matrix-org / matrix-org/matrix-spec
Identity services should be able to revoke all their keys on a whim
- Dominant language
- HTML
- Stars
- 330
- Forks
- 150
- Avg merge
- 2h 21m
- Merged PRs (30d)
- 3
Description
Currently they can't because `/isvalid` needs to say a key is valid forever if it is indeed valid, otherwise homeservers may unintentionally reject 3rd party invite events.
Some discussion is here: https://github.com/matrix-org/matrix-doc/pull/1505
This is probably a room v2 thing.
Contributor guide
Research direction
Start by reading the /isvalid requirement and the linked matrix-doc PR #1505; examine how the proposed room v2 behavior could support identity-service key revocation without causing homeservers to reject third-party invites. The issue names no files or tests, and its completion criteria remain to be defined through protocol design.
Written by the indexing model from the issue text.
Assessment
- Domain
- backend-api-design, security
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100