{
  "$schema_doc": "https://gtmstacker.com/registry/schema/entry.schema.json",
  "stability": "emerging",
  "generator": "agentic-media-registry",
  "generated_at": "2026-09-23T00:00:00Z",
  "id": "com.gtmstacker.registry/tool/aws-tolap",
  "type": "tool",
  "slug": "aws-tolap",
  "canonical_url": "https://gtmstacker.com/registry/tool/aws-tolap/",
  "title": "AWS TOLAP",
  "description": "Apache-2.0 protocol from AWS Labs — the Tool-Object Level Access Protocol — that enforces object-level access control (column, row, field) around the tool/function layer so data-access policies travel with the data rather than the agent. It is protocol-agnostic across MCP, LangChain, Bedrock Agents and Semantic Kernel, and ships enforcement SDKs for .NET, Python and TypeScript plus a reference policy server. A legitimate first-party AWS launch, still almost undiscovered (5 stars).",
  "category": "integration-orchestration",
  "tags": [
    "integration-orchestration",
    "mcp-agents",
    "self-hostable",
    "access-control",
    "governance",
    "protocol"
  ],
  "status": "active",
  "revision": 1,
  "content_hash": "dd64b9bc8851630d31286ed60bca1c5f664e2ca9e903d3fe730d27e660be0d61",
  "date_published": "2026-09-23T00:00:00Z",
  "date_modified": "2026-09-23T00:00:00Z",
  "source": {
    "name": "AWS Open Source Blog · Phillip Spies",
    "url": "https://github.com/awslabs/tolap"
  },
  "license": "Apache-2.0",
  "one_liner": "AWS TOLAP enforces column/row/field access control at the tool layer so data-access policies follow the data across MCP, LangChain and Bedrock Agents.",
  "open_source": "yes",
  "self_hostable": "yes",
  "pricing_model": "free",
  "who_its_for": "A security or RevOps engineer giving agents access to sensitive data who needs object-level (column/row/field) policies enforced at the tool boundary, consistently across whichever agent framework or protocol calls the data.",
  "aliases": [
    "aws-tolap",
    "tolap",
    "Tool-Object Level Access Protocol",
    "awslabs/tolap"
  ],
  "alternatives": [],
  "secondary_categories": [
    "mcp-agents"
  ],
  "last_verified": "2026-09-23",
  "evidence": {
    "claim_type": "mixed",
    "source_id": "https://github.com/awslabs/tolap",
    "note": "Apache-2.0 (OSI-open); 5 stars, created 2026-07-28, last push 2026-09-17; object-level (column/row/field) access control enforced at the tool/function layer, protocol-agnostic (MCP, LangChain, Bedrock Agents, Semantic Kernel), with enforcement SDKs for .NET/Python/TypeScript and a reference policy server. Confirmed via official AWS Open Source Blog (Phillip Spies, 2026-09-22) and repo (WebFetch 2026-09-23, github.com/awslabs/tolap). GitHub description is null."
  },
  "caveats": "A legitimate first-party AWS Labs launch, but with near-zero traction so far — 5 stars and a null GitHub description — so this is early adoption, not a proven or widely deployed standard. It is a protocol plus enforcement SDKs and a reference server; making it real means integrating the SDKs into your tool layer.",
  "lead": "Apache-2.0 protocol from AWS Labs — the Tool-Object Level Access Protocol — that enforces object-level access control (column, row, field) around the tool/function layer so data-access policies travel with the data rather than the agent. It is protocol-agnostic across MCP, LangChain, Bedrock Agents and Semantic Kernel, and ships enforcement SDKs…",
  "chunks": [
    {
      "index": 0,
      "heading_path": [],
      "est_tokens": 133,
      "text": "Apache-2.0 protocol from AWS Labs — the Tool-Object Level Access Protocol — that enforces object-level access control (column, row, field) around the tool/function layer so data-access policies travel with the data rather than the agent. It is protocol-agnostic across MCP, LangChain, Bedrock Agents and Semantic Kernel, and ships enforcement SDKs for .NET, Python and TypeScript plus a reference policy server. It is a legitimate first-party AWS launch that is almost entirely undiscovered so far (5 stars, null repo description)."
    },
    {
      "index": 1,
      "heading_path": [
        null,
        "Provenance"
      ],
      "est_tokens": 282,
      "text": "the data rather than the agent. It is protocol-agnostic across MCP, LangChain, Bedrock Agents and Semantic Kernel, and ships enforcement SDKs for .NET, Python and TypeScript plus a reference policy server. It is a legitimate first-party AWS launch that is almost entirely undiscovered so far (5 stars, null repo description).\n\n- Apache-2.0 (OSI-open); 5 stars, created 2026-07-28, last push 2026-09-17; object-level (column/row/field) access control enforced at the tool/function layer, protocol-agnostic across MCP, LangChain, Bedrock Agents and Semantic Kernel, shipping enforcement SDKs for .NET/Python/TypeScript plus a reference policy server (WebFetch 2026-09-23).\n- Confirmed via the official AWS Open Source Blog (Phillip Spies, 2026-09-22); surfaced through the 2026-09-23 X viral-posts brief (official @AWSOpen).\n- Anti-hype note: this is a real AWS Labs launch but almost undiscovered — 5 stars, null GitHub description. Presented as an early first-party release, not a viral or established standard.\n- Curated from the GTM Stacker signal registry (2026-09-23 pass); license/facts independently verified 2026-09-23."
    },
    {
      "index": 2,
      "heading_path": [
        null,
        "Why it matters for a GTM stack"
      ],
      "est_tokens": 279,
      "text": "X viral-posts brief (official @AWSOpen). - Anti-hype note: this is a real AWS Labs launch but almost undiscovered — 5 stars, null GitHub description. Presented as an early first-party release, not a viral or established standard. - Curated from the GTM Stacker signal registry (2026-09-23 pass); license/facts independently verified 2026-09-23.\n\nThe governance gap in agentic data access is that policy usually attaches to the agent — grant it a scope, hope it stays inside. TOLAP inverts that: the access rule binds to the object (a column, a row, a field) and is enforced at the tool/function boundary, so the same policy holds no matter which agent or framework makes the call. For a RevOps or security team letting agents touch customer, deal or PII data, that is the plumbing that lets you say \"agents may read these fields and not those\" and have it enforced consistently across MCP, LangChain and Bedrock Agents. The honest read: it is a brand-new AWS Labs launch with essentially no traction yet, and it is a protocol with SDKs — the value only appears once you wire the enforcement into your own tool layer."
    }
  ],
  "alternates": {
    "markdown": "https://gtmstacker.com/registry/tool/aws-tolap/index.md",
    "html": "https://gtmstacker.com/registry/tool/aws-tolap/",
    "json": "https://gtmstacker.com/registry/tool/aws-tolap/index.json",
    "server_json": "https://gtmstacker.com/registry/tool/aws-tolap/server.json"
  },
  "jsonld": {
    "@context": "https://schema.org",
    "@graph": [
      {
        "@type": "WebSite",
        "@id": "https://gtmstacker.com/#website",
        "url": "https://gtmstacker.com/",
        "name": "GTM Stacker Agent Registry",
        "description": "A daily-updated, agent-native registry of open-source tool discoveries, tool updates, and curated news for the go-to-market / RevOps engineering niche. Machine-readable first: agents can discover, parse, page, and delta-sync it without scraping HTML.",
        "inLanguage": "en",
        "publisher": {
          "@id": "https://gtmstacker.com/#organization"
        }
      },
      {
        "@type": "Organization",
        "@id": "https://gtmstacker.com/#organization",
        "name": "GTM Stacker",
        "url": "https://gtmstacker.com",
        "description": "The growth-systems practice of Theo Popov: AI-native enrichment, outbound, content engines and internal tooling for startups and venture programs. Its agent-native media property, the GTM Stacker Agent Registry, maintains a daily-updated catalog of open-source go-to-market and RevOps tools that both people and AI engines can discover, compare, and cite.",
        "foundingDate": "2024-08",
        "knowsAbout": [
          "go-to-market engineering",
          "RevOps",
          "sales automation",
          "marketing operations",
          "open-source software",
          "AI agents"
        ],
        "founder": {
          "@type": "Person",
          "@id": "https://gtmstacker.com/#founder",
          "name": "Theo Popov",
          "jobTitle": "Growth Operations & GTM Systems",
          "url": "https://gtmstacker.com/about/",
          "sameAs": [
            "https://www.linkedin.com/in/theo-popov",
            "https://x.com/Theo_Popov",
            "https://github.com/theopopov"
          ],
          "worksFor": {
            "@id": "https://gtmstacker.com/#organization"
          }
        },
        "sameAs": [
          "https://www.linkedin.com/company/gtmstacker",
          "https://www.youtube.com/@gtmstacker",
          "https://www.instagram.com/gtmstacker/",
          "https://www.tiktok.com/@gtmstacker"
        ],
        "mainEntityOfPage": "https://gtmstacker.com/registry/about/"
      },
      {
        "@type": "SoftwareApplication",
        "@id": "https://gtmstacker.com/registry/tool/aws-tolap/#software",
        "name": "AWS TOLAP",
        "identifier": "io.github.awslabs/tolap",
        "description": "Apache-2.0 protocol from AWS Labs — the Tool-Object Level Access Protocol — that enforces object-level access control (column, row, field) around the tool/function layer so data-access policies travel with the data rather than the agent. It is protocol-agnostic across MCP, LangChain, Bedrock Agents and Semantic Kernel, and ships enforcement SDKs for .NET, Python and TypeScript plus a reference policy server. A legitimate first-party AWS launch, still almost undiscovered (5 stars).",
        "applicationCategory": "DeveloperApplication",
        "url": "https://gtmstacker.com/registry/tool/aws-tolap/",
        "datePublished": "2026-09-23T00:00:00Z",
        "dateModified": "2026-09-23T00:00:00Z",
        "isPartOf": {
          "@id": "https://gtmstacker.com/#website"
        },
        "license": "https://spdx.org/licenses/Apache-2.0.html",
        "codeRepository": "https://github.com/awslabs/tolap",
        "keywords": "integration-orchestration, mcp-agents, self-hostable, access-control, governance, protocol",
        "author": {
          "@type": "Organization",
          "name": "awslabs",
          "url": "https://github.com/awslabs",
          "sameAs": [
            "https://github.com/awslabs/tolap"
          ]
        },
        "offers": {
          "@type": "Offer",
          "price": 0,
          "priceCurrency": "USD"
        }
      },
      {
        "@type": "BreadcrumbList",
        "@id": "https://gtmstacker.com/registry/tool/aws-tolap/#breadcrumb",
        "itemListElement": [
          {
            "@type": "ListItem",
            "position": 1,
            "name": "GTM Stacker Registry",
            "item": "https://gtmstacker.com/registry/"
          },
          {
            "@type": "ListItem",
            "position": 2,
            "name": "Integration Orchestration",
            "item": "https://gtmstacker.com/registry/category/integration-orchestration/"
          },
          {
            "@type": "ListItem",
            "position": 3,
            "name": "AWS TOLAP",
            "item": "https://gtmstacker.com/registry/tool/aws-tolap/"
          }
        ]
      }
    ]
  },
  "tool": {
    "name": "io.github.awslabs/tolap",
    "repository": {
      "url": "https://github.com/awslabs/tolap",
      "source": "github"
    }
  }
}
