Re: [webauthn] Add "sign" extension (#2078)

> it would be great to prevent the keys from being exposed to Javascript for instance

Indeed, this is precisely the goal of this extension.

> Also support for different schemes would be ideal

We've designed the extension with some algorithm agility to hopefully support this, but this would of course still rely on standardization of algorithm IDs and data interchange formats.

-- 
GitHub Notification of comment by emlun
Please view or discuss this issue at https://github.com/w3c/webauthn/pull/2078#issuecomment-2199844977 using your GitHub account


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Monday, 1 July 2024 10:59:55 UTC