Re: [webauthn] Fix #622: Clarify PublicKeyCredentialEntity name descriptions

In normal scenarios, I agree that RP should be setting the name but that is its choice. 

User has one work account and one private account or two people share an authenticator: These are multiple accounts per RP case and yes, if RP supports it, it should set the name.

For RP who don't want to support such scenario, like may be it is an bank/enterprise where they distribute the keys and may want to support only one account per RP, it may not want to set user information due to privacy reasons. 



-- 
GitHub Notification of comment by akshayku
Please view or discuss this issue at https://github.com/w3c/webauthn/pull/666#issuecomment-354518753 using your GitHub account

Received on Saturday, 30 December 2017 01:02:05 UTC