User Agent Assurance
Full Title or Meme
This is an abstract concept that covers any combination of software and hardware that can be assured to faithfully represent any part of a user's presence or intentions on the web.
Context
- This extends a prior effort to specify a means to report Software Compliance Attestation for Native Apps for US Healthcare to Web Apps and devices like FIDO2.
- There are two relevant standards, both of which are up for review on 2021-0-01
- ISO/IEC 29115 Entity Authentication Assurance
- Nist SP 800-63-3B
References
- Device Integrity supporting User Authentication Use case from 2013