| Example | Description |
|---|---|
| JWT authentication with asymmetric keys | Use an RS256 private key only in the token issuer and give AgentOS only the public verification key. |
| Bring your own WorkOS token issuer | Configure AgentOS to verify a WorkOS JWKS, read scopes from the permissions claim, and enforce the token audience. |
Asymmetric
Asymmetric
RS256 AgentOS RBAC examples for generated keys, custom scope mappings, and WorkOS-issued tokens.
Current v3.0.4 examples: