Closed reinkrul closed 1 month ago
There's no changes required for the code. Maybe this would be an issue for nuts-specification? Maybe it could only be an addition to RFC021#security considerations?
Part of solution architecture. Should be on wiki.
Allowed/disallowed based on consent stored in local or external system, using OAuth2 service-to-service flow or OpenID4VP with Presentation Exchanges.
@woutslakhorst can you further specify this epic?