How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

How Lynx Works: A Technical Walkthrough

calendar_today June 18, 2026 person Peter Kelly domain calico

A technical walkthrough of the architecture of Lynx, Tigera’s new control plane for agentic AI traffic, providing a single control point in the path of every agent call with authentication, authorization, and recording. Its design requires no agent code modifications, adds no new databases to the control plane, and leverages the open-source agentgateway proxy, Kubernetes custom resources, SPIFFE/SPIRE or OIDC for workload identity, and Cedar policy language for authorization. Lynx also uses kernel-level eBPF monitoring to discover unregistered agents and applies RFC 8693 token exchange for delegation chains.

open_in_new Read original post