Shouldn't webauthn can do this already? why a separate proposal to do this again?
https://github.com/w3c/webauthn/issues/199#issuecomment-2669...
Importantly, the presence of attestation in webauthn could potentially compromise privacy or user choice in certain cases. DBSC has zero support for that.
You could certainly use a webauthn credential to establish a DBSC session though.