Open
Description
Not for the current maintenance WG, but we might want to figure out ways of removing status from a VC for certain use cases. For example:
- Should checking revocation be rare?
- Should status lists be selectively NOT disclosed by default?
- Should we suggest stronger holder-based delivery of status lists? If so, how do we bind the credential to the status list?
- Should we more aggressively move towards ZKPs for proof of non-revocation.
- Should revocation be a publicly accessible endpoint?
Questions like this have been explored before in the group, but given https://nophonehome.com/ -- it might be good to discuss this problem space and new developments.