RFC 6749, the OAuth 2.0 authorization framework
Published in October 2012, this is the grammar every agent authority scheme still speaks. It lets a third party application obtain limited access to a service on behalf of a resource owner, by arranging an approval interaction rather than handing over the owner's password. Agent authorization in 2026 is mostly this framework with narrower audiences.
The verdict
Verified
The document exists. The ledger fetched it at its publisher and quotes it.
Key facts
What the sources say
- Record ID
- AAL-2026-0007
- Kind
- Standard or protocol
- Jurisdiction
- Global
- Last verified
- Added
- The framework enables a third party application to obtain limited access to an HTTP service on behalf of a resource owner, or on its own behalf.
- It separates the resource owner, the client, the authorization server and the resource server, which is the separation every agent scheme reuses.
- It is a framework rather than a protocol, which is why later documents such as RFC 8707 and the OAuth 2.1 draft exist to close its options.
- The client credentials grant it defines is the path most autonomous agents take when no human is present.
Dimension by dimension
2 dimensions, each one stated, silent or open
Authorization, Delegation. Stated means the document you can open below says it; silent means the ledger read the document and it does not.
- AuthorizationStated
- Access is a scoped token issued by an authorization server, never the resource owner's own credential.RFC Editor, RFC 6749, primary source, 1 October 2012.
- DelegationSilent
- A resource owner approving a client is delegation, but the framework models one hop only and says nothing about an agent that calls another agent.RFC Editor, RFC 6749, primary source, 1 October 2012.
What it changes
For a team deploying an agent
Your agent almost certainly holds an OAuth token. That means the questions an auditor will ask are old ones: which grant, which scopes, which audience, how long lived, and who can revoke it. If your team cannot answer those for the agent, the agent has no authorization story at all.
Sources
What this record was verified against
- RFC Editor, RFC 6749Primary · 1 October 2012
Related
Records that sit beside this one
RFC 8707, resource indicators for OAuth 2.0
Global · verified 15 September 2026
The document defines request parameters that let a client signal to an authorization server the identity of the protected resources it is requesting access to.
The OAuth 2.1 Internet-Draft
Global · verified 15 September 2026
The draft states that it replaces and obsoletes the OAuth 2.0 Authorization Framework described in RFC 6749 and the Bearer Token Usage in RFC 6750.
Model Context Protocol authorization
Global · verified 15 September 2026
Authorization servers must implement OAuth 2.1 with appropriate security measures for both confidential and public clients.
Does a spending limit belong to the agent or to the principal
Global · verified 15 September 2026
The Visa Trusted Agent Protocol addresses recognising an approved agent and its intent, and does not itself carry a spending ceiling.
How does a sub agent's authority attenuate
Global · verified 15 September 2026
RFC 8693 lets a token record that one party is acting for another, but does not require the exchanged token to be narrower.
Can an agent hold a credential of its own
Global · verified 15 September 2026
NIST SP 800-63-4 states that for that publication, person refers only to natural persons.
Cite this record
Free to reuse under CC BY 4.0, with attribution. The record ID AAL-2026-0007 is permanent and is never reused.
- In a sentence
- According to the GAGE Agent Authority Ledger (as of 15 September 2026), rfc 6749, the oauth 2.0 authorization framework.
- APA
- GAGE (Global Academy of Generative-AI Education). (2026). RFC 6749, the OAuth 2.0 authorization framework. Agent Authority Ledger. Retrieved 15 September 2026, from https://www.gage.academy/tools/agent-authority-ledger/records/AAL-2026-0007-rfc-6749-oauth-2-0-authorization-framework
- MLA
- "RFC 6749, the OAuth 2.0 authorization framework." Agent Authority Ledger, GAGE (Global Academy of Generative-AI Education), 15 September 2026, https://www.gage.academy/tools/agent-authority-ledger/records/AAL-2026-0007-rfc-6749-oauth-2-0-authorization-framework.
- Chicago
- GAGE (Global Academy of Generative-AI Education). "RFC 6749, the OAuth 2.0 authorization framework." Agent Authority Ledger. Last modified 15 September 2026. https://www.gage.academy/tools/agent-authority-ledger/records/AAL-2026-0007-rfc-6749-oauth-2-0-authorization-framework.
- Permalink
- https://www.gage.academy/tools/agent-authority-ledger/records/AAL-2026-0007-rfc-6749-oauth-2-0-authorization-framework
Last updated . Every record re verified . The ledger is checked weekly, every Monday, and the same day for any NIST, IETF or MCP publication.
Back to the full ledger, or every record for Global and every standard or protocol record.
GAGE briefings tell you which AI regulation deadlines are coming, what they actually require of you, and when a program opens.