Opal Security

opal zero ai agent access permissions a turret drum with a low domed roof

Opal Zero: A Smart Fix for Risky AI Agent Access Permissions

Opal Security says Opal Zero reaches general availability at the end of September 2026, built on a three-part definition of least privilege for agents: grants that expire, an owner for every agent, and a decision made at the point of access rather than at provisioning time. Opal Labs reports that more than 96 percent of non-human identities have no recorded purpose and only 10 percent of their access was reviewed in the past year. This article covers the Paladin reasoning model, the Risk Center, how Gateway Sync enforces without adding a proxy, what the design partners at Faire, Databricks, Elastic and Superhuman actually said, the $30,000 launch price and the claims that remain unproven.

Read more
claude and aws integrations opal late september a keystone wedge block set into the top of a low arch

Claude and AWS: Opal’s Powerful Late-September Integration Launch

Opal Security says Opal Zero reaches general availability at the end of September 2026, and the connector list is the story. It ingests agent identities from Anthropic, AWS Bedrock, OpenAI, Cursor, Okta and Entra, hooks the Claude Compliance API, admin controls for Claude Code and Enterprise-Managed Authorization for MCP connectors, then enforces decisions inside AWS Bedrock AgentCore Gateway and Databricks Unity Gateway rather than adding a proxy of its own. This article covers what the integrations actually do, how Gateway Sync differs from the first generation of agent-security tooling, the Opal Labs research behind the launch, the design partners, the $30,000 launch price and the gaps worth watching.

Read more
CHAT