Technical

HTTP Signature

HTTP Message Signatures (RFC 9421) — application-level HTTP signature

An IETF standard (RFC 9421, finalized 2024) defining a mechanism for signing HTTP requests and responses. It provides application-level integrity/authenticity on top of TLS, required by PSD2 RTS-SCA for TPPs in the EU (signed with a QSealC).

See also: STET handbook

Sources