[OpenID] OpenID and the COPPA

Brendon J. Wilson brendon.wilson at gmail.com
Tue Apr 1 21:52:20 UTC 2008


Hi all,

I'm curious if anyone has given any thought to the possible  
ramifications of COPPA (the Child Online Privacy and Protection Act)  
on the proliferation of OpenID? My understanding is that COPPA  
requires service providers to obtain permission from a parent to  
collect, disclose, etc information from a child less than 13 years of  
age. It appears to me that the Simple Registration Extension would  
qualify as disclosure of the user's personal information, and hence a  
relying party would need some way to confirm a user's age and parental  
permission prior to, or perhaps as part of, allowing an underage user  
to authenticate via OpenID?

Brendon
---
Brendon J. Wilson
www.brendonwilson.com



More information about the general mailing list