Add record identifiers page - #112
Draft
stevenvegt wants to merge 5 commits into
Draft
Conversation
Describes what record identifiers can disclose and how receivers recognize the same record across systems. Defines which identifier schemes are acceptable, with examples, and allocates the requirements to the level that owns each decision: trust framework, information standard, or vendor. Assisted-by: AI
Gives notification-spec authors a citable precondition: with REQ-02 and REQ-03 met, an id-only payload discloses exactly one opaque reference, while an empty payload forces a search that can return more records than the notification concerned. Also drops the reference to the earlier draft from the intro. Assisted-by: AI
Assisted-by: AI
…rements Assisted-by: AI
Move the requirements before the examples that illustrate them and split the examples: scheme examples stay under the schemes, the requirement examples follow the rules. Rewrite the prose for plain English throughout. Two changes go beyond wording. REQ-03 now forbids deriving a record identifier from a real-world entity identifier at all, keyed or not, because a keyed derivation from a BSN turns every record identifier into a pseudonym of the person. REQ-06 is renamed from identity claim verification to identifier authenticity, and no longer refers to the mechanisms of REQ-05 by letter. Assisted-by: AI
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Adds a page on record identifiers: what they can disclose, and how receivers recognize the same record across systems.
Status
Draft for working-group review. Open issues are listed at the end of the page: key custody and rotation, audience-scoped notification design, a trust-framework-designated system URI versus urn:ietf:rfc:3986, and alignment with Nictiz Objectidentificatie.
Notes