Call for Consensus (CFC): Comments on review of a Web Authentication Specification

Colleagues:
 
This is a Call for Consensus (CfC) to the Accessible Platform Architectures (APA) Working Group testing for agreement on a formal comment to Web Authentication: An API for accessing Public Key Credentials Level 2 W3C Candidate Recommendation Snapshot. 
https://www.w3.org/TR/webauthn-2/.

The document was authored by The Web Authentication Working Group (https://www.w3.org/Webauthn/). An accessibility review was requested of the APA as part of our role in performing horizontal review of W3C documents for accessibility concerns.

It was reviewed by APA member Paul Grenier who proposed the following comment (https://lists.w3.org/Archives/Public/public-apa/2020Dec/0021.html):
I have concerns that could be best summarized in a new section "Accessibility Considerations" which could follow "Security Considerations" or "Privacy Considerations" in document order. References to timing considerations should be updated to reference this new subheading. See editor's draft https:/w3c.github.io/webauthn/. Additionally, based on theaccessibility topics below, notes could be added to the appropriate sections (e.g., registration).

Proposed topics for "Accessibility Considerations":
1. Public key credentials must not be restricted to biometric data alone.
2. Registration should provide affordances for users to complete authorization gestures correctly. This could involve naming the authenticator, choosing a picture to associate with the device, or entering freeform text instructions.
3. Ceremonies that rely on timing must follow WCAG Guideline 2.2 Enough Time (https://www.w3.org/WAI/WCAG21/Understanding/enough-time).
 
 
***Action to Take***
 
This CfC is now open for objection, comment, as well as statements of support via email. Silence will be interpreted as support, though messages of support are certainly welcome.
 
If you object to this proposed action, or have comments concerning this proposal, please respond by replying on list to this message no later than  Wednesday 27 January at 23:50 (Midnight) Boston Time.
 
NOTE: This Call for Consensus is being conducted in accordance with the APA Decision Policy published at:
http://www.w3.org/WAI/APA/decision-policy

Becky & Janina
co-chairs APA Working Group

Becky Gibson | Sr. Accessibility Strategist
Knowbility.org
becky@knowbility.org
Pronouns: she/her/hers

Janina Sajka
https://linkedin.com/in/jsajka

Linux Foundation Fellow
Executive Chair, Accessibility Workgroup:    http://a11y.org

The World Wide Web Consortium (W3C), Web Accessibility Initiative (WAI)
Co-Chair, Accessible Platform Architectures    http://www.w3.org/wai/apa

Received on Thursday, 21 January 2021 01:17:30 UTC