Identosphere 183: VC-JOSE-COSE Candidate Recommendation • x509 for DIDs • I Bought Booze with JWT • Passkeys: A Shattered Dream
Weekly edition of the latest Self Sovereign Identity related news, development, upcoming events, and thoughtful commentary from the blog-o-sphere. Thanks for your continued support.
We Gather, You Read!
3+ years and still aggregating industry info: No Marketing, No Sponsorship, Just the top stories in the Verifiable Credentials galaxy!
Support our efforts by PayPal, or Patreon!
Upcoming
[Online] DIDComm and OpenID VC Protocols: Demonstrations and Discussion 4/30 Indicio
[Brussels] EBSI Ecosystem Day 5/7 [Register]
[Wellington] NZ Government Data Summit 05/07
[London/Hybrid] MEF CONNECTS ID & DATA 05/21
[Las Vegas] Identiverse 05/28-31 (Kaliya Speaking)
[Santa Clara] PERP ‘24: 2024 USENIX Conference on Privacy Engineering Practice and Respect 06/3-4 USENIX
[Santa Clara, CA] Governing Identity, Respectfully 06/04 Wendy Seltzer, Usenix
[Berlin] Digital ID, Web3, and Metaverses EICC 06/4-7 (Kaliya is Speaking)
Seeking Feedback
Do you use #DIDComm? We want to hear about it! 2024-04-25 DecentralizedID
https://forms.gle/1ipZ2yJAZcaXfEoK7
IIW Reviews
MISSION: Report IIW38
Identity.com Recap from the 38th Internet Identity Workshop (IIW)
Northern Block: A Summary of Internet Identity Workshop #38
Adobe/C2PA/CAI: Internet Identity Workshop 38
Mike Jones: OpenID Federation Session at April 2024 IIW
Celebrating five years of scaling digital credentialing at the TLN Unconference 2024-04-18 Stephanie King
“The missions of the T3 Network and TLN are very closely aligned. While there are a lot of synergies between T3 and TLN, both networks attract different stakeholders to the conversation around digital credentials and LERs,” said Taylor Hansen, executive director, policy and programs, at the U.S. Chamber of Commerce Foundation’s T3 Innovation Network.
Governance
[Youtube] Problems Worth Solving in SSI Land (with Daniel Hardman)
Mathieu Glaude and Daniel Hardman discuss the blurred lines between personal and organizational identity. They suggest replacing 'governance' with 'empowerment' and highlight the challenges in managing relationships, roles, and identifiers within organizations. Hardman emphasizes the importance of understanding context in identity management, challenging the current distinction between personal and organizational identities.
Web Standards
[tweet] proud to announce VC-JOSE-COSE is now in Candidate Recommendation at the W3C @decentralgabe
Securing Verifiable Credentials using JOSE and COSE 2024-04-25 Michael Jones (Self-Issued Consulting), Michael Prorock (Mesur.io), Gabe Cohen (Block); Verifiable Credentials Working Group
This specification defines how to secure credentials and presentations conforming to the Verifiable Credential data model [VC-DATA-MODEL-2.0] with JSON Object Signing and Encryption (JOSE), Selective Disclosure for JWTs [SD-JWT], and CBOR Object Signing and Encryption (COSE) [RFC9052]. This enables the Verifiable Credential data model [VC-DATA-MODEL-2.0] to be implemented with standards for signing and encryption that are widely adopted.
Using X.509 Certs for DID Provenance 2024-04-25 Phil Windley
The abundance of X.509 certificate authorities who already perform identity proofing for businesses provides a rich resource that can be leveraged to boot the verifiable data ecosystem.
[DIDComm, youtube] Better Interoperability and Security for IoT Through DIDComm with Colton Wolkins 2024-04-25 Indicio
Indicio Senior Software Engineer Colton Wolkins joins Identity Insights to discuss recent breakthroughs in connecting to IoT devices through DIDComm. He breaks down why you would want to use DIDComm for IoT, how it works, and offers a quick demonstration of the technology in action.
Our amazing #ReactMiamiConf workshop “How I Bought Booze with JSON Web Tokens” with @techgirl1908 and @blackgirlbytes was a blast 2024-04-26 TBD Developers
Participants leveled up their VC issuing skills and grabbed exclusive TBD merch. Stay tuned for our next live workshop: https://tbd.website/blog
Organizational News
Introducing the Telecom Decentralized Identity Network, a New Approach to Security, Efficiency and Privacy 2024-04-25 Hyperledger Foundation
TDIDN delivers a comprehensive architecture for implementing DIDs on a blockchain, through two related projects from the Hyperledger Foundation:
Hyperledger Aries provides a complete toolkit for building decentralized identity solutions. Aries can issue, store and present verifiable credentials with maximum privacy, and establish confidential, ongoing communication channels for rich interactions.
Hyperledger Indy supports digital identities rooted in blockchains that are interoperable across administrative domains, applications, and any other silo.
Hyperledger Aries provides the agent side of the decentralized identity application that reads and writes to the underlying DID blockchain provided by Indy.
Climbing the mahi mountain | April Newsletter DigitalID.NZ 2024-04-24
Over a third of DINZ’s 100 strong membership (a warm welcome to ABCorp, Co-operative Bank and RBNZ our newest members) participate in the DISTF Working Group where a draft response to the targeted consultation on the final revision of the Trust Framework Rules is well underway. Additionally, responses to OPC’s Biometrics code exposure draft are being initaited in the DINZ Biometrics Special Interest Group. The Regulatory & Policy sub committee of DINZ’s Exec Council ran out of time to provide an initial response to the Commerce Commission’s Personal Banking Services Market Study regarding the roadblocks that might impede the June 2026 milestone recommendation for banks to participate in the Digital Identity framework as credential providers.
Company Stories
[product] Announcing Our Cross-IBC ZK-Proofs cheqd
NYMLAB has, therefore, built a mechanism and toolkit to enable developers to create on-chain zero-knowledge proofs for off-chain verifiable credentials, a novel approach to blending DID with the broader blockchain landscape.
How Does Combining AI and Blockchain Redefine Our Future? 2024-04-26 Ayanworks
Blockchain-enabled Data Sharing: Patient records are stored securely on a blockchain, ensuring tamper-proof and transparent access. Each transaction, like adding a new record or granting access, is recorded for traceability.
AI-driven Data Analysis: AI algorithms analyze this data to detect patterns and support clinical decisions. For instance, AI can predict health outcomes or personalize treatment plans based on patient history.
Enhanced Patient Care: This integration allows for personalized care delivery. For example, AI flags potential health risks, enabling proactive interventions, and improving treatment outcomes.
[wallet] The Dock Wallet is a non-custodial digital ID wallet which allows you to: 2024-04-25 docknetwork
📱 Store, send and receive $DOCK tokens
✅ Create and manage decentralized identifiers
🔒 Securely store and share #VerifiableCredentials
⚡️ Efficiently verify credentials
https://tinyurl.com/dockwalletappstore
https://tinyurl.com/dockwalletgoogleplay
[product] NL: Ver.ID Parental consent using a decentralized identity solution Ver.ID
With our platform, you can easily create smooth onboarding, document signing, or login experiences. Integrating our platform into your system is a breeze and can be accomplished within minutes by utilizing any OpenID Connect library available to quickly connect to our infrastructure. You can also utilize Ver.iD Studio to design an onboarding flow
Affinidi has a plan that would let us represent our true selves online authentically 2024-04-26 The Peak Magazine
This concept, which we call Holistic Identity, allows individuals to manage their private information effortlessly. It involves consolidating all their digital identities into a private vault, giving them the power to dictate what information they share and with whom, while ensuring the integrity of their data is secured.
Industry Application
Decentralized Identity in the Music Industry 2024-04-24 Trust over IP
Cole Davis, Founder & CEO of Switchchord, discussed how decentralized identifiers and verifiable credentials streamline legal and operational workflows in the music industry. Identity-based “verifiable data supply chains” enable existing copyright management systems to route authentic data across the music supply chain.
Decentralized identity — driving digital transformation in banking and finance 2024-04-23 Indicio
Decentralized Web
Until now bluesky’s atproto has only been microblogging, but i was curious and it turns out there is a minimal prototype of a blogging engine / viewer. 2024-04-25 Rabble
It’s far from the quality of what we’ve got on Nostr, but it’s worth noting they’ve got the first steps in this direction. WhiteWind blog
Github Trending Archive - Typescript
web3modal by WalletConnect A single Web3 provider solution for all Wallets GitHub
atproto by bluesky-social Social networking technology created by Bluesky GitHub
[twitter] Ah, really nice overview diagram of the bluesky/atproto architecture & data flow from 2024-04-24 johnspurlock
https://arxiv.org/pdf/2402.03239.pdf via newsletter.pragmaticengineer.com/p/bluesky
Beyond Blockchain: How Web5 Enables Fully Decentralized Apps 2024-04-23 TBD
It’s important to note that while the integration of these technologies with existing blockchain ecosystems isn’t unheard of, they are able to solve the issues with blockchain discussed above. Cumulatively, they offer a way to efficiently address data, store and replicate data in a decentralized manner, and maintain identity.
Newsletter platform Ghost adopts ActivityPub to ‘bring back the open web’ / Interoperable social media is having a real moment 2024-04-22 TheVerge
That’s a big shot of support for the fediverse — the network of open and interoperable social services that have all been gaining momentum over the past year. Ghost founder John O’Nolan recently said that federation over ActivityPub was the platform’s “most requested feature over the past few years” — a comment he made on Meta’s Threads, which itself is slowing beginning to federate.
Identity Not SSI
Worldcoin Has an Orb Shortage FindBiometrics
Talking Digital ID with NAB Steve Wilson
NIST cites phishing resistance of synced passkeys in Digital Identity Guidelines update FIDO Alliance
Passkeys: A Shattered Dream 2024-04-26 Firstyear's blog-a-log
At this point I think that Passkeys will fail in the hands of the general consumer population. We missed our golden chance to eliminate passwords through a desire to capture markets and promote hype.
[Research] Decentralized Identity Authentication Mechanism: Integrating FIDO and Blockchain for Enhanced Security 2024-03-04 Hsia-Hung Ou, Chien-Hsiu Pan,Yang-Ming Tseng, Iuon-Chang Lin
In the FIDO2 framework, if a user’s device is stolen or compromised, then the private key may be compromised, and the public key stored on the FIDO2 server may be tampered with by attackers attempting to impersonate the user for identity authentication, posing a high risk to information security. Recognizing this, this study aims to propose a solution based on the FIDO2 framework, combined with blockchain technology and access control, called the FIDO2 blockchain architecture, to address existing security vulnerabilities in FIDO2.
Tech Philosophy
The three operating system models of government 2024-04-25 Ben Werdmuller
Evan Prodromou asks if we agree with Aristotle that there are three kinds of government: monarchy, aristocracy, and democracy. (As Evan points out, he actually defined six, with Polity — government by political organizations — ranked first. Which is what we have. Lucky us.)
I’m a qualified yes on this — I think it’s more nuanced, with flavors and combinations of each — but I’d like to offer a different framework for three kinds of government.
I speak, of course, of iOS, Windows, and Linux.
Thanks for Reading
Read more \ Subscribe: newsletter.identosphere.net
Contact \ Submission: newsletter [at] identosphere [dot] net