Open-Credentialing-Initiative / Digital-Wallet-Conformance-Criteria

Conformance Criteria for Digital Wallets | https://open-credentialing-initiative.github.io/Digital-Wallet-Conformance-Criteria/latest
https://open-credentialing-initiative.github.io/Digital-Wallet-Conformance-Criteria/latest
Apache License 2.0
1 stars 2 forks source link

review DIDComm requirements #79

Closed bluesteens closed 1 year ago

bluesteens commented 1 year ago

Steering: Proposal Summary

The implementation detail of DIDComm has not been specified yet. OCI needs to address this either through amendments to the conformance criteria or conformance program to enable feasible wallet provider audits.

Phase 1: address auditors in Conformance Program Phase 2: address the DIDComm content

#

Steering: Publication Summary

Used to present completed work to Steering for approval to publish. Discuss the work that was completed in reference to the above proposal. Include any differences from the proposal and why. use [GitHub Preview](https://htmlpreview.github.io/) to show final state of documents along with pull requests (if needed). #


Detailed Description: see PR, incl. comments

We need to remember to check if the Issuer Criteria are affected, too.


Triage:

Affected Parties (help determine Sunrise/Sunset):

Affected OCI Artifact

Change Category (Guides Steering Review)

- Steering/Industry Review

- Steering/Industry Notification

Communication

strumswell commented 1 year ago

I would also like to add that the current DIDComm sections don't add anything meaningful to the specification at all. It is a mere "We like this tech and we want to work with it!" without actually going into detail on how wallets are supposed to use this tech. I understand that removing this now might not hit the mark which is why I opted for marking a lot of it as optional and/ or added a hatch for alternative technologies we are currently using (see credential issuance). Those points still stand even without the upcoming audit.

bluesteens commented 1 year ago

P&A call, Aug 10: DIDComm is to stay the only option in wallet confo criteria (no watering down); question is whether to add footnote in Confo Criteria or add instructions (maybe sunset date) in Confo Prgrm

bluesteens commented 1 year ago

14.9. P&A: edits in DWCC standardized direct wallet-to-wallet remove: It can be used to implement custom DIDComm flows meanwhile bearing in mind that these might be off-standard in the future.

IF005 Issuance of Credentials via DIDcomm with Encrypted Messaging Envelope as specified in the DIDComm Messaging Specification based on Aries Protocols

check IF003 Spherity ref or OCI ref?

bluesteens commented 1 year ago

DWCC edits included in PR as discussed. re IF003: see https://github.com/Open-Credentialing-Initiative/vc-status-2021-ldap >> this has been forked from Spherity but more work is needed for full migration to OCI. Hence, the Spherity link is the correct ref for now.