Close

No Passwords, No Secrets: How Badge Is Building a Trust Layer for Humans, Machines, and AI | Dr. Tina Srivastava

No Passwords, No Secrets: How Badge Is Building a Trust Layer for Humans, Machines, and AI | Dr. Tina Srivastava
Dr. Tina Srivastava
Co-Founder
·Badge Inc.

Dr. Tina Srivastava is Co-Founder of Badge Inc., a cybersecurity company pioneering secretless, phishing-resistant authentication using zero-knowledge proofs and biometric fuzzy extraction. A national security expert and MIT alumna, she is building the trust layer for humans, machines, and AI agents in an increasingly agentic world.

Dr. Tina Srivastava is helping Badge rethink authentication for a world where humans, machines, and AI agents all need to prove they are who they say they are. As Co-Founder of Badge Inc., Dr. Tina is working to eliminate stored secrets from authentication and create a more secure root of trust for identity. Badge recently won a Fortress Cybersecurity Award for its work building a trust layer for the AI era.

In this episode, Russ and Dr. Tina explore why traditional authentication has become so frustrating and vulnerable. Passwords, passkeys, push notifications, knowledge-based questions, stored biometric data, and static credentials all create risks, especially as AI makes phishing and impersonation attacks more convincing.

They dive into Badge’s secretless authentication model and how the company allows users to derive a cryptographic key on the fly without storing private data in a central database. Dr. Tina explains how her background in national security and the Office of Personnel Management breach, which exposed millions of fingerprints, shaped the belief that people should not have to give up private data just to prove who they are.

The conversation also covers fuzzy extraction, biometric privacy, zero standing privileges, workload authentication, and the growing need to authenticate AI agents safely. Dr. Tina explains how Badge can help ensure that agents only receive the permissions they need, only when they need them, and only when the verified human authorizes the task.

Along the way, Dr. Tina discusses phishing-resistant authentication, agentic AI, identity without secrets, OEM partnerships, Badge as an embedded trust layer, and why authentication must become more seamless, private, and secure if people and companies are going to fully trust AI-powered systems.

Topics Covered:

[00:00] Welcome and intro, Dr. Tina Srivastava, Badge Inc., and the Fortress Cybersecurity Award win

[00:25] Why authentication has become more complicated and more important

[00:50] How Badge turns authentication on its head

[01:31] The founding insight behind Badge and identity without secrets

[01:48] The OPM breach and why stored biometric data creates lasting risk

[02:43] Zero knowledge authentication and proving identity without stored secrets

[03:24] Deriving keys on the fly and making the user the root of trust

[04:28] What the user experience looks like without passwords

[04:42] Supporting face, fingerprint, context, device characteristics, and PIN factors

[05:20] Multi-factor authentication for workloads and removing static API credentials

[05:50] Why agentic AI creates new permission and access challenges

[06:37] What biometric fuzzy extraction means for privacy

[07:33] Using fuzzy inputs to derive precise cryptographic keys

[08:00] How agentic AI changes authentication and attack surfaces

[08:31] Why AI makes phishing attacks more personalized and harder to detect

[09:30] Using Badge to verify human approval before agents take sensitive actions

[10:50] Zero standing privileges for AI agents

[11:20] Giving agents temporary permissions only when authorized

[12:13] Governance layers for employees and AI systems

[13:08] Badge as an embedded “Intel inside” authentication layer

[13:49] Working with existing identity providers and enterprise systems

[14:12] Badge’s partner ecosystem and complementary integrations

[15:31] Growth through OEM and embedded trust relationships

[16:17] Authenticating humans, machines, and AI agents

[16:55] Why AI agents should be treated like new employees that need guardrails

[17:37] What happens if trust erodes in AI systems

[18:20] Making secure access seamless across devices, systems, and environments

[19:28] Final thoughts on authentication, quantum complexity, and the future of trust

Close

Stay Up To Date

Be in the know about upcoming industry award programs, nominees, winners, finalists, and judges

Submit
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.