---
title: "Identity provider (IdP) · Highflame Glossary"
description: "The system that issues and manages identities. Highflame extends your existing IdP to agents rather than replacing it."
doc_version: "0.1.0"
last_updated: "2026-07-25T03:14:58.002Z"
canonical: "https://www.highflame.com/glossary/idp"
---

[Home](/index.md)·[Glossary](/glossary.md)·Identity provider (IdP)

# Identity provider (IdP)

The system that issues and manages identities. Highflame extends your existing IdP to agents rather than replacing it.

Learn more: [Enterprise Managed Authorization](/learn/enterprise-managed-authorization.md)

Part of [the Agent Control Fabric](/platform.md): Highflame's identity, policy, and enforcement substrate for AI agents.

[Book a demo](/contact.md) [All terms](/glossary.md)

## Keep exploring the glossary.

[

### Inline enforcement

Evaluating and deciding on an action before it executes, out-of-band, rather than detecting it after the fact. Fail posture (open or closed) is set per surface.

Read →](/glossary/inline-enforcement.md)[

### Just-in-time (JIT) access

Issuing short-lived, task-scoped credentials on demand that expire when the work is done: eliminating standing access there's nothing to leak or over-grant.

Read →](/glossary/jit-access.md)[

### LLM firewall

A checkpoint in front of a model that inspects prompts and responses for injection, sensitive data, and unsafe content. It guards the model's edge, not the agent's actions behind it.

Read →](/glossary/llm-firewall.md)[

### LLM security tools

The stack that protects LLM applications: input/output filters, firewalls and gateways, runtime enforcement, red teaming, and observability. No single tool covers all five.

Read →](/glossary/llm-security-tools.md)[

### MCP (Model Context Protocol)

An open protocol that connects agents to external tools and data. Powerful for capability. But every connection is a new access path that has to be governed.

Read →](/glossary/mcp.md)[

### MCP Gateway

A governed checkpoint every tool connection passes through (authenticated, policy-checked, and logged) so credentials stay central and unapproved servers can't connect.

Read →](/glossary/mcp-gateway.md)

## Sitemap

Full site map: [/sitemap.md](https://www.highflame.com/sitemap.md). Machine index: [/sitemap-index.xml](https://www.highflame.com/sitemap-index.xml).
