Markdown Version | Recording 1 | Recording 2

Session Date/Time: 07 May 2024 16:00

OAUTH

Summary

This session provided an update on FedCM (Federated Credential Management), a W3C Web Platform API designed to assist identity federation flows in browsers while preserving user privacy and eliminating passive tracking methods (like third-party cookies, link decoration, and redirects). The presentation covered FedCM's high-level goals, API structure from both Relying Party (RP) and Identity Provider (IDP) perspectives, current implementation status, and future work streams. A significant portion of the discussion focused on the potential impact and necessary integration work with OAUTH and OpenID Connect specifications, particularly regarding token semantics and broader authorization flows.

Key Discussion Points

Decisions and Action Items

No formal decisions were made in this session. The discussion was an informational update and a call for engagement.

Action Items:

Next Steps

The primary next steps involve continued collaboration between the W3C FedCM efforts and the IETF OAUTH/OpenID Connect community. This includes:


Session Date/Time: 07 May 2024 16:00

OAUTH

Summary

This session provided an update on FedCM (Federated Credential Management), a W3C Web Platform API designed to assist identity federation flows in browsers while preserving user privacy and eliminating passive tracking methods (like third-party cookies, link decoration, and redirects). The presentation covered FedCM's high-level goals, API structure from both Relying Party (RP) and Identity Provider (IDP) perspectives, current implementation status, and future work streams. A significant portion of the discussion focused on the potential impact and necessary integration work with OAUTH and OpenID Connect specifications, particularly regarding token semantics and broader authorization flows.

Key Discussion Points

Decisions and Action Items

No formal decisions were made in this session. The discussion was an informational update and a call for engagement.

Action Items:

Next Steps

The primary next steps involve continued collaboration between the W3C FedCM efforts and the IETF OAUTH/OpenID Connect community. This includes: