Solid-OIDC is the authentication specification for the Solid ecosystem, extending OpenID Connect with decentralised identity so a user authenticates with their own WebID and identity provider rather than a centralised platform. It issues DPoP-bound access tokens that resource servers (Solid Pods) verify, enabling a user to control which applications access their personal data store. It is the identity layer that makes Solid’s separation of identity, data, and application possible.
Content
- It issues DPoP-bound access tokens that Solid Pods verify, letting users grant or revoke application access to their personal data stores. As a core component of Solid, it realises the architecture’s separation of Digital Identity, data storage, and application logic, ensuring that authentication does not bind a user to any single vendor.