UbID Issuer
Secure Credential Creation — The trusted component responsible for issuing verifiable identity credentials. Private keys never leave the user's device.
Security & Privacy by Design
Built on zero-trust architecture. The Issuer never stores, accesses, or transmits private keys.
Local Key Generation
Keys are created and stored only in the user's browser — never on any server.
No Server Storage
UbID Issuer never retains private keys or sensitive identity data at any step.
Cryptographic Integrity
All credential issuance follows standards-compliant, verifiable cryptographic protocols.
Privacy Compliance
Aligned with GDPR, ISO/IEC 29100, and emerging digital identity frameworks.
Blockchain Anchoring
The Issuer domain is cryptographically anchored to a blockchain address — immutable and verifiable.
How It Works
User Requests Credential
User requests a verifiable credential from UbID Issuer.
Keys Generated Locally
Keys are generated in the user's browser via PWA. The Issuer never sees them.
Credential Signed
The Issuer signs the credential with its blockchain-anchored domain.
Stored in UbID Vault
The signed credential is returned and stored in the user's UbID Vault.
Zero Key Retention
The Issuer retains no copy of the private key — ever.
Institutional Trust & Compliance
UbID Issuer supports interoperability with W3C Verifiable Credentials, DIDComm, and OpenID Connect for Verifiable Presentations.
- Standards-aligned credential issuance
- Zero exposure of user private keys
- Blockchain-anchored domain for auditability
- Seamless integration with UbID Vault and verifier apps
- Transparent compliance mapping for audits and certification