<div dir="ltr"><div dir="ltr">Is there a link or document encapsulating Daniel's updated proposal? I didn't see that in the notes.<input name="virtru-metadata" type="hidden" value="{"email-policy":{"disableCopyPaste":false,"disablePrint":false,"disableForwarding":false,"enableNoauth":false,"expandedWatermarking":false,"expires":false,"sms":false,"expirationNum":1,"expirationUnit":"days","isManaged":false,"persistentProtection":false},"attachments":{},"compose-id":"17","compose-window":{"secure":false}}"><div><br></div><div>Thanks,</div><div>George</div></div><br><div class="gmail_quote" style=""><div dir="ltr" class="gmail_attr">On Thu, May 16, 2024 at 12:34 PM Joseph Heenan via Openid-specs-digital-credentials-protocols <<a href="mailto:openid-specs-digital-credentials-protocols@lists.openid.net">openid-specs-digital-credentials-protocols@lists.openid.net</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><div><div><br></div><div>Participants:</div><div><br></div><div>Joseph Heenan</div><div>Kristina Yasuda</div><div>Daniel Fett</div><div>Andreea Prian</div><div>Arjen van Veen</div><div>Bjorn Hjelm</div><div>Brian Campbell</div><div>gabe</div><div>Jan Vereecken</div><div>Jin Wen</div><div>Juba Saadi</div><div>Michael Jones</div><div>Oliver Terbu</div><div>Pedro Felix</div><div>Rajvardhan Deshmukh</div><div>Ryan Galluzzo</div><div>Sebastian Birckerle</div><div>Sebastian Bahloul</div><div>Sudesh Shetty</div><div>Lukasz Jaromin</div><div><br></div><div><br></div><div><b>Events:</b></div><div><br></div><div>There will be a hybrid meeting with in-person participation for those at Identiverse; if you would like to attend in person please register on eventbrite:</div><div><br></div><div><a href="https://urldefense.com/v3/__https://www.eventbrite.com/e/openid-foundation-dcp-wg-hybrid-meeting-at-identiverse-tickets-902324616217__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5LqBKm3M$" target="_blank">https://www.eventbrite.com/e/openid-foundation-dcp-wg-hybrid-meeting-at-identiverse-tickets-902324616217</a><br></div><div><br></div><div>It was proposed to cancel the normal working group meetings during Identiverse & EIC and no one objected.</div><div><br></div><div><br></div><div><br></div><div><b>VP Query Language Proposal:</b></div><div><br></div><div>Daniel shared the latest thoughts on the query language, presenting an evolution of the proposal created during IIW that meets the various requirements that were agreed by the working group, that includes some feedback from implementers that looked at the previous proposal: <a href="https://urldefense.com/v3/__https://hackmd.io/1siVhjzOTWOE9ppdF_t57A?view__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5NyyZhRl$" target="_blank">https://hackmd.io/1siVhjzOTWOE9ppdF_t57A?view</a></div><div><br></div><div>There was some discussion over the how the logic of “and/or” requests is expressed; Daniel said the current proposal is the simplest they could come up with.</div><div><br></div><div>Two people asked about how to return multiple credentials fulfilling the same single requirement; that hadn’t come up before and we probably need a way to express if the verifier wants all the matches or just one - new issue to be opened for that.</div><div><br></div><div>Jan asked where both ‘format’ and the name of the format specific parameters object (e.g. “vc+sd-jwt”) are required. Daniel said that ‘format' is necessary so there is a clear place for the verifier to figure out if it supports the requested format, and then there’s also a desire to collect the format specific keys into a sub-object.</div><div><br></div><div>Jan asked about implementations. There aren’t any yet that we’re aware of.</div><div><br></div><div>Kristina asked if we wanted to proceed with a new query language format and if this proposal was a good way to proceed.</div><div><br></div><div>Jan, Arjen, Brian, Michael J, Oliver, Gabe agreed it was a useful starting point. No one raised objections to using it as a starting point. Oliver wasn’t sure about the advances syntax features in example 7.</div><div><br></div><div>Next step is to open an issue.</div><div><br></div><div><br></div><div><b>VP Transaction Data:</b></div><div><br></div><div>Kristina has opened 4 new issues for 4 specific points that need discussion, all tagged with the ’transaction data’ label.</div><div><br></div><div>Issue 173: The verifier needs an easy way to check the wallet is approve what it’s requested; given the difficulties of comparing json objects having the transaction request base64url encoded in the request & response seems like the best solution right now.</div><div><br></div><div><br></div><div><b>VP PRs:</b></div><div><br></div><div>#175 Add text/diagram for siopv2 conditional cred req flow</div><div><a href="https://urldefense.com/v3/__https://github.com/openid/OpenID4VP/pull/175__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5DH311B6$" target="_blank">https://github.com/openid/OpenID4VP/pull/175</a> to solve <a href="https://urldefense.com/v3/__https://github.com/openid/OpenID4VP/issues/86__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5DSJrIIH$" target="_blank">https://github.com/openid/OpenID4VP/issues/86</a></div><div><br></div><div>Please read and give feedback.</div><div><br></div><div><br></div><div><b>VCI PRs/issues:</b></div><div><br></div><div><a href="https://urldefense.com/v3/__https://github.com/openid/OpenID4VCI/pull/314__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5AV7pv8c$" target="_blank">https://github.com/openid/OpenID4VCI/pull/314</a> </div><div><br></div><div>Removed authorization_pending as discussed in previous meetings and notified to mailing list. No objections raised.</div><div><br></div><div><br></div><div><a href="https://urldefense.com/v3/__https://github.com/openid/OpenID4VCI/pull/319__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5G3_91S7$" target="_blank">https://github.com/openid/OpenID4VCI/pull/319</a> </div><div><br></div><div>As per previous working group discussions, clarify how encryption works on batch endpoint - please review.</div><div><br></div><div><br></div><div><br></div><div><a href="https://urldefense.com/v3/__https://github.com/openid/OpenID4VCI/pull/321__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5DhSwgjk$" target="_blank">https://github.com/openid/OpenID4VCI/pull/321</a> - adds a new error code to credential endpoint for the issuer to indicate it’s denying the request - please review.</div><div><br></div><div><br></div><div><br></div><div><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal"><a href="https://urldefense.com/v3/__https://github.com/openid/OpenID4VP/issues/171__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5M7MYAQT$" target="_blank">https://github.com/openid/OpenID4VP/issues/171</a> - “nonce” handling should be more explicit.</p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal"><br></p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal">Kristina pointed out that SD-JWT & W3C LDP sections do contain wording; Oliver will review it and raise a PR if it can be improved.</p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal"><br></p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal"><br></p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal"><br></p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal"><a href="https://urldefense.com/v3/__https://github.com/openid/OpenID4VP/issues/124__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5B1q2ZX0$" target="_blank">https://github.com/openid/OpenID4VP/issues/124</a> - client_id_scheme security considerations</p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal"><br></p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal">We need to come to a decision on this. The feeling when discussed at OSW seemed to be folding the client_id_scheme into the client_id in some way so the existing iss/aud fields in JWTs can be used etc. To be discussed on next week’s WG calls.</p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal"><br></p><p style="margin:0px;font-style:normal;font-variant-caps:normal;font-stretch:normal;line-height:normal;font-kerning:auto;font-variant-alternates:normal;font-variant-ligatures:normal;font-variant-numeric:normal;font-variant-east-asian:normal;font-feature-settings:normal"><br></p></div></div>-- <br>
Openid-specs-digital-credentials-protocols mailing list<br>
<a href="mailto:Openid-specs-digital-credentials-protocols@lists.openid.net" target="_blank">Openid-specs-digital-credentials-protocols@lists.openid.net</a><br>
<a href="https://urldefense.com/v3/__https://lists.openid.net/mailman/listinfo/openid-specs-digital-credentials-protocols__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5N-ulCCW$" rel="noreferrer" target="_blank">https://urldefense.com/v3/__https://lists.openid.net/mailman/listinfo/openid-specs-digital-credentials-protocols__;!!FrPt2g6CO4Wadw!PzNG-ENdz6LPSilZ35wVr5Aa8PCyte9BwQ8H04gV2xCYIXil3wt3xiLLVAdx5IjkzAE0lJQyo0Hh8cYmZFyVeneG8b9V-IWd5N-ulCCW$</a> <br>
</blockquote></div></div>
<HR><table border="0" cellspacing="0" cellpadding="0" width="100%" height="30"><BR>
<tr><BR>
<font color="#404040">The information contained in this e-mail may be confidential and/or proprietary to Capital One and/or its affiliates and may only be used solely in performance of work or services for Capital One. The information transmitted herewith is intended only for use by the individual or entity to which it is addressed. If the reader of this message is not the intended recipient, you are hereby notified that any review, retransmission, dissemination, distribution, copying or other use of, or taking of any action in reliance upon this information is strictly prohibited. If you have received this communication in error, please contact the sender and delete the material from your computer.</font></td><BR>
</tr><BR>
</table><BR>