Vercel Passport is now generally available
- Source
- vercel.com
- Author
- Andrew Qu
- Date

It lets you gate staging or internal deployments behind your existing Okta/Entra ID/OIDC provider and read verified visitor identity directly in application code, avoiding hand-rolled auth middleware just to protect a preview environment.
- token — The chunk of text a model reads and writes in — roughly three-quarters of a word — and the unit AI usage is billed in.
“Visitors authenticate through Okta, Microsoft Entra ID, or any OIDC provider before viewing a protected deployment, and Vercel forwards a signed identity token to the deployment so application code can build on who the visitor is.”
“Vercel strips client-supplied values for the x-vercel-oidc-passport-token header and injects the verified token after Passport validates the session, so the identity your code receives is already verified.”
“The helper returns null only when a request arrives without a Passport session, because unauthenticated browser visitors are redirected to the identity provider before they ever reach your code.”
Checking sign-in…
Loading comments…





