[Openid-specs-ab] Issue #1383: Trust Marks claims (openid/connect)

peppelinux issues-reply at bitbucket.org
Wed Dec 22 11:26:04 UTC 2021


New issue 1383: Trust Marks claims
https://bitbucket.org/openid/connect/issues/1383/trust-marks-claims

Giuseppe De Marco:

Currently, [as defined here](https://openid.net/specs/openid-connect-federation-1_0.html#rfc.section.5.3.1), we can use the following claims for the definition of a trust mark:

* iss, REQUIRED
* sub, REQUIRED
* id, REQUIRED
* iat, REQUIRED
* **mark**, OPTIONAL
* exp, OPTIONAL
* ref, OPTIONAL

I would like to propose the modification of the claim "**mark**" to "**logo\_uri**".

logo\_uri makes the purpose of the claim clearer, we should indicate that the url contained in it should point to an image-like content. logo\_uri intends to present the logo of the trust mark or of the Issuer that issued it if the trust mark did not have a specific logo.

We may also consider maintaining the mark claim for backwards compatibility, in which case my proposal would like to obtain the claim logo\_uri as optional and a redefinition of the description text of the mark claim.



More information about the Openid-specs-ab mailing list