Weekly github digest (FedID WG topics of interest)

Issues
------
* w3c-fedid/FedCM (+0/-0/💬6)
  3 issues received 6 new comments:
  - #725 Support showing iframe origins in the UI, when they are third-party (1 by hlflanagan)
    https://github.com/w3c-fedid/FedCM/issues/725 [agenda+] 
  - #230 User identity associated with the RP should not be sent to the IDP before explicit consent is gathered (2 by geofft, johannhof)
    https://github.com/w3c-fedid/FedCM/issues/230 [design] [compatibility risk] 
  - #218 Clarify the IDP API response when the user is not signed in. (3 by jacobbogers, npm1)
    https://github.com/w3c-fedid/FedCM/issues/218 [editorial] 

* WICG/digital-credentials (+4/-5/💬6)
  4 issues created:
  - Top frame origin should be passed to client platforms and credential managers for cross-origin requests (by timcappalli)
    https://github.com/w3c-fedid/digital-credentials/issues/333 [spec] 
  - Add guidance to verifiers/issuers and clients/client platforms on cross-origin usage (by timcappalli)
    https://github.com/w3c-fedid/digital-credentials/issues/332 [spec] 
  - iframe usage text doesn't make sense (by timcappalli)
    https://github.com/w3c-fedid/digital-credentials/issues/331 [spec] 
  - Do we need a permissions policy for third-party frames for issuance? (by mohamedamir)
    https://github.com/w3c-fedid/digital-credentials/issues/327 

  5 issues received 6 new comments:
  - #332 Add guidance to verifiers/issuers and clients/client platforms on cross-origin usage (1 by npdoty)
    https://github.com/w3c-fedid/digital-credentials/issues/332 [spec] 
  - #100 Consider applying the robustness principle with regard to user agent request validation (1 by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/issues/100 [discussion] [privacy-considerations] 
  - #65 Credential Management integration (1 by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/issues/65 [spec] 
  - #40 custom-schemes.md:  point 7 should discuss how a browser api could avoid or mitigate this problem (1 by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/issues/40 [explainer] 
  - #38 [Discussion] Integrate with web wallets? (2 by hlflanagan, marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/issues/38 [enhancement] [pending closure] 

  5 issues closed:
  - Credential Management integration https://github.com/w3c-fedid/digital-credentials/issues/65 [spec] 
  - custom-schemes.md:  point 7 should discuss how a browser api could avoid or mitigate this problem https://github.com/w3c-fedid/digital-credentials/issues/40 [explainer] 
  - iframe usage text doesn't make sense https://github.com/w3c-fedid/digital-credentials/issues/331 [spec] 
  - Do we need a permissions policy for third-party frames for issuance? https://github.com/w3c-fedid/digital-credentials/issues/327 
  - explainer describes issuance as out of scope https://github.com/w3c-fedid/digital-credentials/issues/316 



Pull requests
-------------
* w3c-fedid/FedCM (+1/-0/💬1)
  1 pull requests submitted:
  - FedCM Object Token Enhancement (by pottis)
    https://github.com/w3c-fedid/FedCM/pull/771 

  1 pull requests received 1 new comments:
  - #761  FedCM Object Token Enhancement Proposal (1 by pottis)
    https://github.com/w3c-fedid/FedCM/pull/761 

* WICG/digital-credentials (+11/-7/💬19)
  11 pull requests submitted:
  - chore(README): add useful links (by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/342 
  - chore: fix links pointing to old repo (by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/341 
  - Editorial: fix link to priv/sec questionnaire (by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/340 
  - Editorial: clean up scope section (by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/339 
  - Editorial: make digital wallets out of scope (by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/338 
  - Tidied up document using tidy-html5 (by github-actions)
    https://github.com/w3c-fedid/digital-credentials/pull/337 
  - Fix mislabeling of section intended for non-government credentials (by csarven)
    https://github.com/w3c-fedid/digital-credentials/pull/336 
  - Fix cross-origin usage example text (by timcappalli)
    https://github.com/w3c-fedid/digital-credentials/pull/335 
  - chore: move old pdfs to proposals (by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/330 
  - chore: Delete horizontal-reviews/security-privacy.md (by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/329 
  - Add Permissions Policy for DC Issuance (by mohamedamir)
    https://github.com/w3c-fedid/digital-credentials/pull/328 

  9 pull requests received 19 new comments:
  - #337 Tidied up document using tidy-html5 (1 by w3cbot)
    https://github.com/w3c-fedid/digital-credentials/pull/337 
  - #335 Editorial: Fix cross-origin usage example text (1 by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/335 [agenda+] 
  - #330 chore: move old pdfs to proposals (2 by marcoscaceres, timcappalli)
    https://github.com/w3c-fedid/digital-credentials/pull/330 
  - #329 chore: Delete horizontal-reviews/security-privacy.md (2 by c2bo, marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/329 
  - #328 Add Permissions Policy for DC Issuance (5 by TallTed, marcoscaceres, mohamedamir)
    https://github.com/w3c-fedid/digital-credentials/pull/328 
  - #323 README: make readme more focused. (1 by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/323 
  - #314 Editorial: Add Contributors section (1 by marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/314 
  - #306 Define Coordinator and Client (4 by TallTed, hlflanagan, marcoscaceres)
    https://github.com/w3c-fedid/digital-credentials/pull/306 [agenda+] 
  - #156 Add request validation (2 by c2bo, hlflanagan)
    https://github.com/w3c-fedid/digital-credentials/pull/156 [agenda+] 

  7 pull requests merged:
  - chore: Delete horizontal-reviews/security-privacy.md
    https://github.com/w3c-fedid/digital-credentials/pull/329 
  - Tidied up document using tidy-html5
    https://github.com/w3c-fedid/digital-credentials/pull/337 
  - Editorial: Fix cross-origin usage example text
    https://github.com/w3c-fedid/digital-credentials/pull/335 [agenda+] 
  - Editorial: Fix mislabeling of section intended for non-government credentials
    https://github.com/w3c-fedid/digital-credentials/pull/336 
  - Add Permissions Policy for DC Issuance
    https://github.com/w3c-fedid/digital-credentials/pull/328 
  - README: make readme more focused.
    https://github.com/w3c-fedid/digital-credentials/pull/323 
  - Explainer: point to spec for scope and permissions policy
    https://github.com/w3c-fedid/digital-credentials/pull/322 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c-fedid/FedCM
* https://github.com/w3c-fedid/proposals
* https://github.com/w3c-fedid/login-status
* https://github.com/w3c-fedid/idp-registration
* https://github.com/w3c-fedid/multi-idp
* https://github.com/w3c-fedid/custom-requests
* https://github.com/w3c-fedid/active-mode
* https://github.com/w3c-fedid/delegation
* https://github.com/fedidcg/LightweightFedCM
* https://github.com/fedidcg/proposals
* https://github.com/WICG/digital-credentials
* https://github.com/privacycg/is-logged-in


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 11 August 2025 17:01:18 UTC