[Openid-specs-ab] What is the relationship between scope and user info claims ?

Roland Hedberg roland.hedberg at adm.umu.se
Fri Sep 16 06:49:40 UTC 2011


Hi!

In an authorization request scope can be defined to be for instance profile which is interpreted as being equal to a claim for all person attributes except for email and address.
In an Openid Request object you can list specific attributes your interested in in the userinfo:claims part.

So what relationship are there between these ?

Does any of them take precedence or should an AND be applied or … ?

-- Roland


More information about the Openid-specs-ab mailing list