Mobile-ID / Certificates & scope
RAR/C06 · eID / SSO / ShareInfoISO/IEC 24745:2022
Platform capability

Identity proofing & binding

The authoritative identity source remains the source of truth.

Identity proofing & binding

Target model from the specification. Actual product scope requires approval.

Bind the right source

Validate the source record, resolve duplicates and confirm the enrollee. Patient, student and employee references belong to separate domains.

Manage the binding

Record the operator, purpose, processing basis, session and device. Ambiguous bindings are activated only after review.

Reference implementation - Trusted PalmPay
Identity proofing & binding
Identity proofing & bindingSelect to enlarge ↗

Evaluation & evidence requirements

AreaRequirement
Context bindingOrganization, purpose, device, session and policy
Exception statesMissing data, ambiguous identity, expiry and fallback
Required evidenceVersioned report, scope, reviewer and limitations
Publication statusNo product test report supplied in the website package; deployment is not inferred.

RAR/C06: source identity before palm.

Mobile-ID confirms eID, SSO and ShareInfo integration. Maintain participant continuity through binding.

SSO

Authenticated session result

Receive the SSO result and bind the subject, application and session under the agreed protocol.

Review channel scope →
ShareInfo

Authorized information sharing

Receive authorized attributes for the stated purpose; retain only what is needed for binding.

Review channel scope →

Search Trusted Palm ID

Selected interface