Events without label "editorial"
Issues
------
* oauth-wg/oauth-identity-chaining (+1/-0/💬12)
1 issues created:
- GENART Review by Lars Eggert (by PieterKas)
https://github.com/oauth-wg/oauth-identity-chaining/issues/189
1 issues received 12 new comments:
- #189 GENART Review by Lars Eggert (12 by PieterKas, bc-pi, larseggert)
https://github.com/oauth-wg/oauth-identity-chaining/issues/189
* oauth-wg/oauth-transaction-tokens (+0/-0/💬1)
1 issues received 1 new comments:
- #343 action_subject: The specific entity this transaction acts on (1 by
saisrungaram-ai)
https://github.com/oauth-wg/oauth-transaction-tokens/issues/343
* oauth-wg/oauth-sd-jwt-vc (+0/-0/💬4)
4 issues received 4 new comments:
- #411 Define behaviour when wallet needs to resolve/process type metadata (1
by babisRoutis)
https://github.com/oauth-wg/oauth-sd-jwt-vc/issues/411
- #410 Define behaviour when the wallet needs to process the path (1 by babisRoutis)
https://github.com/oauth-wg/oauth-sd-jwt-vc/issues/410
- #409 Define behaviour for the wallet if `sd` in claims metadata does not correspond to `_sd` and Disclosures (1 by babisRoutis)
https://github.com/oauth-wg/oauth-sd-jwt-vc/issues/409
- #408 Define behaviour of the wallet when claims metadata is malformed (1 by babisRoutis)
https://github.com/oauth-wg/oauth-sd-jwt-vc/issues/408
* oauth-wg/oauth-v2-1 (+0/-4/💬6)
3 issues received 6 new comments:
- #246 Section 4.1.1 should probably mention Pushed Authorization Requests (2
by ThisIsMissEm, aaronpk)
https://github.com/oauth-wg/oauth-v2-1/issues/246
- #233 make mix-up mitigation via issuer mandatory (3 by aaronpk, will-bartlett)
https://github.com/oauth-wg/oauth-v2-1/issues/233 [ietf-125]
- #214 Make PKCE optional when DPoP + PAR are used (1 by aaronpk)
https://github.com/oauth-wg/oauth-v2-1/issues/214
4 issues closed:
- Potential new Security Consideration - Malicious Clients (Consent Phishing) https://github.com/oauth-wg/oauth-v2-1/issues/76
- Section 4.1.1 should probably mention Pushed Authorization Requests https://github.com/oauth-wg/oauth-v2-1/issues/246
- Make PKCE optional when DPoP + PAR are used https://github.com/oauth-wg/oauth-v2-1/issues/214
- Ambigious text around whether `code_challenge` is required https://github.com/oauth-wg/oauth-v2-1/issues/170
* oauth-wg/draft-ietf-oauth-attestation-based-client-auth (+0/-1/💬7)
3 issues received 7 new comments:
- #170 Client metadata ? (5 by babisRoutis, c2bo, paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/170 [discuss] [ready-for-pr]
- #107 Further implementer guidance on Client Instance Attestations (1 by fkj)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/107 [discuss] [ready-for-pr]
- #47 PoP attestation binding (1 by paulbastian)
https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/47 [discuss]
1 issues closed:
- PoP attestation binding https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth/issues/47 [discuss]
* oauth-wg/oauth-identity-assertion-authz-grant (+0/-1/💬3)
1 issues received 3 new comments:
- #93 Prior art for future revisions (3 by GoetzGW, JayDaley)
https://github.com/oauth-wg/oauth-identity-assertion-authz-grant/issues/93
1 issues closed:
- Prior art for future revisions https://github.com/oauth-wg/oauth-identity-assertion-authz-grant/issues/93
* oauth-wg/draft-ietf-oauth-client-id-metadata-document (+0/-1/💬0)
1 issues closed:
- Omit `client_id` from client metadata document? https://github.com/oauth-wg/draft-ietf-oauth-client-id-metadata-document/issues/31
Pull requests
-------------
* oauth-wg/oauth-identity-chaining (+1/-0/💬0)
1 pull requests submitted:
- (by bc-pi)
* oauth-wg/oauth-v2-1 (+4/-0/💬2)
4 pull requests submitted:
- (by aaronpk)
- (by aaronpk)
- (by aaronpk)
- (by aaronpk)
2 pull requests received 2 new comments:
- #250 Make `iss` response parameter required to be sent by the AS (1 by panva)
https://github.com/oauth-wg/oauth-v2-1/pull/250
- #244 Fix minor editorial nitpicks (1 by aaronpk)
https://github.com/oauth-wg/oauth-v2-1/pull/244
Repositories tracked by this digest:
-----------------------------------
* https://github.com/oauth-wg/oauth-browser-based-apps
* https://github.com/oauth-wg/oauth-identity-chaining
* https://github.com/oauth-wg/oauth-transaction-tokens
* https://github.com/oauth-wg/oauth-sd-jwt-vc
* https://github.com/oauth-wg/draft-ietf-oauth-resource-metadata
* https://github.com/oauth-wg/oauth-cross-device-security
* https://github.com/oauth-wg/oauth-selective-disclosure-jwt
* https://github.com/oauth-wg/oauth-v2-1
* https://github.com/oauth-wg/draft-ietf-oauth-status-list
* https://github.com/oauth-wg/draft-ietf-oauth-attestation-based-client-auth
* https://github.com/oauth-wg/oauth-identity-assertion-authz-grant
* https://github.com/oauth-wg/draft-ietf-oauth-rfc8725bis
* https://github.com/oauth-wg/draft-ietf-oauth-rfc7523bis
* https://github.com/oauth-wg/oauth-first-party-apps
* https://github.com/oauth-wg/draft-ietf-oauth-client-id-metadata-document
--
To have a summary like this sent to your list, see:
https://github.com/ietf-github-services/activity-summary
_______________________________________________
OAuth mailing list -- [email protected]
To unsubscribe send an email to [email protected]