Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Overview of difference between trust levels for different classes of products #14

Open
elf-pavlik opened this issue Jun 19, 2024 · 0 comments
Assignees

Comments

@elf-pavlik
Copy link
Member

Example list of various existing classes of products:

https://elf-pavlik.github.io/solid-efforts/#/?tab=products

  • OIDC Provider and SAI Authorization Agent have a critical level of trust since they allow complete impersonation
  • Solid Storage needs to be trusted with all the data hosted in that particular storage; users can have multiple storage depending on how critical they see specific data.
  • Applications are the broadest and least trusted parties. They need to request authorization from the user and be restricted to acting only within the bounds set during the authorization step.

This is very rough and only acts as a starter for this conversation.

@elf-pavlik elf-pavlik self-assigned this Jun 19, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant