Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add important privacy/security considerations for DCQL #300

Open
danielfett opened this issue Oct 31, 2024 · 2 comments
Open

Add important privacy/security considerations for DCQL #300

danielfett opened this issue Oct 31, 2024 · 2 comments

Comments

@danielfett
Copy link
Contributor

  • When credential matching via claim_sets, the presence/absence of certain claims might leak data (all claims used for deciding response must be included in consent)
  • Response must be the same, whether there is no match for credentials or the user didn't consent.
@danielfett
Copy link
Contributor Author

Also, issue #300 🎉

@bc-pi
Copy link
Member

bc-pi commented Oct 31, 2024

Also, issue #300 🎉

This is that, no?

@Sakurann Sakurann changed the title Add important security considerations for DCQL Add important privacy/security considerations for DCQL Nov 5, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants