Skip to content

Standards & References

RAMP builds on established standards rather than reinventing them. Every standard below links to its canonical source — and the same registry links the first mention of each standard inline throughout the docs, so a reference can never drift between this page and the prose. To add or repoint a standard, edit the single registry entry in website/src/data/standards.mjs.

StandardWhat it is
biscuit Biscuit authorization tokens
C2PA Coalition for Content Provenance and Authenticity
ISO 3166 Country codes (alpha-2)
RFC 2119 Key words for requirement levels (MUST/SHOULD/MAY)
RFC 3161 X.509 Time-Stamp Protocol (TSP)
RFC 3339 Date and Time on the Internet: Timestamps
RFC 3986 URI: Generic Syntax
RFC 6648 Deprecating the "X-" Prefix in application protocols
RFC 7252 Constrained Application Protocol (CoAP)
RFC 7515 JSON Web Signature (JWS)
RFC 7517 JSON Web Key (JWK)
RFC 7519 JSON Web Token (JWT)
RFC 7638 JSON Web Key (JWK) Thumbprint
RFC 7800 Proof-of-Possession key semantics for JWTs (cnf)
RFC 8032 Edwards-Curve Digital Signature Algorithm (EdDSA / Ed25519)
RFC 8785 JSON Canonicalization Scheme (JCS)
RFC 9052 CBOR Object Signing and Encryption (COSE)
RFC 9421 HTTP Message Signatures
RFC 9449 OAuth 2.0 Demonstrating Proof of Possession (DPoP)
RFC 9635 Grant Negotiation and Authorization Protocol (GNAP)
RFC 9676 LEX: a URN namespace for sources of law
RSL Really Simple Licensing
SPDX Software Package Data Exchange license list
W3C Trace Context Distributed trace context propagation