SPIFFE workload identity
SPIFFE is a set of open standards for identifying software rather than people. A workload receives a short lived cryptographic identity document through a simple interface and uses it to authenticate to other workloads. It is the existing answer to non human identity, and NIST's concept paper names it among the standards agents might reuse.
The verdict
Verified
The document exists. The ledger fetched it at its publisher and quotes it.
Key facts
What the sources say
- Record ID
- AAL-2026-0018
- Kind
- Standard or protocol
- Jurisdiction
- Global
- Last verified
- Added
- SPIFFE is described by its maintainers as a set of open source standards for securely identifying software systems in dynamic and heterogeneous environments.
- Workloads receive short lived cryptographic identity documents, called SVIDs, through a simple interface.
- Identity is proven with mutual TLS or signed tokens rather than with network position or a shared secret.
- Short lifetimes are the revocation mechanism in practice: an identity that is not renewed stops working.
Dimension by dimension
3 dimensions, each one stated, silent or open
Identity, Revocation, Authorization. Stated means the document you can open below says it; silent means the ledger read the document and it does not.
- IdentityStated
- A running workload gets a verifiable name of its own, which is the closest deployed analogue to an agent identity.SPIFFE documentation, primary source, 15 September 2026.
- RevocationStated
- Documents are short lived and continuously reissued, so withdrawal is expiry rather than an explicit revocation call.SPIFFE documentation, primary source, 15 September 2026.
- AuthorizationSilent
- SPIFFE names the workload. What that name is permitted to do is decided by the policy system consuming it.SPIFFE documentation, primary source, 15 September 2026.
What it changes
For a team deploying an agent
If your agents run as workloads you control, you may already have the identity layer and not be using it. Giving each agent its own SPIFFE identity rather than a shared service account is the single change that makes agent activity attributable in existing logs.
Sources
What this record was verified against
- SPIFFE documentationPrimary · 15 September 2026
Related
Records that sit beside this one
NIST concept paper on software and AI agent identity and authorization
United States · verified 15 September 2026
The paper is titled Accelerating the Adoption of Software and Artificial Intelligence Agent Identity and Authorization.
NIST SP 800-63-4 Digital Identity Guidelines
United States · verified 15 September 2026
The guidelines apply to all online services for which some level of assurance in a digital identity is required, regardless of the constituency.
How does a sub agent's authority attenuate
Global · verified 15 September 2026
RFC 8693 lets a token record that one party is acting for another, but does not require the exchanged token to be narrower.
Does a spending limit belong to the agent or to the principal
Global · verified 15 September 2026
The Visa Trusted Agent Protocol addresses recognising an approved agent and its intent, and does not itself carry a spending ceiling.
Can an agent hold a credential of its own
Global · verified 15 September 2026
NIST SP 800-63-4 states that for that publication, person refers only to natural persons.
Who is liable when a delegated agent exceeds its mandate
Global · verified 15 September 2026
The EU AI Act allocates duties to providers and deployers, and does not address an agent acting beyond its instructions.
Cite this record
Free to reuse under CC BY 4.0, with attribution. The record ID AAL-2026-0018 is permanent and is never reused.
- In a sentence
- According to the GAGE Agent Authority Ledger (as of 15 September 2026), spiffe workload identity.
- APA
- GAGE (Global Academy of Generative-AI Education). (2026). SPIFFE workload identity. Agent Authority Ledger. Retrieved 15 September 2026, from https://www.gage.academy/tools/agent-authority-ledger/records/AAL-2026-0018-spiffe-workload-identity
- MLA
- "SPIFFE workload identity." Agent Authority Ledger, GAGE (Global Academy of Generative-AI Education), 15 September 2026, https://www.gage.academy/tools/agent-authority-ledger/records/AAL-2026-0018-spiffe-workload-identity.
- Chicago
- GAGE (Global Academy of Generative-AI Education). "SPIFFE workload identity." Agent Authority Ledger. Last modified 15 September 2026. https://www.gage.academy/tools/agent-authority-ledger/records/AAL-2026-0018-spiffe-workload-identity.
- Permalink
- https://www.gage.academy/tools/agent-authority-ledger/records/AAL-2026-0018-spiffe-workload-identity
Last updated . Every record re verified . The ledger is checked weekly, every Monday, and the same day for any NIST, IETF or MCP publication.
Back to the full ledger, or every record for Global and every standard or protocol record.
GAGE briefings tell you which AI regulation deadlines are coming, what they actually require of you, and when a program opens.