Wed, 5 Aug 2026

Agentic fabric and human fabric combo to close identity blind spots

SailPoint has unveiled a unified identity security solution aimed at the growing overlap between human, non-human and AI agent identities, positioning the launch as a response to what it describes as an identity-driven vulnerability crisis in the AI era.

The company said the new offering combines SailPoint Agentic Fabric, now generally available, with SailPoint Human Fabric to create a continuous loop for discovering, governing and protecting digital identities.

Identity control for AI era

According to a SailPoint study, 97% of AI agents have access to sensitive data, while only 21% of organisations are highly confident in their ability to manage AI agent security risks, based on its recent research. The company said these gaps are widening because traditional approaches rely on static audits or siloed visibility, rather than active, real-time protection across the full identity estate.

Chandra Gnanasambandam, EVP of product and chief technology officer at SailPoint, said the launch marks “a fundamental shift” in how organisations should handle identity vulnerabilities in an AI-driven world.

He added that SailPoint is moving the industry “beyond static compliance and into an active, continuous security loop” through discovery, access governance and real-time risk remediation.

Human and machine fabric

SailPoint said Human Fabric is the evolution of its Identity Security Cloud and is now delivered exclusively as part of the unified solution. The product is designed to move human identity governance away from periodic audit cycles and towards continuous monitoring, with features including automatic discovery of privilege creep, real-time identity context for security operations, and just-in-time provisioning for administrative access.

Related:  Automate human risk management for better security

On the machine side, Agentic Fabric is being offered both as a standalone product and as a core capability within the unified solution.

SailPoint said it uses endpoint and browser sensors to expose hidden AI agents, credentials and Model Context Protocol servers, then applies controls such as inline prompt security, a central kill-switch for rogue agents and automated ownership rules for machine accounts.

Business context

For enterprises, the release underscores how identity governance is shifting from a people-only discipline to one that must also account for software agents and machine identities. SailPoint’s positioning suggests that security leaders are increasingly expected to manage AI adoption without losing visibility, accountability or control across the identity lifecycle.

Related Stories

MORE STORIES