Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Document/user guide on determining the legitimacy of a DID-party #13

Open
decentralgabe opened this issue Jul 7, 2022 · 1 comment
Open
Labels
documentation Improvements or additions to documentation help wanted Extra attention is needed question Further information is requested
Milestone

Comments

@decentralgabe
Copy link
Member

There's a gap not covered by the specification(s): how do I know someone is who they claim they are?

Here are some potential strategies:

  1. By credentials they are issued, you can get a sense of who they are (e.g. a business license from a government)
  2. Tie to an existing trust establishment (e.g. using a ./well-known file to tie control to a website)
  3. A reputation system, which may include attestations and/or proof by others

I do not believe this needs to be an independent specification, though it may be worth coming up with a guiding document outlining possible approaches for determining the authenticity of a DID-party.

@decentralgabe decentralgabe added documentation Improvements or additions to documentation help wanted Extra attention is needed question Further information is requested labels Jul 7, 2022
@decentralgabe
Copy link
Member Author

Alternative: a specification or formal manner for a DID-party to say "this is how you should trust me" -- and they can surface any of the above.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
documentation Improvements or additions to documentation help wanted Extra attention is needed question Further information is requested
Projects
None yet
Development

No branches or pull requests

1 participant