AI Governance Institute
← All news

Capability-Scoped Tokens

Capability-scoped tokens are authentication credentials that grant access only to specific functions or resources rather than providing broad permissions across a system. In AI governance contexts, they limit the potential damage from token compromise by restricting what an AI system or service can do, reducing exposure if credentials are leaked or stolen. Organizations use capability-scoped tokens to enforce the principle of least privilege, ensuring that language models, APIs, and automated workflows operate only within their intended boundaries.

1 item