CycloneDX / CycloneDX/specification

Potential for specification reuse within authentication property of service DataFlows

Open
#201 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
XSLT
Stars
547
Forks
93
Avg merge
7h 11m
Merged PRs (30d)
37

Description

> We've wanted to be able to document authentication requirements in CycloneDX for a while now, but as you know, it's not a simple task. We haven't had an opportunity to research existing specs yet, but the presentation exchange format looks interesting and may just work. Historically, we've supported links out to other schemas/files via CycloneDX [external references](https://cyclonedx.org/docs/1.4/json/#services_items_externalReferences). We're doubling the number of external references supported in the upcoming v1.5 release. Most of the new external references for v1.5 are [here](https://github.com/CycloneDX/specification/pull/189/files). Integration could be as simple as adding a new one for authentication requirements, or we may choose a more integrated approach. Regardless, I'd recommend creating a new ticket to discuss this, as this ticket is specific to dataflow enhancements.

_Originally posted by @stevespringett in https://github.com/CycloneDX/specification/pull/194#discussion_r1148577288_

- References
- https://github.com/ucan-wg/spec
- https://github.com/decentralized-identity/presentation-exchange

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.