Skip to content

Compatibility with OpenID Shared Signals #2608

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
chrisobdam opened this issue Jan 8, 2024 · 2 comments
Open

Compatibility with OpenID Shared Signals #2608

chrisobdam opened this issue Jan 8, 2024 · 2 comments
Labels
enhancement New feature or request openid-connect standards Issues that refer to IETF, W3C or other standards

Comments

@chrisobdam
Copy link

chrisobdam commented Jan 8, 2024

Compatibility with OpenID Shared Signals

Problem

Syncing data with services that use FA can be troublesome. The Shared Signals standard fixes that.

Solution

Implement Shared Signals https://openid.net/wg/sharedsignals/
"The Shared Signals Framework (SSF) improves API efficiency and security by providing privacy-protected, secure webhooks. It is in use by some of the largest cloud services to communicate security alerts and status changes of users, continuously and securely to prevent and mitigate security breaches. It is currently leveraged by two applications – the Continuous Access Evaluation Protocol (CAEP) and Risk Incident Sharing and Coordination (RISC) to achieve this result."

Related

@mooreds
Copy link
Collaborator

mooreds commented Jan 8, 2024

@chrisobdam which of the specifications would you like to see implemented?

@chrisobdam
Copy link
Author

https://openid.net/specs/openid-sharedsignals-framework-1_0.html This bit.
Usage of the CAEP Events.

@mooreds mooreds added enhancement New feature or request standards Issues that refer to IETF, W3C or other standards labels Jan 8, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request openid-connect standards Issues that refer to IETF, W3C or other standards
Projects
None yet
Development

No branches or pull requests

3 participants