eudi-doc-architecture-and-reference-framework icon indicating copy to clipboard operation
eudi-doc-architecture-and-reference-framework copied to clipboard

User ability to check Wallet instance authenticity and security must not be considered

Open GSMA-EIG opened this issue 7 months ago • 0 comments

§ 6.5.2.1: “The User verifies that the Wallet Instance (i.e., the application the User is installing) is genuine and authentic and does not contain any malware or other threats.” This requirement puts a lot of responsibilities on the shoulders of the user. This expectation is not realistic as all users may not have the skills to perform all the checks needed to verify the authenticity and security of a Wallet Instance.

GSMA-EIG avatar Jul 02 '24 17:07 GSMA-EIG