Determines whether users and their processes are uniquely identified and authenticated before access, and whether re-authentication occurs under the defined circumstances.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.