Skip to main content

38 docs tagged with "for-product-owners"

View all tags

Attribute enrichment

Roadmap: optional enriched claims beyond standard OIDC profile - organisation, age brackets, residency, postal address - each requiring explicit user consent.

Breached password detection

LuxID checks passwords against breach intelligence at registration and reset, blocking compromised credentials before they reach your users' accounts.

Certification and accreditation

LuxID's own certifications and accreditations, and Partner certification expectations by sector for high-assurance and regulated integrations.

Change management and roadmap

How LuxID communicates platform changes to Partners: change categories, notification windows, deprecation policy, communication channels and roadmap visibility.

Concepts and fundamentals

Shared vocabulary and mental model for architects, senior developers, and security engineers integrating with LuxID.

Consent screen design

How the LuxID consent screen works, what your application name and logo contribute, per-claim labelling, and tone-of-language guidance.

Features

Overview of LuxID value-add features beyond basic OIDC login: MFA, passkeys, identity verification, SSO, security signals, and more.

Frequently asked questions

Frequently asked questions about integrating LuxID: onboarding, protocol support, tokens, claims, MFA, LuxID Verified, LuxID Pro, compliance, and operations.

GDPR and data protection

GDPR guidance for LuxID Partners: controller and processor roles, lawful basis, data minimisation, user rights, breach notification and cross-border transfers.

Get started

Orientation for developers and IT leads integrating with LuxID: what this section covers, two integration ramps, and where to begin.

Governance, trust and compliance

Overview of LuxID's legal structure, trust framework, compliance obligations and Partner governance for enterprise and regulated integrations.

How to read this documentation

Mental model for navigating the LuxID developer documentation: five layers, persona-based reading paths, and one-sentence summary per top-level section.

Legal agreements and templates

LuxID Agreement structure, why no separate DPA is needed, privacy notice template and brand usage terms for LuxID integrations.

Login button guidelines

The official LuxID sign-in button: the four modes, sizes and spacing, allowed text in each language, contrast rules, and CSS patterns.

LuxID as OpenRoaming IdP

LuxID acts as an OpenRoaming Wi-Fi identity provider, letting users roam onto participating networks in Luxembourg without re-authentication.

LuxID Console

Overview of the LuxID Console - the operational portal for Partner administrators to manage Applications, credentials, logs, and branding.

LuxID developer documentation

Landing page for the LuxID developer documentation: positioning, supported standards, top-level navigation, and persona entry points.

LuxID onboarding

What LuxID is, its governance structure, ecosystem role in Luxembourg, and the use cases it is designed for.

Multi-factor authentication

LuxID MFA methods (OTP, TOTP, passkeys, LuxTrust), token claims amr and acr, minimum assurance configuration, step-up flows, and recovery paths.

OIDC vs SAML decision guide

Decision matrix and flowchart to help IT admins choose between OpenID Connect and SAML 2.0 when integrating LuxID with an off-the-shelf tool.

Overview

What the Quick Integrations section covers, the 5-step template every guide follows, and how to know you are in the right place.

Passwordless and passkeys

WebAuthn/FIDO2 passkeys on LuxID: device binding, platform and roaming authenticators, token claims, fallback behaviour, and phishing resistance.

Plan and design

Architectural decisions to make before writing production code: protocol, required auth_level, MFA, Sphere, session strategy, logout, and branding.

Privacy and consent

Data minimisation, explicit consent, revocability, Sphere-based pseudonymisation, and GDPR alignment in LuxID.

Roles in the ecosystem

The LuxID domain model: User, Organisation, Partner, Application, Sphere, Subscription, Group, Claim, Consent, and Federation explained with worked examples.

Security overview for assessors

Entry point for security and compliance officers assessing LuxID: responsibility split, key controls, retention, and where each claim is documented.

Security signals and risk scoring

LuxID evaluates each sign-in against contextual security signals and surfaces a qualitative risk indicator as an ID Token claim for Partner use.

Service provider onboarding

End-to-end journey for becoming a LuxID Partner: from first contact through KYB, agreement, UAT integration, go-live review to production credentials.

Single sign-on and LuxID Pro

Consumer SSO across LuxID-enabled apps and LuxID Pro enterprise federation: Sphere boundaries, domain routing, corporate IdP integration, token claims.

SLA and support

LuxID service-level commitments for Partners: availability targets, maintenance windows, incident severities, support channels, and DORA considerations.

Trust framework

LuxID's legal entity structure, responsibility allocation between operator, Partners and users, assurance model, audit obligations and security baseline.

Universal Login

LuxID's hosted login page: redirect-based authentication, branding boundaries, session reuse, and why Partners should never build their own login form.

Universal Login UX

Why redirect-based login is safer, what the LuxID hosted page guarantees, branding boundaries, mobile/desktop differences, and session reuse behaviour.

User journey patterns

End-to-end sequence diagrams for first-time sign-in, returning sign-in, MFA challenge, LuxID Verified, LuxID Pro federation, account linking, and logout.

UX and branding

Design and branding guidelines for integrating LuxID sign-in consistently, accessibly, and in a way users across Luxembourg recognise and trust.