Identity propagation for AI Agents: From user to tool
Agents are only useful when they can take real actions such as calling APIs or querying enterprise systems. The challenge is not executing the call itself, but ensuring the agent acts in the correct user context so access remains secure, auditable, and consistent with enterprise authorization policies.
In this session, we explain how identity propagation works for interactive agents. We walk through practical examples, including an agent using OAuth identity passthrough to authenticate with MCP-enabled tools, as well as an agent using identity passthrough with a Fabric Data Agent to query data stored in Microsoft Fabric. By combining identity-aware tool execution with row-level security in Fabric, the agent can access data using the end user’s identity rather than a shared application identity.
Together, we explore how to build agents that ensure responses are filtered according to existing permissions and help prevent identity manipulation.
About the speakers
Arne De Proft
Talk to me for GenAI Apps and cloud-native applications on Azure!
Laura Verghote
Laura is a Solution Engineer for AI and Applications at Microsoft. She helps organizations turn AI use cases into real, production‑ready solutions on Azure. Before joining Microsoft, she led the AI technology strategy for Public Sector Industries in Europe at AWS. Drawing on her background in cloud architecture, technical training and AI, Laura frequently takes the stage at tech events worldwide, where she breaks down modern AI with clarity and enthusiasm.
