Skip to content

E2E Tests for API Security #60

@paullatzelsperger

Description

@paullatzelsperger

Feature Request

End-To-End tests should be added to assert API security in the context of DCP.

Specifically this would include:

  • using spoofed credentials
  • using spoofed DIDs
  • using mismatched scope strings
  • issuing credentials that were not requested
  • issuance messages from an spoofed issuer
  • etc.

Which Areas Would Be Affected?

e.g., DPF, CI, build, transfer, etc.

Why Is the Feature Desired?

Are there any requirements?

Who will sponsor this feature?

Please @-mention the committer that will sponsor your feature.

Solution Proposal

If possible, provide a (brief!) solution proposal.

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions