UMA learns how to simplify, simplify
It seems like a good time to review where we’ve been and where we’re going in the process of building User-Managed Access (UMA). The introduction to our draft protocol spec reads: The User-Managed...
View ArticlePrivacy nutrition labels
The recent Symposium on Usable Privacy and Security, SOUPS 2009, seemed to cover a whole lot of interesting topics. One of these days I hope to attend for real — but failing that, I’m just working my...
View ArticleMaking change
So last week I made a big transition, joining Andrew Nash‘s identity services team at PayPal. (And I kind of told Twitter about it before I told y’all. Sorry about that; it’s the nature of the...
View ArticleConcordia workshop: the secret word is authz
Dave Kearns asks, I deliver — in two parts (so far)… Concordia workshop report Monday’s Concordia workshop at Catalyst was a surprise and a delight. We tried to make it a more interactive and intimate...
View ArticleProtectServe news: User-Managed Access group
After a few weeks’ worth of charter wrangling, I’m delighted to announce the launch of a new Kantara Initiative work group called User-Managed Access (UMA). Quoting some text from the charter that may...
View ArticleTo protect and to serve
http://www.flickr.com/photos/chicanerii/ / CC BY-NC-SA 2.0 In the last year, I’ve done a lot of thinking about the permissioned data sharing theme that runs through everything online, and have...
View Article