Originally submitted by josephheenan (Joseph Heenan) on 2026-06-10
As discussed in https://bitbucket.org/openid/fapi/issues/726/private-key-jwt-aud-restrictions the IETF updates will result in a change to the requirements on aud values.
The working group needs to decide what approach it takes, as this could require the ecosystems that use our FAPI1 tests to do a migration, even if they're not vulnerable.
Bitbucket status: new
Bitbucket origin: issue 860
As discussed in https://bitbucket.org/openid/fapi/issues/726/private-key-jwt-aud-restrictions the IETF updates will result in a change to the requirements on aud values.
The working group needs to decide what approach it takes, as this could require the ecosystems that use our FAPI1 tests to do a migration, even if they're not vulnerable.
Bitbucket status: new
Bitbucket origin: issue 860