Weekly github digest (WebAuthn)

Issues
------
* w3c/webauthn (+2/-5/💬17)
  2 issues created:
  - See you F2F at TPAC 2026 in Kobe? Decide < 2025-06-20 (by simoneonofri)
    https://github.com/w3c/webauthn/issues/2303 [type:process] 
  - Merge changes since L3WD2 into changes since L2 (by emlun)
    https://github.com/w3c/webauthn/issues/2302 [type:editorial] [type:process] 

  11 issues received 17 new comments:
  - #2302 Merge changes since L3WD2 into changes since L2 (1 by emlun)
    https://github.com/w3c/webauthn/issues/2302 [type:editorial] [type:process] 
  - #2285 Is `hmac-secret` required for `prf` for non-CTAP authenticators (3 by emlun, savely-krasovsky)
    https://github.com/w3c/webauthn/issues/2285 [type:editorial] [stat:pr-open] 
  - #2272 Broken links in Web Authentication: An API for accessing Public Key Credentials - Level 3 (2 by dontcallmedom, timcappalli)
    https://github.com/w3c/webauthn/issues/2272 
  - #2100 UTF-8 decode should not be required for response.clientDataJSON and cData (1 by MasterKale)
    https://github.com/w3c/webauthn/issues/2100 [type:technical] [@Risk] 
  - #2086 Add support for hinting at verbiage other than "sign in" during authentication (1 by MasterKale)
    https://github.com/w3c/webauthn/issues/2086 [stat:Discuss] [subtype:FeatureProposal] 
  - #2084 Allow conditional mediation flow without username or password field, I.E. from button press (1 by timcappalli)
    https://github.com/w3c/webauthn/issues/2084 [stat:Discuss] [subtype:FeatureProposal] 
  - #2072 Support for WebDriver BiDi (1 by MasterKale)
    https://github.com/w3c/webauthn/issues/2072 [stat:Discuss] [subtype:FeatureProposal] 
  - #1688 Should an RP be able to provide finer grained authenticator filtering in attestation options? (1 by MasterKale)
    https://github.com/w3c/webauthn/issues/1688 [stat:Discuss] [type:technical] [@Risk] 
  - #1643 Use of in-field metadata not preferred (2 by aphillips, nsatragno)
    https://github.com/w3c/webauthn/issues/1643 [type:technical] [i18n-needs-resolution] [stat:pr-open] [@Risk] 
  - #1577 Support for remote desktops (3 by MasterKale, kreichgauer, nsatragno)
    https://github.com/w3c/webauthn/issues/1577 [type:technical] [@Risk] 
  - #1567 Surface platform authenticator status in the `create` (and maybe `get`) response / help RPs track UV/PA/RK (1 by MasterKale)
    https://github.com/w3c/webauthn/issues/1567 [type:technical] 

  5 issues closed:
  - Broken links in Web Authentication: An API for accessing Public Key Credentials - Level 3 https://github.com/w3c/webauthn/issues/2272 
  - Support for WebDriver BiDi https://github.com/w3c/webauthn/issues/2072 [stat:Discuss] [subtype:FeatureProposal] 
  - Allow conditional mediation flow without username or password field, I.E. from button press https://github.com/w3c/webauthn/issues/2084 [stat:Discuss] [subtype:FeatureProposal] 
  - Surface platform authenticator status in the `create` (and maybe `get`) response / help RPs track UV/PA/RK https://github.com/w3c/webauthn/issues/1567 [type:technical] 
  - Surface platform authenticator status in the `create` (and maybe `get`) response / help RPs track UV/PA/RK https://github.com/w3c/webauthn/issues/1567 [type:technical] 



Pull requests
-------------
* w3c/webauthn (+3/-1/💬8)
  3 pull requests submitted:
  - Consistently refer to COSE IDs as "int (name)" instead of "name (int)" (by emlun)
    https://github.com/w3c/webauthn/pull/2305 [type:editorial] 
  - Fix COSEAlgorithmIdentifier in section 5.4 (by lennartkloock)
    https://github.com/w3c/webauthn/pull/2304 
  - Add change history since Level 3 Working Draft 2 (by emlun)
    https://github.com/w3c/webauthn/pull/2301 

  5 pull requests received 8 new comments:
  - #2304 Fix COSEAlgorithmIdentifier in section 5.4 (2 by lennartkloock, w3cbot)
    https://github.com/w3c/webauthn/pull/2304 [type:editorial] 
  - #2301 Add change history since Level 3 Working Draft 2 (1 by emlun)
    https://github.com/w3c/webauthn/pull/2301 [type:editorial] 
  - #2298 Generalize PRF extension processing to non-CTAP authenticators (3 by MasterKale, emlun)
    https://github.com/w3c/webauthn/pull/2298 [type:technical] [subtype:extensions] 
  - #2150 Exclude all platform authenticators that use self attesation from hav… (1 by MasterKale)
    https://github.com/w3c/webauthn/pull/2150 [type:technical] [@Risk] 
  - #2097 Structured confirmation extension (1 by MasterKale)
    https://github.com/w3c/webauthn/pull/2097 [type:technical] 

  1 pull requests merged:
  - Add change history since Level 3 Working Draft 2
    https://github.com/w3c/webauthn/pull/2301 [type:editorial] 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webauthn


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Tuesday, 17 June 2025 17:00:37 UTC