Draft minutes of UMA telecon 2022-02-10

https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2022-02-10 MinutesRoll call - Quorum: No Approve minutes - Approve minutes of UMA telecon 2021-09-09 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-09-09> , UMA telecon 2021-09-16 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-09-16> , UMA telecon 2021-09-23 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-09-23> , UMA telecon 2021-09-30 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-09-30> , UMA telecon 2021-10-14 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-10-14> , UMA telecon 2021-10-21 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-10-21> , UMA telecon 2021-10-28 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-10-28> , UMA telecon 2021-11-04 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-11-04> , UMA telecon 2021-11-18 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-11-18> , UMA telecon 2021-12-02 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-12-02> , UMA telecon 2021-12-09 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-12-09> , UMA telecon 2021-12-16 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-12-16> , UMA telecon 2021-12-23 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-12-23> , UMA telecon 2021-12-23 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2021-12-23> , UMA telecon 2022-01-06 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2022-01-06> , UMA telecon 2022-01-13 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2022-01-13> , UMA telecon 2022-01-20 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2022-01-20> , UMA telecon 2022-01-27 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2022-01-27> , UMA telecon 2022-02-03 <https://kantarainitiative.org/confluence/display/uma/UMA+telecon+2022-02-03> Deferred *Reminder: CRWeb Demo at the next Kantara LC call (Feb 16 @12PM EST)* iGrant.io <http://igrant.io/>, Gataca, and Human Colossus will demonstrate how consent notice, or data agreement as it will be called in the demo, is signed between issuers/verifiers (data controllers) with holders (data subjects). The data agreement sets a clear usage purpose, what personal data is collected, how long data is retained, and which lawful basis for processing and other information. The data agreement was initially based on Kantara Consent Receipt and now is being standardized within the ISO standard 27560. https://zoom.us/j/94897867446?pwd=YSsxdjZLMzFmUmhNd2NBMnlwbEZHZz09 <https://zoom.us/j/94897867446?pwd=YSsxdjZLMzFmUmhNd2NBMnlwbEZHZz09%3Chttps://protect-eu.mimecast.com/s/nNb1CANm4s20MkTBE7cg%3E> Review progress on Julie Use-case Report Please find the new working document here: Julie Use-case Report <https://kantarainitiative.org/confluence/display/uma/Julie+Use-case+Report> - reviewed the action plan - agreed on strategy for images what are alternative techniques for patient mediated exchange? - one challenge is that "UMA is not SMARTonFHIR" → SOF is very limited should there be a companion technical document/guidance that goes or follows the Julie report? more specificity for those who want to have this problem https://www.udap.org/ UDAP #1, client attestation → clients have a software statement with attestations from one of more other entities (trusted 3rd party). UMA can use UDAP as a valid client registration strategy UDAP #2, tiered authorization → clients provide a hint to the AS about what IDP the end user may be able to authenticate with. The AS can then federate to that IDP - or some other IDP. AN UMA AS federating to an IDP is very 'normal' UMA deployment Can/should we create some UDAP & UMA white paper or implementor guidance? UMA vs Other specification - there is a chart from a couple years ago - compare protocols & features (eg a product comparison type matrix with [image: (tick)] and [image: (error)] 's) Article: NFTs offer new method to control personal health information <https://www.eurekalert.org/news-releases/942291> Potential Future Work Items / Meeting Topics - UMA vs (OAuth, OIDC, GNAP, UDAP, ....) - compare protocols & features (eg a product comparison type matrix with [image: (tick)] and [image: (error)] 's) - Confluence clean up, archive old items and promote the latest & greatest - Review of the email-poc correlated authorization specification - A financial use-case report (following the Julie healthcare template) - either open banking or pensions dashboard - openbanking is to FHIR(data model) as FAPI is to SMARTonFHIR(authZ protocol profile) Upcoming Conferences Alec will be attending HIMSS Nancy will be at Vive the week before Are there specific messages we want to promote to those healthcare communities? - https://www.himss.org/ March 14 -18 | Orlando, FL & Digital - https://www.viveevent.com/ MARCH 6 - 9, 2022 - A *new* health IT conference | Nancy is planning to attend - Internet Identity Workshop <https://internetidentityworkshop.com/> 34 is April 26-28 - https://identiverse.com/ June 21-24, 2022 Denver, Colorado | Call for presentations is now closed AOB Attendees As of October 26, 2020, quorum <http://kantarainitiative.org/confluence/display/uma/Participant+Roster> is 5 of 9. (Michael, Domenico, Peter, Sal, Thomas, Andi, Alec, Eve, Steve) Voting: 1. Steve 2. Alec 3. Eve 4. Sal Non-voting participants: 1. Nancy 2. Scott F Regrets:
participants (1)
-
Alec Laws