Skip to main content

Age Verification: Age vs. Youth -- One is not Like the Other
draft-bab-agews-agevsyouth-00

Document Type Expired Internet-Draft (individual)
Expired & archived
Authors Gregor "Little Detritus" Bransky , Quintessence Anx , Henk Birkholz
Last updated 2026-02-09 (Latest revision 2025-08-08)
RFC stream (None)
Intended RFC status (None)
Formats
Stream Stream state (No stream defined)
Consensus boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

Solely technical measures advertised to allow for the age verification of minors online face fundamental challenges on a conceptual and implementation level. Organizational measures, on the other hand, have been established as best practices by peer groups who are both high risk and digitally savvy, which exists to protect minors. These approaches can be strengthened via technical measures, and two such candidates are the Qualified Website Authentication Certificates (QWACS), introduced by the EU as part of eIDAS 2.0 [QWACS] and potentially the work of IETF's digital emblems working group [DIEM]. Based on early analysis of the use and abuse cases as well as privacy and security considerations, we provide arguments why non-scaling organizational measures are a necessity and strengthening these with technical measures is a way to enable the security for minors online.

Authors

Gregor "Little Detritus" Bransky
Quintessence Anx
Henk Birkholz

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)