Amp Integration

Amp is an agentic AI coding tool developed by Sourcegraph that operates in your terminal and editor extensions, enabling developers to execute complex multi-file edits, plan architecture, and automate development workflows using frontier AI models.

Amp logo

Amp

Benefits with Ory + Amp Integration

Ory integrates with Sourcegraph's Amp to provide security guardrails for developers building and running AI agents. Ory's harness hook executes identity and credential checks for every session and tool call, enforcing fine-grained authorization to permit or deny actions while logging all activity for complete audit trails. Teams can utilize Observe mode to monitor tool usage or Enforce mode to strictly restrict agents to authorized permissions.

The fastest way to get started with Ory Agent Security is to sign up for the Ory Network. Installing an Ory Agent Security plugin for your AI coding agent takes seconds. You simply copy and paste the provided command in the harness's project directory.

npx -y -p @ory/amp ory-amp install
View on npm (opens in a new tab)

Use Cases

Agent IAM

Secures Amp sessions, multi-file edits, and tool execution by enforcing fine-grained authorization, identity checks, and complete audit logging.

Explore Agent IAM

CIAM

Accelerates embedding customer authentication and identity management into consumer-facing applications directly within Amp using Ory best practices.

Explore CIAM

B2B IAM

Streamlines building enterprise SSO, multi-tenant organization structures, and role-based access control into business software, scaling seamlessly with business growth.

Explore B2B IAM

Core Functionality

  1. Identity

    Verifies developers and Amp agent identities before session initiation across your ecosystem through a unified control plane.

  2. Authorization

    Enforces fine-grained, policy-based access control for every Amp tool execution and action.

  3. Shell

    Intercepts and secures terminal-level shell commands and editor execution within Amp.

  4. Audit

    Logs complete audit trails for all session activity, tool invocations, and API calls.

  5. Rollout

    Supports seamless deployment with Observe mode for monitoring agent behavior and Enforce mode for strict permission enforcement.

  6. Security Control

    Provides vendor-agnostic governance across all AI tools, complete with instant token revocation to immediately cut off compromised sessions.