[Openid-dcp] DCP WG to Accept: Report Security Proof for OID4VP+DC API - Milestone A.1(B)

Gail Hodges gail at oidf.org
Thu Jul 17 15:20:19 UTC 2025


DCP WG

Can you please review the Final Security Analysis of OpenID4VP + DC API


  1.  Please raise any Issues/PRs that are useful; although no material security issues were identified, please ensure any recommendations are considered
  2.  Accept the report in a WG call, an action required to compensate Stuttgart for their final deliverable
  3.  Ensure this report is shared with ISO via our liaison relationship, as appropriate. I believe they wish to know this report is complete and the security properties are validated.

Cochairs/ Stuttgart team

Can you make time on a DCP call next week for Stuttgart?

That will give the WG a chance to surface any further questions before (1-3) are completed.

Stuttgart team

Thanks again for this timely delivery of the report, and your continued partnership on the security analysis.

Gail

From: Ralf Kuesters <ralf.kuesters at sec.uni-stuttgart.de>
Date: Tuesday, July 15, 2025 at 1:42 PM
To: Gail Hodges <gail at oidf.org>
Cc: Mike Leszcz <mike.leszcz at oidf.org>, Marcus Almgren <marcus.almgren at oidf.org>, Pedram Hosseyni <pedram.hosseyni at sec.uni-stuttgart.de>, fabian.hauck at sec.uni-stuttgart.de <fabian.hauck at sec.uni-stuttgart.de>, Tim Würtele <tim.wuertele at sec.uni-stuttgart.de>
Subject: Report: Security Proof for OID4VP+DC API - Milestone A.1(B)
Dear Gail,

Attached please find our report. Feel free to distribute as you see fit.

Let me know if you have any questions.

Best,

Ralf

--
Prof. Dr. Ralf Küsters
Institute of Information Security - SEC
University of Stuttgart
Universitätsstraße 38
D-70569 Stuttgart
Germany
https://sec.uni-stuttgart.de
Phone: +49 (0) 711 685 88283
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-digital-credentials-protocols/attachments/20250717/398751f6/attachment-0001.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: Report-Deliverable-A_1_B_.pdf
Type: application/pdf
Size: 1143375 bytes
Desc: Report-Deliverable-A_1_B_.pdf
URL: <http://lists.openid.net/pipermail/openid-specs-digital-credentials-protocols/attachments/20250717/398751f6/attachment-0001.pdf>


More information about the Openid-specs-digital-credentials-protocols mailing list