W3C Invites Implementations of the Web Authentication: An API for accessing Public Key Credentials Level 1

The Web Authentication Working Group invites implementations of the Web Authentication: An API for accessing Public Key Credentials Level 1 Candidate Recommendation. This specification defines an API enabling the creation and use of strong, attested, scoped, public key-based credentials by web applications, for the purpose of strongly authenticating users. Conceptually, one or more public key credentials, each scoped to a given Relying Party, are created and stored on an authenticator by the user agent in conjunction with the web application. The user agent mediates access to public key credentials in order to preserve user privacy. Authenticators are responsible for ensuring that no operation is performed without user consent. Authenticators provide cryptographic proof of their properties to relying parties via attestation. This specification also describes the functional model for WebAuthn conformant authenticators, including their signature and attestation functionality

Comments

Popular posts from this blog

XML Signature Syntax and Processing Version 2.0 Note Published

Latest W3C Advancements in 2026: Shaping the Future of Web Data, Security, and AI

Bing in 2026: Growing Market Share, Copilot Integration, and Why You Should Optimize for It Now