Contract
OpenAPI, schemas, errors, idempotency and versioning.
Connect Kiosks to IdPs, SSO, session binding, logout and step-up authentication.
OpenAPI, schemas, errors, idempotency and versioning.
Identity, mTLS, tokens, policy and masking.
Tracing, audit, reconciliation and acceptance evidence.
The Kiosk creates state, nonce and a correlation ID before redirecting the user to the IdP.
The IdP authenticates the user; attribute scope and step-up rules are defined by project policy.
KioWare binds subject, device and transaction session; tokens must not be logged or stored long-term on the Kiosk.
Logout, timeout and revocation are tested for success, cancellation and connectivity-loss paths.
Confirm contracts, trust boundaries, test data and UAT criteria with the architecture team.
Assess TCO, APIs, HAL, IAM, peripherals, PoC, UAT and the production roadmap with the KioWare team.