# Delegation depth

How many on-behalf-of hops a credential sits from its original human authorizer. Highflame enforces depth as a first-class policy primitive.

Learn more: [Agent Authorization](/content/learn/ai-agent-authorization/index.html)

Part of [the Agent Control Fabric](/content/platform/index.html): Highflame's identity, policy, and enforcement substrate for AI agents.

## Keep exploring the glossary.

**DPoP**  
Demonstrating Proof-of-Possession (RFC 9449): binds a token to a proof key so a stolen token is inert without it.  
Read → [Link](/content/glossary/dpop/index.html)  
**Enterprise Managed Authorization (EMA)**  
An MCP extension that lets a company's identity provider decide, through corporate SSO, which MCP servers an agent may connect to. It governs admission, not what the agent does once inside.  
Read → [Link](/content/glossary/ema/index.html)  
**Guardrails**  
Inline detection and enforcement on an agent's prompts, tool calls, and responses: blocking unsafe actions in real time.  
Read → [Link](/content/glossary/guardrails/index.html)  
**ID-JAG**  
Identity Assertion JWT Authorization Grant. After SSO, the identity provider evaluates policy and issues an ID-JAG, which an MCP client exchanges for a server access token: the mechanism behind Enterprise Managed Authorization.  
Read → [Link](/content/glossary/id-jag/index.html)  
**Identity provider (IdP)**  
The system that issues and manages identities. Highflame extends your existing IdP to agents rather than replacing it.  
Read → [Link](/content/glossary/idp/index.html)  
**Inline enforcement**  
Evaluating and deciding on an action before it executes, out-of-band, rather than detecting it after the fact. Fail posture (open or closed) is set per surface.  
Read → [Link](/content/glossary/inline-enforcement/index.html)
