specs/auth/authenticate/v0_2/payload
library
Classes
-
Payload
-
The subject presents a previously-issued challenge along with the framework
proof
that binds the document to their VID. The proof IS the authentication. 0.2 adds the
optional sessionKey member, a did:key VID the consumer binds to the created
session so later documents in that session can be signed with it instead of the
subject's own key.
-
Response
-
Issued by the auth service after verifying the proof on the authenticate document.
Carried in a Trust Task document whose type is
https://trusttasks.org/spec/auth/authenticate/0.2#response.
-
Session
-
A logical authentication context bound to a subject. Producers and consumers
exchange Session-shaped data in challenge issuance, authentication responses, and
introspection (whoami).
-
TokenBundle
-
An access token (typically short-lived JWT) paired with an optional refresh token
(typically long-lived opaque string). The shapes follow OAuth 2.0 (RFC 6749 §5.1)
conventions but are not coupled to any particular OAuth profile.
Typedefs
-
Ext
= Map<String, dynamic>
-
Vendor-namespaced extension object per SPEC.md §4.5.1. Each immediate key MUST be a
reverse-DNS namespace; structure under each namespace is opaque to the framework.