I think that having the object with things you should store sounds like the best solution here. This way the RP can store "everything" they *might* need so that if in the future they change internal policy and require extra data, they can do so retroactively without breaking older tokens etc. -- GitHub Notification of comment by Firstyear Please view or discuss this issue at https://github.com/w3c/webauthn/issues/1556#issuecomment-771241719 using your GitHub account -- Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-configReceived on Monday, 1 February 2021 23:50:29 UTC
This archive was generated by hypermail 2.4.0 : Tuesday, 5 July 2022 07:26:42 UTC