[Openid-specs-fapi] Issue #803: FAPI1: [ISO/IEC 25791-2 Review Comments] Add PII and definition to clause 4 (openid/fapi)

Hodari McClain issues-reply at bitbucket.org
Wed Oct 22 06:41:50 UTC 2025


New issue 803: FAPI1: [ISO/IEC 25791-2 Review Comments] Add PII and definition to clause 4
https://bitbucket.org/openid/fapi/issues/803/fapi1-iso-iec-25791-2-review-comments-add

Hodari McClain:

* Member Body / National Committee: JP/22-023
* Type: Editorial
* Subclause\(s\): 5.2.2
* Comments: The abbreviation “PII” seems to be first used here in this document “6. should not return sensitive PII in the ID Token in the authorization response, but if it needs to, then it should encrypt the ID Token”
* Proposed Change:Either rephrase “PII” to “Personally Identifiable Information \(PII\)” or “Personally Identifiable Information”.
* WG Accept / Reject: Partially accepted.  Add PII to clause 4.

‌




More information about the Openid-specs-fapi mailing list