9:00am • Keynote: Opening Remarks - Jim Zemlin, Executive Director, Agentic AI Foundation & CEO, The Linux Foundation
9:10am • Keynote: Welcome Remarks from the AAIF Governing Board Chair - David Nalley, Director of Developer Experience, Amazon Web Services
9:15am • Keynote: MCP: The Integration Protocol - David Soria Parra, Member of Technical Staff, Anthropic
9:35am • Keynote: MCP @ Amazon Scale - James Hood, Principal Software Engineer, Amazon Web Services
9:50am • Keynote: Operating MCPs at Enterprise Scale: Uber’s Journey - Meghana Somasundara, Agentic AI Lead & Rush Tehrani, Head of Engineering, Agentic AI Platform, Uber Technologies, Inc.
10:05am • Keynote: Lessons Learned from Driving Enterprise MCP Adoption - Sheng Liang, CEO, Obot AI
10:20am • Keynote: Duolingo's AI Slackbot: An Enterprise Assistant With 180+ MCP Tools - Aaron Wang, Software Engineer, Duolingo Inc
10:35am • Keynote: Enterprise MCP - The Data Plane for Autonomous Agents - Adam Seligman, CTO & Zayne Turner, Developer Advocate, Workato
10:45am • Keynote: The First 100 Agents: Scaling With MCP From Prototype To Platform - Diamond Bishop, Director of Eng/AI, Datadog - Dispatch Agents
11:00am • Keynote: Navigating Primitives for Agent Collaboration - Nick Aldridge, Co-founder & CEO, Mousecat
11:50am • What if MCP was Symmetric? - Jerome Swannack, Anthropic
12:20pm • Evolution, Not Revolution: How MCP Is Reshaping OAuth - Aaron Parecki, Okta
12:50pm • Stateless: The Future of MCP Transports - Shaun Smith, Hugging Face & Kurtis Van Gent, Google
2:35pm • One Spec, Ten SDKs, Zero Excuses: Conformance Testing MCP - Paul Carleton, Anthropic
3:05pm • Durable, Asynchronous, and Tricky: Implementing MCP Tasks in Practice - Cornelia Davis, Temporal
3:35pm • Clients? Servers? Agents? The Beautiful Asymmetry of the MCP Spec - Rohit Ganguly, Descope
4:30pm • MCP Vs CLIs: Why Agents Need Purpose-Built Interfaces - Sam Morrow, GitHub
5:00pm • Building a Workflow Engine on MCP: Orchestrating Processes With Tasks - Donnie Adams, Obot AI
5:30pm • URL Elicitation Deep Dive: Third-party OAuth Solved (and More!) - Nate Barbettini, Arcade.dev
11:50am • MCP at 18 Months: Protocols, Patterns, and What We Didn't See Coming - Shaun Smith, Hugging Face
12:20pm • Dynamic MCPs: Agentic Discovery, Configuration, and Management of MCP Workloads - Jim Clark, Docker
12:50pm • Building ChatGPT Apps: Principles for a New Kind of Interface - Elliot Garreffa, Ghost Team
2:35pm • Mental Reset: How To Rethink Your User Flow in the Age of MCP & ChatGPT Apps - Erica Beavers, Alpic
3:05pm • Skills Vs. MCP Vs. Code Mode: Cutting Through the Hype (and the Rage) - Nikolay Rodionov, Alpic
3:35pm • Code Mode Is Best Served in the Shell - Jan Curn, Apify
4:30pm • Schema To Insight: Architecting Production-Grade Database MCP Tools - Kurtis Van Gent & Wenxin Du, Google
5:00pm • Combine Skills and MCP To Close the Context Gap - Pedro Rodrigues, Supabase
5:30pm • If the LLM Can't Find You, You Don't Exist: Discoverability for MCP-Apps and ChatGPT Apps - Vincent McLeese, Ghost Team
11:50am • Securing MCP at Scale: From Principles To Production - Peter Smulovics, Morgan Stanley
12:20pm • When MCP Becomes a Product - Gautam Baghel, HashiCorp & Roy Derks, IBM
12:50pm • Golem To Murderbot: Challenges With Agentic Security Delegation Via MCP - Michael Schwartz, Gluu
2:35pm • From Scopes To Intent: Reimagining Authorization for Autonomous Agents - Andres Aguiar & Abhishek Hingnikar, Okta
3:05pm • Deploying MCP at Scale Without Skipping Compliance - Becky Brooks, MCP Manager by Usercentrics
3:35pm • Shadow MCP: Finding the MCPs Nobody Approved - Aidan Sochowski & Alexander Frazer, Runlayer
4:30pm • If You Can Secure It Here, You Can Secure It Anywhere - Milan Williams & Katrina Liu, Semgrep
5:00pm • Towards Building Safe & Secure Agentic AI - Dawn Song, UC Berkeley; UC Berkeley Center for Responsible Decentralized Intelligence & Matt White, Linux Foundation/PyTorch Foundation
5:30pm • MCP Traffic Handling at Scale: Stateless Design, Proxies, and the Road Ahead - Erica Hughberg, Tetrate & Boteng Yao, Google
11:50am • Building MARVIN: What Teaching a Non-Technical Marketer To Use MCP Taught Me About AI Adoption - Sterling Chin, Postman
12:20pm • MCP for Autonomous Storefronts: Building Self-Healing Agent Loops - Guilherme Rodrigues, decocms.com
12:50pm • Building Multi-Turn Agentic Workflows With MCP: Lessons From Avatar Generation at Roblox - Rohan Gangaraju & Jason Ding, Roblox
2:35pm • MCP Apps Best Practices: Patterns and Pitfalls - Olivier Chafik & Anton Pidkuiko, Anthropic
3:05pm • Patterns for Building MCP-powered Agent Systems - Jiquan Ngiam, MintMCP
3:35pm • Declarative MCP Servers for Secure, Specialized AI Agents - Josh Reini & Reetika Roy, Snowflake
4:30pm • When MCP Isn’t Enough: Product Decisions Behind Scalable Agent Systems - Cansu Berkem, Datadog
5:00pm • Evaluate What You Can't See: Measure the Probabilistic Nature of MCP - Prathmesh Patel & Marcelo Jimenez Rocabado, MCPJam
5:30pm • Operating MCP in the Enterprise: From Protocol To Production - Amar Deep Singh, GM Financial & Neelabh Tripathi, Cisco Systems
11:50am • Sponsored Session: The Self-Improving MCP Server: Agents in a Live Development Loop - Enrico Toniato, Manufact
12:20pm • Sponsored Session: Model Context Pragmatism - Jeremiah Lowin, Prefect
12:50pm • Sponsored Session: Who's Driving? Delegation and the Confused Deputy Problem for AI Agents - Vitor Balocco & Alvaro Inckot, Runlayer
2:35pm • Sponsored Session: Agents and MCP @ Google Scale - Alan Blount & Vaibhav Katkade, Google Cloud
3:05pm • Sponsored Session: Future-Proofing AI Agents: The Strategic Role of MCP - Don Murray, Safe Software
3:35pm • My MCP Server Code Works, but the Agent Fails: The Case for MCP-specific Evaluations - Calum Murray & Wesley Chun, Red Hat
4:30pm • CANCELLED - Safer AI Integration Using Mock MCP Servers for Your 3rd-Party APIs - Kin Lane, Naftiko
5:00pm • CANCELLED - Building Secure, Scalable, and Reliable Agentic AI Systems - Seetaram Rayarao, JP Morgan Chase
5:30pm • CANCELLED - Building the MCP Search Tool for Any Model - Kevin Yang, Warp
9:00am • Keynote: MCP Apps: Extending the Frontier - Ido Salomon, Creator MCP-UI & Liad Yosef, Co-creator, MCP Apps
9:20am • Keynote: Context is More Than Tools - Why the "C" in MCP is More Relevant Than Ever - Ryan Cooke, Engineering Lead, WorkOS
9:35am • Keynote: MCP x MCP - Nick Cooper, Member of Technical Staff, OpenAI
9:50am • Keynote: Building a Unified Control Plane for MCP Across Servers, Clients, and Teams - Cecilia Liu, Senior Product Manager, Docker
10:00am • Keynote: One-To-Many: Enabling MCP, Agents, and Intelligent Systems at Nordstrom - Ola Hungerford, Principal Engineer & Sandeep Bhat, Engineer, Nordstrom
10:20am • Keynote: Using MCP for Skills Orchestration and Enterprise Integration - Jacob Wilson, PwC Principal, GenAI Transformation Leader
10:30am • Keynote: Interoperability Isn’t Enough: Building Trustworthy AI Infrastructure with MCP - Ania Musial, Head of AI Platforms Product, Office of the CTO, Bloomberg
11:30am • Goose as a Proving Ground for New MCP Features, and How To Use Them - Alex Hancock, Block
12:00pm • Path to V2 for MCP SDKs - Max Isbey, Anthropic
12:30pm • The Anatomy of a Meltdown: A Deep-Dive into MCP via Selective Sabotage - Joey Stout, Spacelift
2:25pm • Every API Is a Tool for Agents - Matt Carey, Cloudflare
2:55pm • Interceptors for MCP: A Production-Tested Standard for Agentic Middleware - Kurt Degiorgio & Cannis Chan, Bloomberg
3:25pm • Intent Engineering: The Death of the Mono-Directional Prompt - Rizel Scarlett, Block, Inc.
4:20pm • The Seven Deadly Sins With MCP - Ricardo Ferreira, Redis
4:50pm • Call Now, Fetch Later: MCP Tasks and SEP-1686 - Adam Azzam, Prefect
5:20pm • MCP Elicitation - Balancing Convenience With Security - Kay James, Gravitee
11:30am • Human in the Loop, Agent in the Flow - Harald Kirschner & Connor Peet, Microsoft
12:00pm • Distributing MCP Servers With OCI To Power Agent Skills - Bobby House, Docker
12:30pm • Solving Context Bloat: Semantic Tool Routing in Multi-Server MCP Environments - Hugo Guerrero, Kong
2:25pm • The Tool Abstraction Problem: Lessons Learned Building 1000+ MCP Tools - Sam Partee, Arcade.dev
2:55pm • The MCP Gateway Pattern: Aggregation, Composition, and Beyond - Juan Antonio Osorio, Stacklok
3:25pm • From Benchmarks To Business Value: Building a Use-Case Specific Agent Evaluation Framework - Gaurav Saxena, Independent & Matvey Kukuy, Archestra.AI
4:20pm • MCP Servers in the Wild: Managing Tool Complexity at Scale - Arnav Balyan, Concierge AI
4:50pm • Your MCP Server Will Probably Be Abandoned...Or Not - Lahari Chowtoori, Amazon Web Services, Inc.
5:20pm • Reflections on Context Engineering Via MCP Servers - Till Döhmen, MotherDuck
11:30am • Demistifying Client ID Metadata Documents in MCP - Den Delimarsky, Anthropic
12:00pm • Threat Modeling Authorization in MCP - Sarah Cecchetti, OpenID Foundation
12:30pm • Mix-Up Attacks in MCP: Multi-Issuer Confusion and Mitigations - Emily Lauber, Microsoft
2:25pm • Putting the Single Back in Single Sign-On: Cross-App Access for MCP - Paul Carleton, Anthropic & Max Gerber, Twilio
2:55pm • The Boring Attack That Will Actually Get You - Craig Jellick, Obot AI
3:25pm • Beyond the Sandbox: Security at the Host Layer - Lorenzo Verna & Pietro Valfrè, Denied
4:20pm • Securing the MCP Ecosystem: Production Patterns for Transparency and Trust - Lisa Tagliaferri & Trevor Dunlap, Chainguard
4:50pm • Enterprise-Ready MCP: Security Patterns and the "4-Legged" Identity Challenge - Paulina Xu, Agentic Fabriq
5:20pm • Context Middleware for MCP: From Enterprise Needs To Protocol Extension - Peder Holdgaard Pedersen, Saxo Bank