Weekly github digest (WebAuthn)

Issues
------
* w3c/webauthn (+0/-7/💬9)
  8 issues received 9 new comments:
  - #2418 Ensure hard-coded step references are correct (1 by emlun)
    https://github.com/w3c/webauthn/issues/2418 [type:editorial] [stat:pr-open] 
  - #2349 Feature: Allow RP to opt out of certain transports  (1 by nsatragno)
    https://github.com/w3c/webauthn/issues/2349 [stat:Discuss] [type:technical] [subtype:FeatureProposal] 
  - #2339 Update: COSE elliptic curve signatures 'in the wild' from small RustyKey® alpha-test user base (1 by emlun)
    https://github.com/w3c/webauthn/issues/2339 
  - #2337 Same PRF regardless of UV? (2 by My1, nsatragno)
    https://github.com/w3c/webauthn/issues/2337 [type:technical] 
  - #2331 Need to have authenticator-only extensions (1 by timcappalli)
    https://github.com/w3c/webauthn/issues/2331 [type:technical] [subtype:FeatureProposal] [@Risk] 
  - #2310 New `userVerification` value with conditional behavior (1 by timcappalli)
    https://github.com/w3c/webauthn/issues/2310 [stat:Discuss] [subtype:FeatureProposal] 
  - #2307 Document privacy considerations of immediate mediation (1 by timcappalli)
    https://github.com/w3c/webauthn/issues/2307 [type:editorial] 
  - #1648 Eliminate duplicate terminology (1 by emlun)
    https://github.com/w3c/webauthn/issues/1648 [type:editorial] [stat:OnGoing] [@Risk] 

  7 issues closed:
  - Ensure hard-coded step references are correct https://github.com/w3c/webauthn/issues/2418 [type:editorial] [stat:pr-open] 
  - Update: COSE elliptic curve signatures 'in the wild' from small RustyKey® alpha-test user base https://github.com/w3c/webauthn/issues/2339 
  - Need to have authenticator-only extensions https://github.com/w3c/webauthn/issues/2331 [type:technical] [subtype:FeatureProposal] [@Risk] 
  - New `userVerification` value with conditional behavior https://github.com/w3c/webauthn/issues/2310 [stat:Discuss] [subtype:FeatureProposal] 
  - Document privacy considerations of immediate mediation https://github.com/w3c/webauthn/issues/2307 [type:editorial] 
  - Eliminate duplicate terminology https://github.com/w3c/webauthn/issues/1648 [type:editorial] [stat:OnGoing] [@Risk] 
  - remoteClientDataJSON Extension Inconsistencies https://github.com/w3c/webauthn/issues/2423 [type:technical] 



Pull requests
-------------
* w3c/webauthn (+1/-0/💬3)
  1 pull requests submitted:
  - 2425  (by Brunojoe1994)
    https://github.com/w3c/webauthn/pull/2425 

  2 pull requests received 3 new comments:
  - #2419 Update hard-coded numbers in references to algorithm steps (1 by simoneonofri)
    https://github.com/w3c/webauthn/pull/2419 [type:editorial] 
  - #2377 Add "Credential Manager Trust Group (CMTG) Key" extension (2 by nsatragno, timcappalli)
    https://github.com/w3c/webauthn/pull/2377 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/w3c/webauthn


-- 
Sent via github-notify-ml as configured in https://github.com/w3c/github-notify-ml-config

Received on Tuesday, 12 May 2026 17:01:04 UTC