Claim is an assertion made by a Entity that the one or more values of one or more Identity Attributes of a Digital Subject (or Identity Document) which is disputed or in doubt.

Only by use of Trust can a Claim be assumed to be True as Authentication would be done by an Identity Provider (IDP) or a Verifier which involves Trust

We can for our purposes use Claim the same as we would use assertion in regards to Authentication

Examples #

Examples of the kinds of Identity Attributes that might be conveyed in a Claim:
  • A Claim could just convey an identifierβ€”for example, that the digital subject's student number is 490-525, or that the digital subject's Windows name is REDMOND \ kcameron. This is the way many existing identity systems work.
  • A Claim may make an assertion that a Digital Subject knows a given key and should be able to demonstrate this fact.
  • A Claim might convey Personally Identifiable Information β€” name, address, date of birth and citizenship, for example.
  • A Claim might simply propose that a Digital Subject is part of a certain group β€” for example, that she has an age less than 16.
  • A Claim might state that a Digital Subject has a certain Authorization β€” for example, to place orders up to a certain limit, or modify a given file.

Comment1: Claims may or may not be directed to specific Parties. (KimC, DickH, PaulT)

Comment2: A Claim is an association between a Claimant, a Digital Subject, and an Identity Attribute (PaulT)

