← Back to the capability index
Identity · identity.oidcOIDC Authentication
Source evaluation — counted evidence Pro
Evidence by type
| Evidence type | Detail | Result |
|---|---|---|
| Route entries & proving tests | 6 route entries | 20 proving tests (implemented: 6) |
SDK coverage
| SDK | Status | Entry points | Note |
|---|---|---|---|
| honua-sdk-js | covered | HonuaOAuth2Provider (src/core/auth/oauth2-provider.ts) | — |
| honua-sdk-dotnet | covered | Honua.Sdk.Admin.IHonuaAdminIdentityClient.CreateOidcProviderAsync, Honua.Sdk.Admin.IHonuaAdminIdentityClient.TestOidcProviderAsync | — |
| honua-sdk-python | not-covered | — | — |
Executable samples
No executable sample published for this capability yet.
Known gaps
Gaps are attached at the category level (cap/identity label), not the individual capability key — none of the open issues in this category parsed a capability key matching this specific capability (honua-io/honua-evidence#5).
- #346 Multi-tenancy: schema-per-tenant isolation with scoped keys and usage metering
- #1273 Epic: non-functional parity (CRS/datum fidelity, gov auth, licensing mapping)
- #1275 Government auth: SAML, CAC/PIV, FIPS, row/field-level security
- #3430 fix(mcp): authenticate OAuth before tenant resolution and canonically bind sessions
- #3431 fix(mcp): preserve OAuth scope narrowing through Studio and approved operation replay
- #3454 feat(identity): application-scoped scene grants, origin restrictions, and per-grant usage
- #3474 fix(mcp): make model-facing control-plane tools proposal-only and authorization-bound
Raw receipts
- capability-keys.v1.json — canonical key definition for
identity.oidc. - capability-matrix.v1.json — honua-server's Phase-A evidence snapshot (entry/test counts, CITE, parity, interop, geobench).
- sdk-js coverage · sdk-dotnet coverage · sdk-python coverage
- honua-samples run-samples CI — executable sample run history.
- docs/cite-status.md — CITE evidence freshness ("Last reviewed" date + source sha).
- data/producers/dr-drills/ · data/producers/live-canary/ — pushed evidence envelopes (see docs/producer-contracts.md).
- capability-matrix.v1.json — the full enriched aggregate backing this page.