Glossary

The EU Digital Identity vocabulary.

Regulation, protocols, credential formats and trust infrastructure, all overlapping. These are the terms you meet while integrating, without the specification prose.

Every term

26 definitions, no spec prose

Regulation

eIDAS 2.0

eIDAS 2.0 is Regulation (EU) 2024/1183, adopted on 11 April 2024. It amends the original eIDAS Regulation and requires every member state to offer an EU Digital Identity Wallet to the natural and legal persons in the Union. The public sector has to accept one. Named private relying parties and very large online platforms have to accept one where the user asks to use it.

EU Digital Identity Wallet (EUDI Wallet)

The EU Digital Identity Wallet is an app provided under each member state’s scheme that holds a person’s government-issued identity data and other verified attributes, then presents selected parts of them to services under the holder’s control.

Architecture and Reference Framework (ARF)

The Architecture and Reference Framework is the technical reference for the EU Digital Identity Wallet, produced by the European Digital Identity Cooperation Group together with the Commission as part of the Common Union Toolbox. It sets out the roles, protocols, credential formats and trust model that wallets, issuers and relying parties implement to interoperate. It is informative. What binds is the regulation and its implementing acts.

European Business Wallet (EBW)

The European Business Wallet is a proposed wallet for companies and other legal entities, published by the Commission on 19 November 2025 as COM(2025) 838. It is a separate draft regulation rather than part of eIDAS 2.0, and it is not law yet.

Attestation rulebook

An attestation rulebook specifies one credential type in full: attribute set, encodings, mandatory and optional fields, credential format and trust requirements. Rulebooks are written by Attestation Scheme Providers and listed in the Commission catalogue of attestation schemes. They are what makes credentials interoperable in practice.

Protocols
Credential formats
Trust

Device binding (key binding)

Device binding ties a credential to a private key held inside the wallet’s secure cryptographic device or keystore. Presenting it requires proving control of that key, so a copied credential is useless to anybody else. ISO/IEC 18013-5 calls it mdoc authentication, SD-JWT VC calls it key binding.

EU Trust List

Trust anchors sit in two kinds of list. Member States publish national Trusted Lists of qualified trust service providers, which inside the wallet ecosystem cover QEAA providers only. Everyone else who needs a trust anchor goes on a List of Trusted Entities signed and published by the Commission. A verifier checks an issuer against whichever list applies before relying on its signature.

Relying party registration

Relying party registration requires a verifier to register in the member state where it is established, declaring who it is and which attributes it intends to request. Wallets check that registration and must warn the holder when a verifier asks for more than it registered for. Whether the wallet then blocks the request is left to each wallet provider’s risk policy.

Wallet Unit Attestation (WUA)

A Wallet Unit Attestation is a credential from the wallet provider about one installed wallet. PID providers and attestation providers use it at issuance to confirm they are issuing into a genuine certified wallet rather than an impostor app. It is never shown to a verifier.

Status list (revocation)

A status list is a compact public bitstring encoding the validity of many credentials at once. Each credential carries an index into it, so a verifier can check revocation without asking the issuer about that specific holder.

Qualified Trust Service Provider (QTSP)

A qualified trust service provider is an organisation supervised by a member state and granted qualified status for one or more specific trust services. Those include issuing qualified certificates, timestamps and attestations of attributes, and managing remote signature and seal creation devices. Its status and the services it covers appear on the national trusted list.

Level of Assurance: High

eIDAS defines three assurance levels for electronic identification: low, substantial and high. They describe how much confidence a relying party can place in a claimed identity. The EU Digital Identity Wallet operates at high.

Privacy
Signatures