Open callahad opened 10 years ago
As part of this work, we should specify the email address format we use and make sure we check it everywhere. This has security implications.
Is there value in making a very explicit list of things that change? That seems to not be mentioned here, yet.
Since some of the changes in the JWS area are quite subtle, this would make a useful resource.
Goal
BrowserID's data formats should align with the specifications from the IETF's JavaScript Object Signing and Encryption (JOSE) and Web Authorization Protocol (oauth) Working Groups to minimize fragmentation and foster interoperability with future tools and libraries.
Define
~
?Implement
Validate
Finish