Identity and credentials
Run your trust ecosystem under your own brand.
Associations, registries and platforms already decide who belongs and what that membership
means. What has been missing is a way to make that standing checkable outside your own
website — on a member's published work, in a procurement review, or by a machine that has
never heard of you. Hosted identity and credential services let you issue it yourself, as
a benefit of membership, without running a certificate authority to do it.
Your ecosystem, your rules
You decide who is admitted, what they may claim, and which other issuers you recognise. Membership criteria you already enforce on paper become policy the platform applies, rather than a page on your website that nobody downstream can read.
Your name on the credential
Credentials are issued under a did:web on a domain you control, and members work in a console at your domain carrying your branding. Verifiers resolve your identity and see your name — we are not in the trust path, and not on the artifact.
A benefit members can use
Standing in your association stops being a logo on a footer and becomes proof that travels: attached to published work, checkable in a procurement process, and useful against disclosure obligations your members now face whether they belong to you or not.
Membership from the trust graph
Load the member list from relationships organisations already publish about themselves rather than maintaining a directory by hand — and withdraw standing when a membership lapses, with revocation reflected the moment anyone checks.
Separated by deployment
Each ecosystem runs as its own deployment: separate database, separate authentication, separate domain, separate issuer DID. Isolation is architectural, not a filter on a shared table.
Portable by design
Credentials are issued under your DID in open formats and verifiable by anyone holding the artifact. They keep working on your terms — including if you stop working with us.
We host and operate the services. The issuer, the domain, the console, the branding and the
policy are yours — which is also the test of whether white labelling is real: what your
members are left holding if the arrangement ends.
This runs above the certificate infrastructure you already buy rather than in place of it: the
authorities issue and the hardware holds the keys, while the platform governs who may attest,
under which policy, and whose attestations your systems accept — across media, software builds
and agent workloads alike.