Re: [OAUTH-WG] Presenting Selective Disclosure JWT (SD-JWT)

2022-06-24 Thread David Chadwick
Hi Kristina Yes I realise that if the RP knows the schema then it will know the structure of the VC. In cases where an Issuer issues more than one type of VC then hiding the claims names (using your terminology) does add value. Remember also that the schema will

Re: [OAUTH-WG] Presenting Selective Disclosure JWT (SD-JWT)

2022-06-24 Thread David Chadwick
Hi Denis I tend to agree with you. Sending the same JWT to multiple different RPs is providing them all with a correlating handle and this drawback should be pointed out. Kind regards David On 23/06/2022 18:04, Denis wrote: Hi Danie

Re: [OAUTH-WG] Presenting Selective Disclosure JWT (SD-JWT)

2022-06-24 Thread Nikos Fotiou
Hi, I was wondering what is the reason for introducing the sd_digests claim. I think it complicates integration with existing systems. For example, I am pretty sure that the VC included in Example 4 is wrong. Since the verifier can learn from the SD-JWT-RELEASE which claims are hashed, why is it