I-D Action: draft-hardt-email-verification-02.txt
| Newsgroups | gmane.ietf.announce |
|---|---|
| Message-ID | <178767735969.524310.9334636351765877803@dt-datatracker-786f84c586-vck88> |
Internet-Draft draft-hardt-email-verification-02.txt is now available.
Title: Email Verification Protocol
Authors: Dick Hardt
Sam Goto
Name: draft-hardt-email-verification-02.txt
Pages: 40
Dates: 2026-08-25
Abstract:
This document defines the Email Verification Protocol (EVP), the
HTTP-level protocol by which a browser obtains a signed email
verification token from an issuer and presents it to a relying party
(RP). The protocol enables web applications to verify that a user
controls an email address without sending a verification email. It
uses a three-party model in which the browser intermediates between
the RP and the issuer, hiding the RP's identity from the issuer and
supporting private, per-RP email addresses to prevent cross-site
correlation.
This document covers issuer discovery, the token issuance request,
the Email Verification Token (EVT) and Key Binding JWT (KB-JWT)
formats, and token verification. The browser API — how the user
selects an email address and how the token is delivered to the RP —
is defined in the companion W3C Email Verification API
([EVP-Browser]).
The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-hardt-email-verification/
There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-hardt-email-verification-02.html
A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-hardt-email-verification-02
Internet-Drafts are also available by rsync at:
rsync.ietf.org::internet-drafts
_______________________________________________
I-D-Announce mailing list -- [email protected]
To unsubscribe send an email to [email protected]