IBM has expanded watsonx Orchestrate to manage agents built on other technology platforms and has previewed an Agent Identity capability intended to give each agent a distinct, verifiable identity.
According to IBM, the AI Gateway can now discover and import agents from Microsoft Foundry and Google’s Gemini Enterprise Agent Platform, extending earlier support for Amazon Bedrock. The company says Agent Identity can connect an agent to the identity provider already used by an enterprise, separating the agent’s credentials and permissions from those of its developer or human operator.
That separation addresses a practical control gap. If several agents share a service account, security teams cannot reliably attribute actions, revoke one agent or enforce least privilege at the level where work is actually performed. A durable agent identity should make authentication, authorisation and audit trails more precise.
Identity is not sufficient on its own. Enterprises still need to bind each identity to an approved purpose, tool set, data boundary and accountable owner. They also need evidence of what an agent attempted, what it completed and which policy checks ran before an action was allowed.
IBM also describes custom runtime evaluation using an organisation’s preferred model as a judge, with configurable sampling. That can broaden operational oversight, although model-based evaluation itself needs calibration, human escalation and auditability.
