

Build Secure Agents with Auth and FGA
Building agent apps for real users quickly creates a familiar challenge: authentication is only the first step. Once your app serves multiple teams, workspaces, or customers, you need to control exactly which agents, threads, tools, and data each user can access. That’s where fine-grained authorization becomes essential, especially for shared and multi-tenant products.
In this workshop, you’ll see how to combine auth and FGA to secure a practical agent app. You’ll identify the user, model permissions around real resources, and enforce access rules so the right people can use the right parts of your app without exposing everything to everyone.
You’ll learn:
How auth establishes who is signed in
How FGA adds resource-level permission checks
How to model shared and multi-tenant access across workspaces and customers
How to apply those checks to agents, threads, tools, and other app resources
Join us for a live demo, real code, and Q&A.
Hosted by
Alex Booker, Developer Experience, Mastra
Recording and code examples will be available to everyone who registers.