Start with Identity
Protocols & Standards

John Bradley

Senior Standards Architect · Yubico · 20+ years in identity
Focus areas
WebAuthnFIDO2OpenID ConnectOAuth
Notable work
  • Co-author of WebAuthn and FIDO2 specifications
  • Co-author of OpenID Connect and multiple OAuth RFCs
  • Former board member of the OpenID Foundation

Bio

John Bradley is senior standards architect at Yubico and one of the few people whose name appears across both the federation and the authenticator halves of modern identity: OpenID Connect and OAuth on one side, WebAuthn and FIDO2 on the other. He was previously a senior technical architect at Ping Identity and served on the OpenID Foundation board.

Profile built from public specification, foundation, and employer records.

Where their work shows up

Passkeys work because the credential is bound to an origin and never leaves the authenticator, which is what makes phishing resistance a property of the protocol rather than a property of the user's attention. That guarantee lives in the WebAuthn and CTAP specifications he helped write. See the implementing passkeys in the enterprise guide and Yubico.

Built from public information only. This is an independent profile and is not an endorsement by, or affiliation with, the person listed. Corrections: [email protected].