iSHARE Verifiable Credential

iSHARE Participant Credential

iSHARE Participant Credential

Your organisation's European data-economy passport — a single credential that proves identity, framework compliance, and data space membership in one cryptographically signed document.

Het Europese data-economie paspoort van uw organisatie — één credential die identiteit, framework-compliance en dataspace-lidmaatschap bewijst in één cryptografisch ondertekend document.

⚡ Compound credential — combines 2 building blocks
⚡ Samengestelde credential — combineert 2 bouwblokken
What is it?
Wat is het?

Your organisation's European data-economy passport

Het data-economie paspoort van uw organisatie

Plain-language analogy
Begrijpelijke uitleg

Think of it as your organisation's European data-economy passport. It proves in one document: you are a recognised legal entity, you comply with the iSHARE framework, and you are a registered member of one or more data spaces. Any verifier can check this cryptographically — without calling an authority.

Just as your passport is issued by a government you trust, the iSHARE Participant Credential is issued by a certified Participant Credential Issuer on the iSHARE Trusted List. Your connector presents it automatically when joining any compatible data space.

Zie het als het Europese data-economie paspoort van uw organisatie. Het bewijst in één document: u bent een erkende rechtspersoon, u voldoet aan het iSHARE-framework en u bent een geregistreerd lid van één of meer dataspaces. Elke verifier kan dit cryptografisch controleren — zonder een autoriteit te bellen.

Net zoals uw paspoort wordt uitgegeven door een overheid die u vertrouwt, wordt de iSHARE Participant Credential uitgegeven door een gecertificeerde Participant Credential Issuer op de iSHARE Trusted List. Uw connector presenteert hem automatisch bij elke compatibele dataspace.

Compound credential: two building blocks in one Samengestelde credential: twee bouwblokken in één

Issuers package both components into one signed document so participants carry a single credential. Each component can also be used standalone when only partial proof is needed.

Issuers verpakken beide componenten in één ondertekend document zodat deelnemers één credential dragen. Elk component kan ook zelfstandig worden gebruikt wanneer slechts gedeeltelijk bewijs nodig is.

Who is involved?
Wie is erbij betrokken?

Three roles, one trust chain

Drie rollen, één vertrouwensketen

Participant

Participant

Your organisation. Applies for the credential, stores it in a credential store (wallet), and presents it automatically when connecting to data spaces. No manual steps at transaction time.

Uw organisatie. Vraagt de credential aan, slaat hem op in een credential store (wallet) en presenteert hem automatisch bij verbinding met dataspaces. Geen handmatige stappen op het moment van de transactie.

Participant Credential Issuer

Participant Credential Issuer

A certified party on the iSHARE Trusted List — e.g. KPN, Poort8, Protium.ai. Validates your legal entity, iSHARE conformance, and dataspace memberships before issuing. Responsible for revocation.

Een gecertificeerde partij op de iSHARE Trusted List — bijv. KPN, Poort8, Protium.ai. Valideert uw rechtspersoon, iSHARE-conformiteit en dataspace-lidmaatschappen voor uitgifte. Verantwoordelijk voor revocatie.

Verifier

Verifier

Any party in a data space that checks your credential before granting access or accepting a transaction. Verifies cryptographically — no phone calls, no manual lookups.

Elke partij in een dataspace die uw credential controleert voor het verlenen van toegang of het accepteren van een transactie. Verifieert cryptografisch — geen telefoontjes, geen handmatige opzoekingen.

iSHARE Foundation — Scheme Owner, not an issuer iSHARE Foundation — Scheme Owner, geen issuer

The iSHARE Foundation is a non-commercial foundation that acts as Scheme Owner: it defines the rules, certifies Participant Credential Issuers, and maintains the Trusted List. It does not issue credentials itself, operate commercially, or validate individual organisations. The certified issuers — such as KPN, Poort8, and Protium.ai — do that work.

De iSHARE Foundation is een niet-commerciële stichting die optreedt als Scheme Owner: ze stelt de regels, certificeert Participant Credential Issuers en beheert de Trusted List. Ze valideert zelf geen individuele organisaties, geeft zelf geen credentials uit en opereert niet commercieel. Dat doen de gecertificeerde issuers — zoals KPN, Poort8 en Protium.ai.

What's inside?
Wat staat er in?

Key fields in the credential

Belangrijkste velden in de credential

The iSHARE Participant Credential combines two layers: who you are as an iSHARE-compliant organisation, and which data spaces you belong to.

De iSHARE Participant Credential combineert twee lagen: wie u bent als iSHARE-conforme organisatie, en tot welke dataspaces u behoort.

Concrete example
Concreet voorbeeld

Joining the European Mobility Dataspace

Toetreden tot de European Mobility Dataspace

From application to automatic verification — a step-by-step walkthrough.

Van aanvraag tot automatische verificatie — een stapsgewijze doorloop.

1
Your company applies to a Participant Credential Issuer (KPN). You provide your KVK registration, iSHARE conformance test results, and your Mobility Dataspace membership confirmation from the dataspace operator.
Uw bedrijf dient een aanvraag in bij een Participant Credential Issuer (KPN). U verstrekt uw KVK-inschrijving, iSHARE-conformiteitstestresultaten en uw bevestiging van Mobility Dataspace-lidmaatschap van de dataspace-operator.
2
KPN verifies all three: legal entity (KVK check), iSHARE conformance (test report review), and Mobility Dataspace membership (confirmed with the dataspace operator).
KPN verifieert alle drie: rechtspersoon (KVK-controle), iSHARE-conformiteit (beoordeling testrapport) en Mobility Dataspace-lidmaatschap (bevestigd bij de dataspace-operator).
3
KPN issues an iSHARE Participant Credential — combining the iSHARE Compliance Credential and the Dataspace Participant Credential — and delivers it to your credential store.
KPN geeft een iSHARE Participant Credential uit — met daarin de iSHARE Compliance Credential en de Dataspace Participant Credential gecombineerd — en levert hem af in uw credential store.
4
Your connector connects to a Mobility Dataspace node for the first time. It presents the iSHARE Participant Credential automatically in the DCP handshake.
Uw connector maakt voor het eerst verbinding met een Mobility Dataspace-node. Hij presenteert de iSHARE Participant Credential automatisch in de DCP-handshake.
5
The receiving node verifies cryptographically: Is the issuer on the Trusted List? Is the signature valid? Is the credential not revoked? Is the Mobility Dataspace membership present and active?
De ontvangende node verifieert cryptografisch: staat de issuer op de Trusted List? Is de handtekening geldig? Is de credential niet ingetrokken? Is het Mobility Dataspace-lidmaatschap aanwezig en actief?
6
All checks pass — no phone calls, no manual lookups. The transaction proceeds. The same credential works for every other Mobility Dataspace node automatically.
Alle controles slagen — geen telefoontjes, geen handmatige opzoekingen. De transactie gaat door. Dezelfde credential werkt automatisch bij elke andere Mobility Dataspace-node.
Technical details
Technische details

For developers

Voor ontwikkelaars

Show technical specification Technische specificatie tonen
VC typeVC typeiSHAREParticipantCredential
Schema URLSchema URLhttps://schemas.ishare.eu/v3/ishare-participant/schema.json
Context URLContext URLhttps://schemas.ishare.eu/v3/ishare-participant/context.jsonld
Issued byUitgegeven doorParticipant Credential Issuer (certified by iSHARE Foundation)Participant Credential Issuer (gecertificeerd door iSHARE Foundation)
Issuance protocolUitgifte-protocolOpenID4VCI
Presentation (M2M)Presentatie (M2M)DCP v1.0
Presentation (H2M)Presentatie (H2M)OpenID4VP
CombinesCombineertiSHAREComplianceCredential + DataspaceParticipantCredential
RevocationRevocatieBitstring Status List (W3C)Bitstring Status List (W3C)
Other credentials
Andere credentials