Hi Thomas,
Thanks for the comments. I have not looked at the linked doc. If you have not done so, please comment directly on the doc.
May I suggest adding to the list of collaborators the following SDOs/organizations that have been developing identity related specs:

(a) Kantara Initiative:

KI is all about identity, identity management and federation. The relevant working groups there include the User-Managed Access (UMA) for user-centric consent and Consent-Receipts.

(b) IETF:

OAuth2.0 is the current dominant method for application level authorization. The OAuth RFC does not include authentication, but there is adjacent work in OIF on OpenID-Connect that adds room for client authentication.

PS. may also want to include OASIS (SAML2.0). The majority of intra-Enterprise SSO today relies on the existing SAML2.0 infrastructure (which isn't going away anytime soon).



Hello all,

Apologies for the late notice.
In the meantime please take a look at the draft charter document for the Identity WG. Comments and suggestions are welcome. The link is below.