Referencing Trust Registry within a Verifiable Credential
Trust Registries are referenced within Policies in the Verifiable Credential body. This enables Relying Parties to traverse the trust chain and verify that the issuer, accrediting entity (TAO) and Root of Trust (rTAO) are all legitimate entities.
Within the body of the Verifiable Credential, trusted issuers will need to configure the termsOfUse
section to reference DIDs or DID URLs of trust registry entries, for example:
For Verifiable Credentials that are issued (not accreditations), the following sections of the termsOfUse
section MUST be present:
type
Yes
parentAccreditation
A valid DID URL
Yes
rootAuthorisation
A valid DID URL
Yes
Through parsing through this credential, a relying party can check the accreditation of the issuer, the "parent" accreditation. This accreditation will include its own Policy pointing up the trust chain all the way to a Root of Trust.
Using a protocol like TRAIN, a relying party can take the verifiable credential as an input and check whether the issuer is accredited to issue the type of credential, all the way back to a Root of Trust, and according to a particular governance framework.
Last updated
Was this helpful?