Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Any follow-up drafts for fully automated password change? #34

Open
dumblob opened this issue May 12, 2021 · 6 comments
Open

Any follow-up drafts for fully automated password change? #34

dumblob opened this issue May 12, 2021 · 6 comments

Comments

@dumblob
Copy link

dumblob commented May 12, 2021

See dani-garcia/vaultwarden#1691 (comment) .

@tschoffelen
Copy link

I was reading that thread yesterday and am super interested in the concept. Happy to help further develop a specification for that, but don't know whether this is the right place, or whether it should be a separate spec.

@dumblob
Copy link
Author

dumblob commented May 13, 2021

Yeah. Here I'm mainly asking for pointers to existing work on related standardizations, working groups discussing similar ideas, etc. I'm not asking for extension of this particular webappsec-change-password-url draft (that wouldn't make much sense IMHO).

@dumblob
Copy link
Author

dumblob commented Dec 29, 2021

Could anyone from W3C chime in and clarify whether there is any interest or even ongoing work on the topic?

If not, I'm considering creating a GitHub org just to build some community to brainstorm some ideas and perhaps create a draft and then push the ideas to right places (maybe even RFC as I consider credentials & other secrets handling a major part of any network communication).

I know some people who have experience e.g. with the RFC processes and people from IEEE (if that's of any use, IDK). The only major element I'm missing are big commercial players which I'd very much like to incentivize to support this whole endeavor.

Anyone?

@dumblob
Copy link
Author

dumblob commented Dec 31, 2021

ping @w3c @w3cbot @hober

@dumblob
Copy link
Author

dumblob commented Feb 6, 2022

@oliverdunk I just saw your PR #37 and thought 1Password could be interested in the automation proposed here.

Could you ping your colleagues to chime in here to get some insight how 1Password would envision such feature?

@oliverdunk
Copy link
Member

Hey @dumblob 👋 On a personal level, I definitely think something like this would be cool! I can't speak on behalf of 1Password and I don't think anyone has thought enough about this problem to be able to weigh in on it. Do feel free to ping me again if there are any developments, though - I'd love to see them.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants