[Openid-specs-digital-credentials-protocols] OID4VP draft 25 published

Joseph Heenan joseph at authlete.com
Thu Apr 3 07:12:34 UTC 2025


Hi all

Draft 25 of OID4VP has been published:

https://openid.net/specs/openid-4-verifiable-presentations-1_0-25.html

The main reason for published was so we have a new stable link to share with the ISO mDL working group for the next round of discussion with them in their virtual meeting 15th-17th April.

Change log is:

clarify value matching in DCQL
clarify why requests using redirect_uri scheme cannot be signed
add trusted_authorities to DCQL
add note introducing cbor and cddl
clarify DCQL case of claims and claim_sets being absent
add language on client ID and nonce binding for ISO mdocs and W3C VCs
for DC API, always use Origin for binding the response (e.g. in Key Binding JWT aud and sessionTranscript in mdoc)
clarify the behavior is not to sign when authorization_signed_response_alg is omitted
add a note on the use of apu/apv in the JWE header of encrypted responses
add x509_hash client identifier scheme
remove x509_san_uri client identifier scheme
clarify that dcql_query and presentation_definition are passed as JSON objects (not strings) in request objects
support returning multiple presentations for a single dcql credential query when requested using multiple
Added support for multiple Client Identifiers and corresponding Request Signature to the DC API profile


Thanks

Joseph

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-digital-credentials-protocols/attachments/20250403/a30b6442/attachment-0001.htm>


More information about the Openid-specs-digital-credentials-protocols mailing list