Episode 99: OpenID Provider Commands: New JWT Tokens for RP Acct Mgt
March 27, 2025 · 1 min read
“OpenID Provider Commands” is a new proposed protocol via Dick Hardt and Karl McGuinness which introduces a mechanism for delivering backchannel “command tokens” (a JWT) that allows an OpenID Provider (OP) to send the following messages to an OpenID Relying Party (RP):
🔑 Activate an account 🔄 Maintain an account ⏸️ Suspend an account 🔓 Reactivate an account 📦 Archive an account ♻️ Restore an account ❌ Delete an account 🚫 Unauthorize an account In this episode we’ll hear from the authors why they think this new protocol is needed, and why their solution is the right design for the Internet.
