A RP wants the user to authorize a certain transaction (e.g. payment). The RP must be able to describe the authorization context to the OP (via scope or another appropriate parameter).
Questions: - how is user consent indicated to RP? - is there a relationship to https://bitbucket.org/openid/mobile/issues/17/data-to-be-signed in the sense that a digital signature could be used to implement none-repudation for this consent.