Turn emails into revenue with Brew. No credit card, free credits to try.
descope.com · newsletter
Explore this email design and adapt it to your own brand. Review the copy, links, and offer before sending.
Auth Thoughts July 2026
Cross-App Access support, token enhancements, and other product updates
Auth Thoughts is a monthly newsletter produced by Team Descope, the collective consciousness of everyone at Descope. Read on for product updates, tutorials, and a monthly roundup from the world of customer and agentic identity.
Descope changelog
To paraphrase a quote from Dory the forgetful fish: “Just keep shipping”. Here are some of the latest product updates from Descope:
🏆 ID-JAG / Cross-App Access support
Descopers can now accept and validate workforce-IdP-issued ID-JAGs and issue Descope access tokens for Descope-protected resources.
For issuing ID-JAGs, Descope becomes the IdP for your agents and mints ID-JAGs so they can reach third-party MCP servers and APIs.
For validating ID-JAGs, your customers can connect their workforce IdPs to your MCP server and Descope provides an access token.
Learn more →
⚙️ Token enhancements
Token Introspection Endpoint: Descopers can now use a standard OAuth token introspection endpoint to validate a token and its claims in real time.
Downscoped Tokens: Descopers can now optionally return tokens with different (downscoped) scopes than the client requested, which is useful for MCP clients that request all scopes.
Catch up on other product updates in our changelog. Have questions? Join our community and visit the #ask-a-descoper channel.
Developer central
Looking for help on how to integrate Descope for a particular framework? Our DevRel team and developer community have you covered.
Build an ecommerce UCP server with identity linking
This tutorial builds a UCP-compliant MCP server with Descope as the identity layer.
Read more →
CIBA for AI agents with Claude
This tutorial wires up a Claude Code agent with CIBA using Claude Code Hooks and the Descope Agentic Identity Hub.
Read more →
Securing a BigQuery MCP server with MCP Tunnels
This blog covers how we built an internal MCP server that lets our CS team get data from BigQuery. This server is protected by the Descope Agentic Identity Hub and MCP Tunnels.
Read more →
Customer spotlight: Elementor
Elementor Descope Case Study Thumbnail
Elementor is the world’s most popular WordPress website creation platform. Their top requirement from an external auth provider: the login experience needed to match the existing Elementor design exactly.
Descope helped them:
✅ Design user journeys visually without engineering overhead
✅ Match existing designs using Bring Your Own Screen (BYOS)
✅ Sync internal databases using HTTP connectors
Read their story →
(A)Identity Day
AIdentity Day Thumbnail 16_9 Date
Most organisations are unprepared for the challenges that come with agents entering production: agent sprawl, identity anti-patterns, and no clear framework for deploying agents safely at scale.
Join IAM Experts, Descope, SAP LeanIX, and Teleport in London for a day of education, lessons from the field, and practical insights to get your organisation agent-ready.
RSVP →
Helpful resources
Thanks for reading Auth Thoughts! If you’d like any other updates from the world of identity and authentication included in this newsletter, please let us know by replying to this email.
Here are some other links to have handy:
🖥️ Sign up for a Descope Free Forever account
✍️ Developer blogs, if you’re looking for tutorials with specific frameworks
📚 Documentation, for Descope setup instructions, SDK code snippets, and more
See you next month!
Descope_RGB logo-ForLightBackground_300ppi
github-logo-grey
linkedin-icon-grey
x-grey-icon
instagram-logo
slack-logo
youtube-logo
Descope, 20660 Stevens Creek Blvd. #245, Cupertino, CA, 95014
Manage Preferences Site Privacy