Section 4.1 states that:
The Credential Issuer MUST support metadata retrieval according to Section 12.2.2 of [OIDF.OID4VCI]. The Credential Issuer metadata MUST include a scope for every Credential Configuration it supports.
Does this effectively mean that implementing HAIP requires issuers to have public information on all credential types and configurations it supports? Or is there a way to comply with HAIP while making that information only available to authorized entities.
Section 4.1 states that:
Does this effectively mean that implementing HAIP requires issuers to have public information on all credential types and configurations it supports? Or is there a way to comply with HAIP while making that information only available to authorized entities.