Skip to main content

Credentials

An EUDI Wallet credential is a digitally issued, verifiable statement of fact about a person — such as their identity, a qualification, an entitlement, or a status — that is:

  • issued by an accountable authority (public or private),
  • held and controlled by the individual in their EU Digital Identity Wallet, and
  • presented by that individual, at their own discretion, to any party that needs to verify the fact.

A credential is the digital counterpart of a physical document of proof (ID card, driver's license, diploma, membership card). It serves the same purpose and carries legal recognition under the eIDAS 2.0 Regulation, but can be verified instantly and reliably without contacting the issuer.

eIDAS 2.0 distinguishes credential categories by who may issue them and how much legal weight they carry:

CategoryFull NameIssuerLegal Significance
PIDPerson Identification DataDesignated national authorityThe foundational identity credential (name, date of birth, etc.); anchors trust for everything else
EAAElectronic Attestation of AttributesAny qualified public or private attestation providerLegally recognized proof of any attribute (diploma, membership, entitlement)
QEAAQualified EAAQualified Trust Service Provider (QTSP), under strict supervisionHighest evidentiary strength
PUB-EAAEAA issued by a public sector bodyGovernment bodyRecognized EU-wide without additional qualification

The paradigm shift from paper-based proofs and IDs

Information

The trust triangle has long existed in the analog world: issuer (authority) → holder (citizen) → verifier (case worker, checkout). But credential are not just "a scanned physical card as a PDF". They are equivalents and digitize this whole model. It is a new primitive that preserves analog properties (offline presentation, unobservability) and adds digital ones ( data minimization, cryptographic verifiability, revocability).

Analog equivalents

National ID card ≈ PID
Driver's license, official certificate from a register ≈ PuB-EAA Membership/loyalty card ≈ EAA
Notarized/qualified certified document ≈ QEAA

Where they differ – and why that makes the difference

PropertyPhysical proofCredential
Selective disclosureNo – an ID card reveals name, address, and date of birth when proving ageYes – only "≥18" without the date of birth
UnobservabilityIssuer does not learn about the presentationSame (unlike federated login)
Forgery/copyingPhysical security features, copyableCryptographic signature + key binding against replay/transfer
RevocationHard to invalidate mid-lifeStatus/revocation mechanisms (e.g. Token Status List)
VerificationVisual (hologram, features)Signature chain to the trust anchor
CorrelatabilityCard number as a tracking featureReducible (batch issuance, salted disclosures)