Wiki
Clone wikifapi / FAPI_Meeting_Notes_2019-04-03_Atlantic
FAPI WG Meeting Notes (2019-04-03)
Date & Time: 2019-04-03 14:00 UTC
Location: GoToMeeting https://global.gotomeeting.com/join/321819862
Agenda
The meeting was called to order at 14:05 UTC.
1. Roll Call
- Attending: * Nat, Dave, Anders, Danel, Brian, Brian Costello.
- Guests:
- Regrets:
3. External Organizations
3.1. IETF (Daniel)
- DPOP mechanism proposed for SPA.
- Video of OAuth meeting availabe online.
3.2. Open Banking (Dave)
- Some of the banks having problems with eIDAS certs.
- OB is exploring how CIBA can be used.
- LINK:
3.3. Berlin Group (Dave)
- Acknowledged the problem.
4. Testing & Certification
- FAPI certification suite available as of Apr. 1
5. Lodging Intent (Daniel)
- Torsten plans to wirte a blog post to further the discussion. Probably next week.
6. Draft Status (Nat/Dave)
6.1. CIBA FAPI Profile (Dave)
- Couple of outstanding issue. FInalizing attaker model.
6.2. TR Cross-Browser Payment Initiation Attack (Daniel/Torsten)
- TR-Cross_browser_payment_initiation_attack.md
6.3. TR Lodging Intent Pattern (Torsten)
- Financial_API_Lodging_Intent.md
7. Events
- IIW
- EIC
9. AOB
- We will have Atlantic call every week for sometime as we have growing number of issues.
- April 10, 24, etc. are going to be the regular call.
- April 17, May 1, etc. are agoing to bhe issues only call.
Updated