Closed hannestschofenig closed 4 weeks ago
Authentication and authorization is implementation-specific, and out of scope of the SCITT Architecture.
This is not correct if we also consider SCRAPI
SCRAPI says Auth is, may or isn’t required on specific endpoints, but doesn’t specify how it’s implemented. Is that inconsistent?
This is not correct if we also consider SCRAPI