top | item 46623880 (no title) cloudfudge | 1 month ago mTLS is no good because the target service could then uniquely identify you. I think you explicitly want a three-party scheme where the target service just accepts the idp's assertion about your age in a cryptographically secure way. discuss order hn newest sigwinch|1 month ago I feel like mTLS could still work in third-party signing.
sigwinch|1 month ago