You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
P3: broker guidance and trusted gateway assertions.
P4: SCIM lifecycle provisioning and explicit entitlement mapping.
Existing requirements remain the source for their protocol slices: #613, #583, #456, and #260. Community PRs #437 and #467 stay open while the shared contract is stabilized.
What to build
Introduce a staged identity federation architecture that keeps protocol verification in provider adapters while centralizing trusted-provider resolution, authority pinning, subject resolution, access/provisioning policy, identity binding, account-state guards, profile synchronization, principal construction, audit, and session creation in SkillHub.
The formal design is tracked in
docs/21-unified-identity-federation-design.mdand will be reviewed separately before the core migration is merged.Acceptance criteria
big-mainand validated on the test environment before maintainers consider merging tomain.Delivery order
Existing requirements remain the source for their protocol slices: #613, #583, #456, and #260. Community PRs #437 and #467 stay open while the shared contract is stabilized.
Blocked by
None - can start immediately.