<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Intent-Based Access Control on Control Plane by Karl McGuinness</title><link>https://notes.karlmcguinness.com/tags/intent-based-access-control/</link><description>Recent content in Intent-Based Access Control on Control Plane by Karl McGuinness</description><generator>Hugo</generator><language>en-us</language><managingEditor>public@karlmcguinness.com (Karl McGuinness)</managingEditor><webMaster>public@karlmcguinness.com (Karl McGuinness)</webMaster><lastBuildDate>Mon, 01 Jun 2026 09:00:00 -0700</lastBuildDate><atom:link href="https://notes.karlmcguinness.com/tags/intent-based-access-control/index.xml" rel="self" type="application/rss+xml"/><item><title>Mission-Bound OAuth Runtime Enforcement Profile</title><link>https://notes.karlmcguinness.com/notes/mission-bound-oauth-runtime-enforcement-profile/</link><pubDate>Mon, 01 Jun 2026 09:00:00 -0700</pubDate><author>public@karlmcguinness.com (Karl McGuinness)</author><guid>https://notes.karlmcguinness.com/notes/mission-bound-oauth-runtime-enforcement-profile/</guid><description>The MVP binds OAuth tokens to a durable Mission record. This profile adds the runtime layer: AS-side intent-to-policy compilation, mandatory escalation via AuthZEN, tool-and-action binding, mandatory actor chains, per-decision audit receipts, and a governed purpose registry. Modular by design: a Core enforcement contract plus Optional Modules that deployments adopt as their governance posture requires.</description></item></channel></rss>