWe captured the evidence for these companies under different evidence-model versions (v1 vs v2), so the totals were scored under different conditions and are not directly comparable. |
| Ping Identity | competes with | Upstarts Media names Ping Identity, owned by Thoma Bravo, among the incumbents Descope competes against, and Descope publishes a comparison page against it. | N/AWe scored these companies at different scopes, so the totals measure different things. |
Add analyzed competitors to compare them side by side with Descope.
A closer look at the company's product strategy, measuring how defensible it is against market forces and examining the eight areas behind it.
reinforce or reposition
FedRAMP High Authorization is the part of Descope’s position that took a government-mediated process to obtain. It covers customer identity and agent identity under one authorization, and Descope sells it as a paid deployment on the Growth and Enterprise plans. Everything else is more ordinary. Customers buy software they configure and run themselves. The authorization layer builds on OAuth and on the open Model Context Protocol specification, which Descope helped write and which any implementer can use. The audit logs and tokens the product handles carry each customer’s own users and tenants, and the cited sources name no dataset Descope keeps across customers. That federal authorization is a head start with regulated buyers rather than a lock on them.
| Dimension | Score | Rationale |
|---|---|---|
| Value Delivery Does the product sell software as the product, or judgment, trust, or accountability with software as the delivery mechanism. | 1/3 | Customers buy software they configure and run: scoped token issuance, credential brokering through Outbound Apps and exportable audit logs, bought on a self-serve plan or a negotiated contract. WisdomAI’s own engineers took its MCP server authentication to production in about a day and a half, which is the customer operating the product rather than Descope accepting an outcome. |
| Switching Cost How expensive leaving is for a customer: data portability, integrations, learned workflows, network effects, regulatory data residency. | 2/3 | Descope issues the OAuth tokens a customer’s users and agents authenticate with, so leaving means re-plumbing authentication for both, which is friction of the data-history and integration kind. Upstarts Media reports GoodRx migrating millions of patient accounts onto Descope from Auth0, and no cited source sizes a departure, so the record does not establish an exit as expensive. |
| Compliance Moat Whether certifications, liability acceptance, or audit trails block an easy replacement. | 2/3 | Descope holds FedRAMP High Authorization covering customer and agentic identity, achieved through the Palantir FedStart program and sold as a paid deployment on the Growth and Enterprise plans, which is a government-mediated validation a replacement would have to repeat. The cited sources establish no mandate that requires this product class, and SOC 2 Type 2 and ISO 27001 are ordinary enterprise entry cost, so compliance matters here without blocking a substitute. |
| Problem Complexity Whether the product requires ML, optimization, real-time systems, or years of specialized expertise. | 3/3 | Issuing short-lived scoped credentials to agents, brokering per-user tokens to downstream services with refresh and revocation, and holding an auditable chain from an agent action back to the delegating user is real-time authorization engineering. Descope contributed to the Model Context Protocol authorization specification it implements, which is the specialized expertise this level names. |
| Buyer Profile Whether buyers are SMB operators, mid-market IT teams, or regulated enterprises and governments with procurement gates. | 2/3 | The buyers Descope names run from solo builders on a free tier and startups on a $249 plan to GoodRx, a healthcare company that Upstarts Media reports moved millions of patient accounts to it, so the evidenced class is mid-market software companies with some governance of their own. Regulated and government deployments are sold on the two upper plans through the FedRAMP High add-on, but the cited record names no government customer and no regulated roster wide enough to move the class. |
| Layer Whether the product is an end-user application, a platform with application features, or infrastructure other applications depend on. | 3/3 | Applications and agents authenticate through Descope rather than around it. It is the OAuth 2.1 authorization server in front of Token Security’s customer-facing MCP server, it protects the WisdomAI MCP server through the Express MCP SDK, and it issues the sessions that identify users across a customer’s AI conversations, agents and background tasks. |
| Proprietary Data, Content, or IP Whether the product accumulates datasets, content licenses, or IP that a rival cannot recreate from scratch. | 1/3 | The agent metadata the product records is tied to each customer’s own users and tenants, and the authorization layer builds on the public OAuth and Model Context Protocol specifications. The cited record evidences no vendor-retained corpus, cross-customer telemetry asset, content licence or patent, so the reviewed sources support only the ingestion of customer inputs. |
Descope sells to companies that build software other people log into. Its customer-stories index names four segments: early-stage startups building an app, hyper-growth SaaS companies adding SSO and SCIM, large enterprises leaving home-grown or legacy CIAM, and MCP developers and AI agent builders.
Descope builds the agent segment on top of the login business rather than beside it. Descope’s AI page describes the Agentic Identity Hub as layering agentic identity on an existing identity provider such as Okta or Microsoft Entra ID, and says a customer already on Descope for customer identity extends into agents with no additional configuration.
The buyer profile spans the whole price ladder. A free tier serves hobbyists and solo builders, Pro starts at $249 a month for early-stage startups, and Growth at $799 a month adds SCIM, fine-grained authorization, multi-region data residency and a HIPAA business associate agreement. FedRAMP High deployments are an extra-cost add-on that only Growth and Enterprise customers may buy. A regulated buyer appears in the named roster, GoodRx among them, while the free tier and the Hello World startup plan address the other end.
Descope splits agent identity into two documented halves. Inbound Apps turn a customer’s own app or API into an OAuth-compliant identity provider so an agent can authenticate into it. Outbound Apps handle the other direction, managing the tokens an agent needs to reach third-party services on a user’s behalf, which Descope frames as the problem of connecting many agents to many tools.
The accountability path is part of the product rather than an add-on. Every agent action is logged in the Hub and exportable to any SIEM, each agentic identity carries the delegating user, the tenant and the tool-level scopes, and credentials expire so no agent keeps standing access. Descope also supports Dynamic Client Registration and Client ID Metadata Documents for clients the customer does not control.
The technical advantage is implementation of a shared specification. Descope is named among the collaborators on the Model Context Protocol authorization specification, and its layer builds on OAuth 2.1 with PKCE. That specification is public, so anyone else can implement it. What the cited record shows is a working layer, not an exclusive one.
Descope runs a developer-first motion that starts free and ends in a sales conversation. The pricing page lets a developer start on a free tier without talking to anyone, Pro is self-serve at $249 a month, Growth carries a published $799 starting price behind a sales-assisted motion, and Enterprise is custom. A Hello World startup plan gives early-stage startups the Pro tier free for a year.
The named customer record is deep and vendor-published. Descope’s releases name GoFundMe, Databricks, GoodRx, Navan and Linktree as customers. For agents, its AI page names WisdomAI, Daylight Security and Cequence Security as customers in production, and a separate case study describes Token Security running its customer-facing MCP server with Descope as the OAuth 2.1 authorization server.
Two markers sit beside that record. KuppingerCole’s Alejandro Leal published a Rising Star note in January 2025, and Alex Konrad’s September 2025 Upstarts Media report describes million-dollar contracts signed with a customer base including Databricks, Navan and GoodRx, without saying how it arrived at those figures. Descope’s own releases use several counts of the same base. Its September 2025 release says hundreds of organizations in one section and over a thousand in production in another, and its May 2026 release says thousands.
Descope prices customer identity by monthly active user and agent activity by its own meters. The ladder runs Free, Pro at $249 a month, Growth at $799 and a custom Enterprise tier, with additional monthly active users at five cents each, additional tenants at a dollar, and additional SSO connections at fifty dollars.
The agent meters tell a buyer what Descope counts as agent usage. Machine-to-machine exchanges, monthly active consents and monthly active tokens each carry their own included allowance and overage rate, and Descope says machine-to-machine exchanges are priced separately because they involve policy enforcement and secure delegation between services and AI agents. Consents attach to Inbound Apps and MCP authentication, and tokens attach to Outbound Apps and Connections.
Agent usage is metered inside the general plans rather than sold as a separate product. The reviewed pricing page shows no Agentic Identity Hub line of its own, so a buyer adopting agents climbs the same ladder a login customer climbs. FedRAMP High deployments are the one clearly separate item, available only on Growth and Enterprise at extra cost.
Descope delivers software the customer configures and operates. A developer integrates the Hub through SDKs and documented OAuth flows, issues scoped tokens to agents, and connects external tools through Outbound Apps, with Descope acting as the OAuth authorization server. Accountability for outcomes stays with the customer once the integration is live.
The case studies show the customer’s own engineers doing the work. WisdomAI took its MCP server authentication from concept to production in roughly a day and a half using Descope’s Express MCP SDK. Daylight Security ran a self-directed proof of concept before committing, and routes Descope audit events to Datadog for its own observability.
Deployment reaches the government case as a separate environment. Descope’s FedRAMP page describes a FedRAMP High environment running alongside a customer’s commercial environment on the same platform, with data in a US Gov region, and says a typical FedRAMP environment goes live in about six to eight weeks. The same page describes a Descope engine that runs inside a customer’s own environment and reaches private backend resources over outbound-only gRPC without opening inbound ports.
Descope holds a federal authorization alongside the usual commercial attestations. Its security page lists SOC 2 Type 2, ISO 27001 and FedRAMP High Authorized, with HIPAA, GDPR, CSA STAR Level 2, FIDO Alliance and PCI DSS among the badges it publishes. The authorization was announced in July 2025 and achieved through the Palantir FedStart program.
The federal posture is productized rather than decorative. FedRAMP High deployments appear as a Growth-tier feature carried into Enterprise, the pricing FAQ says the add-on costs extra and is limited to those two plans, and the FedRAMP page states that data resides in a US Gov region with TLS 1.2 or later in transit and AES-256 at rest.
The one independent registry entry carries a wrinkle. The Cloud Security Alliance STAR Registry has listed Descope since 27 March 2024 and shows a CAIQ self-assessment at version 4.0.3, renewed on 23 July 2026, which the registry defines as a self-assessment rather than a third-party attestation. The same listing shows a STAR Level 2 attestation dated 27 March 2024 and marked deprecated, while Descope’s security page still publishes a CSA STAR Level 2 badge. The registry notes that a deprecated assessment does not by itself indicate non-compliance, only that it was not updated within its validity period. The cited sources establish no regulation that requires this product class, so the assurance package speeds an enterprise review without blocking a substitute.
Descope positions one identity engine across users, business customers, partners and agents. The homepage names all four categories of external identity, and the AI page says a customer already running Descope for customer identity extends into agents with no additional configuration.
The agent side plugs into other people’s ecosystems rather than a closed one. Descope’s AI page names FastMCP and Vercel for deploying MCP servers with built-in auth, Reflex for full-stack AI apps, Skyflow for privacy-preserving MCP servers, and Golf.dev for threat and data-leak protection. Connections offer more than fifty prebuilt templates alongside plain OAuth and API-key implementations.
The same openness bounds the position. OAuth and the Model Context Protocol authorization specification are public, and Descope is one of several named collaborators on the latter alongside Microsoft, Okta/Auth0, Arcade.dev, Hellō and Stytch. Several of those collaborators sell identity platforms of their own.
Descope’s founders are a repeat security team with a completed exit. TechCrunch reported that Descope was founded by the members of the core team that built Demisto, the security operations platform Palo Alto Networks acquired in March 2019. Upstarts Media puts that sale above $500 million.
The team’s public work is documented outside the company. Descope disclosed the nOAuth weakness in Microsoft Entra ID in June 2023, and The Hacker News covered it again in June 2025 when Semperis found nine of 104 SaaS applications still vulnerable. Den Delimarsky’s account of the Model Context Protocol authorization specification names Descope among the collaborators.
Depth below the founders is thinly disclosed, so the reviewed record supports the founders’ track record more than the size or seniority of the team. KuppingerCole recorded a distributed team of 65 employees in January 2025 and no later figure appears in the cited sources. Descope’s September 2025 release says it will use the new funding to grow its engineering, product and customer experience teams. Israel’s companies registrar lists Descope Technologies Israel (2022) Ltd as an active private company incorporated on 6 March 2022, with an address in Tel Aviv-Yafo.
| Id | Source | Tier | Accessed |
|---|---|---|---|
| f1 | Descope: homepage | official | 2026-08-23 |
| f2 | TechCrunch: article on the Descope seed round | press | 2026-08-23 |
| f3 | KuppingerCole: Rising Star research note on Descope | research | 2026-08-23 |
| f4 | Descope: press release on the seed extension and advisory board | official | 2026-08-23 |
| f5 | AI Defense Matrix Catalog entry | other | 2026-06-13 |
| f6 | AI Defense Matrix Catalog mapping | other | 2026-06-23 |
| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | Descope: homepage “Use visual workflows, SDKs, and APIs to create and customize identity journeys for your customers, partners, AI agents, and MCP servers.” | official | 2026-08-23 |
| s2 | Descope: identity provider for AI agents and MCP servers “Build secure MCP servers and AI agents with standards-based identity infrastructure. Add auth, consent management, access control, credential management, and policy controls to your AI systems with the Agentic Identity Hub.” | official | 2026-08-23 |
| s3 | Descope: pricing page and plan comparison “You must move to the Pro tier if your app hits any of the limits-more than 7500 MAUs, 10 tenants, or 3 SSO connections.” | official | 2026-08-23 |
| s4 | Descope: customer stories index “For MCP developers and AI agent builders that are seeking secure identity infrastructure” | official | 2026-08-23 |
| s5 | Descope: security and compliance page “SOC 2 Type 2 certified ISO 27001 certified FedRAMP High Authorized Multi-region data residency” | official | 2026-08-23 |
| s6 | Descope: newsroom index “Announcement | Jun 9, 2026 Descope Unveils Agentic Identity Hub 2.5” | official | 2026-08-23 |
| s7 | Descope: WisdomAI customer story “WisdomAI was founded in 2023 by a team of former Rubrik engineers, including co-founder and CEO Soham Mazumdar.” | official | 2026-08-23 |
| s8 | Descope: Cequence Security customer story “Cequence protects more than 10 billion daily API interactions and 4 billion user accounts across some of the world's largest enterprises.” | official | 2026-08-23 |
| s9 | Descope: You.com customer story “Saurabh Sharma, You.com Chief Product Officer, said:” | official | 2026-08-23 |
| s10 | Descope: press release on the seed extension and advisory board “today announced an extension and close of its seed financing round with $35M in new funding, bringing total funding up to $88M.” | official | 2026-08-23 |
| s11 | TechCrunch: article on the Descope seed round “Descope was founded last April by the members of the core team that built the security operations platform Demisto, which Palo Alto Networks acquired in March 2019.” | press | 2026-08-23 |
| s12 | Descope: Outbound Apps announcement post “Outbound Apps: Connect AI Agents With External Tools” | official | 2026-08-23 |
| s13 | Descope: Daylight Security customer story “Daylight Security was founded in late 2024 by Hagai Shapira and Eldad Rudich, cybersecurity veterans from Torq's founding team.” | official | 2026-08-23 |
| s14 | Descope: Token Security customer story “Descope acts as the OAuth 2.1 authorization server for the Token Security MCP server.” | official | 2026-08-23 |
| s15 | Descope: Inbound Apps announcement post “Inbound Apps: Make Your Apps and APIs Agent-Ready” | official | 2026-08-23 |
| s16 | Descope: press release on FedRAMP High Authorization “today announced that it has achieved Federal Risk and Authorization Management Program (FedRAMP) High Authorization.” | official | 2026-08-23 |
| s17 | Descope: FedRAMP identity platform page “Descope is a FedRAMP High Authorized customer and agentic identity platform that lets you serve US government and regulated customers without building or maintaining identity infrastructure yourself.” | official | 2026-08-23 |
| s18 | Upstarts Media: article on the $35 million Descope raise from existing investors “But with 1,000-plus companies on its software spanning hundreds of millions of end users and million-dollar contracts already signed with a customer base that includes Databricks, Navan and GoodRx, Descope's founders and investors think they've got a shot.” | press | 2026-08-23 |
| s19 | Descope: press release on the Rising in Cyber 2026 list “an independent annual list launched by Notable Capital to recognize the 30 most promising private cybersecurity startups.” | official | 2026-08-23 |
| s20 | KuppingerCole: Rising Star research note on Descope “Descope, founded in 2022 and based in Los Altos, California, is a cloud-based no/low-code CIAM platform specializing in passwordless authentication. Backed by $53 million in seed funding, the company has a distributed team of 65 employees and a geographically diverse customer base.” | research | 2026-08-23 |
| s21 | Cloud Security Alliance: STAR Registry listing for Descope “Listed Since: 03/27/2024 STAR Level 1 Cloud Controls Matrix CAIQ Self-assessment v4.0.3” | research | 2026-08-23 |
| s22 | The Hacker News: article on the nOAuth weakness in Microsoft Entra ID “Identity security company Semperis, in an analysis of 104 SaaS applications, found nine of them to be vulnerable to Entra ID cross-tenant nOAuth abuse.” | press | 2026-08-23 |
| s23 | Israel Registrar of Companies: record for company 516574746 “"DESCOPE TECHNOLOGIES ISRAEL (2022) LTD","סוג תאגיד":"ישראלית חברה פרטית","סטטוס חברה":"פעילה","תאור חברה":"","מטרת החברה":"לעסוק בכל עיסוק חוקי","תאריך התאגדות":"06/03/2022"” | regulatory | 2026-08-23 |
| s24 | Descope: GitHub organization page “Beyond traditional auth, Descope also powers AI & MCP use cases, making it simple to add authentication and authorization for AI agents and services.” | official | 2026-08-23 |
| s25 | Descope: Agentic Identity Hub documentation “Agentic Identity Hub | Descope Documentation” | official | 2026-08-23 |
| s26 | den.dev: post on the new MCP authorization specification “This was a massive collaboration with folks at Microsoft, Okta/Auth0, Arcade.dev, Hellō, Stytch, Descope, and many , MANY , more.” | research | 2026-08-23 |
| s27 | Model Context Protocol: authorization specification, revision 2025-06-18 “This authorization mechanism is based on established specifications listed below, but implements a selected subset of their features to ensure security and interoperability while maintaining simplicity:” | research | 2026-08-23 |
| s28 | Descope: press release on the 2025 Frost Radar for Non-Human Identity Solutions “today announced that it has been recognized as a Leader in the 2025 Frost Radar” | official | 2026-08-23 |
| s29 | Descope: Agentic Identity Hub questions and ecosystem partners “If you're already using Descope for customer identity, the Agentic Identity Hub extends natively, with no additional configuration needed, allowing your customers' agent to connect securely to your MCP servers and APIs.” | official | 2026-08-23 |
| s30 | Descope: pricing plan cards and unit definitions “Pro Starts at $249 /mo For early-stage startups. Buy” | official | 2026-08-23 |
| s31 | Descope: homepage customer testimonials “Arnie Katz, Chief Product and Technology Officer” | official | 2026-08-23 |
| Id | Source | Tier | Accessed |
|---|---|---|---|
| s1 | Descope: homepage “Use visual workflows, SDKs, and APIs to create and customize identity journeys for your customers, partners, AI agents, and MCP servers.” | official | 2026-08-23 |
| s2 | Descope: identity provider for AI agents and MCP servers “Build secure MCP servers and AI agents with standards-based identity infrastructure. Add auth, consent management, access control, credential management, and policy controls to your AI systems with the Agentic Identity Hub.” | official | 2026-08-23 |
| s3 | Descope: pricing page and plan comparison “You must move to the Pro tier if your app hits any of the limits-more than 7500 MAUs, 10 tenants, or 3 SSO connections.” | official | 2026-08-23 |
| s4 | Descope: customer stories index “For MCP developers and AI agent builders that are seeking secure identity infrastructure” | official | 2026-08-23 |
| s5 | Descope: security and compliance page “SOC 2 Type 2 certified ISO 27001 certified FedRAMP High Authorized Multi-region data residency” | official | 2026-08-23 |
| s6 | Descope: newsroom index “Announcement | Jun 9, 2026 Descope Unveils Agentic Identity Hub 2.5” | official | 2026-08-23 |
| s7 | Descope: WisdomAI customer story “WisdomAI was founded in 2023 by a team of former Rubrik engineers, including co-founder and CEO Soham Mazumdar.” | official | 2026-08-23 |
| s8 | Descope: Cequence Security customer story “Cequence protects more than 10 billion daily API interactions and 4 billion user accounts across some of the world's largest enterprises.” | official | 2026-08-23 |
| s9 | Descope: You.com customer story “Saurabh Sharma, You.com Chief Product Officer, said:” | official | 2026-08-23 |
| s10 | Descope: press release on the seed extension and advisory board “today announced an extension and close of its seed financing round with $35M in new funding, bringing total funding up to $88M.” | official | 2026-08-23 |
| s11 | TechCrunch: article on the Descope seed round “Descope was founded last April by the members of the core team that built the security operations platform Demisto, which Palo Alto Networks acquired in March 2019.” | press | 2026-08-23 |
| s12 | Descope: Outbound Apps announcement post “Outbound Apps: Connect AI Agents With External Tools” | official | 2026-08-23 |
| s13 | Descope: Daylight Security customer story “Daylight Security was founded in late 2024 by Hagai Shapira and Eldad Rudich, cybersecurity veterans from Torq's founding team.” | official | 2026-08-23 |
| s14 | Descope: Token Security customer story “Descope acts as the OAuth 2.1 authorization server for the Token Security MCP server.” | official | 2026-08-23 |
| s15 | Descope: Inbound Apps announcement post “Inbound Apps: Make Your Apps and APIs Agent-Ready” | official | 2026-08-23 |
| s16 | Descope: press release on FedRAMP High Authorization “today announced that it has achieved Federal Risk and Authorization Management Program (FedRAMP) High Authorization.” | official | 2026-08-23 |
| s17 | Descope: FedRAMP identity platform page “Descope is a FedRAMP High Authorized customer and agentic identity platform that lets you serve US government and regulated customers without building or maintaining identity infrastructure yourself.” | official | 2026-08-23 |
| s18 | Upstarts Media: article on the $35 million Descope raise from existing investors “But with 1,000-plus companies on its software spanning hundreds of millions of end users and million-dollar contracts already signed with a customer base that includes Databricks, Navan and GoodRx, Descope's founders and investors think they've got a shot.” | press | 2026-08-23 |
| s19 | Descope: press release on the Rising in Cyber 2026 list “an independent annual list launched by Notable Capital to recognize the 30 most promising private cybersecurity startups.” | official | 2026-08-23 |
| s20 | KuppingerCole: Rising Star research note on Descope “Descope, founded in 2022 and based in Los Altos, California, is a cloud-based no/low-code CIAM platform specializing in passwordless authentication. Backed by $53 million in seed funding, the company has a distributed team of 65 employees and a geographically diverse customer base.” | research | 2026-08-23 |
| s21 | Cloud Security Alliance: STAR Registry listing for Descope “Listed Since: 03/27/2024 STAR Level 1 Cloud Controls Matrix CAIQ Self-assessment v4.0.3” | research | 2026-08-23 |
| s22 | The Hacker News: article on the nOAuth weakness in Microsoft Entra ID “Identity security company Semperis, in an analysis of 104 SaaS applications, found nine of them to be vulnerable to Entra ID cross-tenant nOAuth abuse.” | press | 2026-08-23 |
| s23 | Israel Registrar of Companies: record for company 516574746 “"DESCOPE TECHNOLOGIES ISRAEL (2022) LTD","סוג תאגיד":"ישראלית חברה פרטית","סטטוס חברה":"פעילה","תאור חברה":"","מטרת החברה":"לעסוק בכל עיסוק חוקי","תאריך התאגדות":"06/03/2022"” | regulatory | 2026-08-23 |
| s24 | Descope: GitHub organization page “Beyond traditional auth, Descope also powers AI & MCP use cases, making it simple to add authentication and authorization for AI agents and services.” | official | 2026-08-23 |
| s25 | Descope: Agentic Identity Hub documentation “Agentic Identity Hub | Descope Documentation” | official | 2026-08-23 |
| s26 | den.dev: post on the new MCP authorization specification “This was a massive collaboration with folks at Microsoft, Okta/Auth0, Arcade.dev, Hellō, Stytch, Descope, and many , MANY , more.” | research | 2026-08-23 |
| s27 | Model Context Protocol: authorization specification, revision 2025-06-18 “This authorization mechanism is based on established specifications listed below, but implements a selected subset of their features to ensure security and interoperability while maintaining simplicity:” | research | 2026-08-23 |
| s28 | Descope: press release on the 2025 Frost Radar for Non-Human Identity Solutions “today announced that it has been recognized as a Leader in the 2025 Frost Radar” | official | 2026-08-23 |
| s29 | Descope: Agentic Identity Hub questions and ecosystem partners “If you're already using Descope for customer identity, the Agentic Identity Hub extends natively, with no additional configuration needed, allowing your customers' agent to connect securely to your MCP servers and APIs.” | official | 2026-08-23 |
| s30 | Descope: pricing plan cards and unit definitions “Pro Starts at $249 /mo For early-stage startups. Buy” | official | 2026-08-23 |
| s31 | Descope: homepage customer testimonials “Arnie Katz, Chief Product and Technology Officer” | official | 2026-08-23 |
This site is an experimental research aid created by Zeltser Security Corp. All its data gathering and analysis was performed autonomously without human review, and it can contain errors of fact, interpretation, and judgment that a human reviewer might catch.
The analyses are statements of opinion, not statements of fact. Machine analysis produced the scores, summaries, and matrix placements by weighing the public sources each page cites, and reasonable people can weigh the same sources differently. Where a page states a fact, it cites the public source and the date it was checked, and the statement is only as accurate as that source. Unless a profile expressly says otherwise, the analysis involves no hands-on testing and no independent validation of any company's products or services.
Nothing here is professional, security, legal, financial, investment, or purchasing advice, and nothing here is a recommendation to invest in, do business with, or avoid any company. Inclusion of a company is not an endorsement, and absence of a company is not a judgment about it. Reading this site creates no advisory or client relationship. Verify any detail you plan to act on against the vendor's current materials.
The content is provided "as is" and "as available," with all warranties disclaimed, express or implied, including merchantability, fitness for a particular purpose, accuracy, and non-infringement. No entry is warranted to be complete, current, or correct. Companies change, vendors update their claims, sources can be wrong, and automated analysis can misread them.
To the fullest extent permitted by law, the operator, Zeltser Security Corp, is not liable for any damages that arise from using this site or relying on its content, including direct, indirect, incidental, special, and consequential damages and lost profits, even if advised that such damages were possible. If you are dissatisfied with the site or disagree with these terms, your remedy is to stop using it.
Entries link to vendor pages, press coverage, and other external sites that Zeltser Security Corp does not control and is not responsible for. A link is not an affiliation with the destination or an endorsement of it. Product and company names and trademarks are the property of their owners, used here nominatively to identify the companies described. Short quotations from cited sources appear for identification and commentary.
Use, quotation, automated retrieval, and redistribution of the content are governed by the Terms of Use at cybercompanyprofiles.com/terms, which permit personal and internal business use with attribution and prohibit republication and resale.