Skip to main content

SID-TRANS-03 — OpenID4VP Credential Presentation Protocol

PropertyValue
Statusverified
Ownerplatform
Categorytechnical
CSF Functionprotect
GroupTransport Security Controls

Description

Full OID4VP flow: request parsing → request JWT verification (x5c/jwk) → verifier trust evaluation → credential matching (DCQL/Presentation Exchange) → user consent → VP submission via direct_post. client_id_scheme validated: x509_san_dns, x509_san_uri, did, verifier_attestation.

Components

  • Wallet Backend (Go)
  • VC Issuer/Verifier
  • Wallet Frontend

Source References

Audit Findings

FindingSeverityStatus
EN-S-4 — Partial wallet unit security and lifecyclemediumin progress