You are here. See how this question connects to other ideas.
Select a node to open its page · Expand to read within the map
LEARN / Identity and credentials
From identifiers to trusted interactions.
Distinguish DIDs, credentials, wallets and application requests, one role and decision at a time.
Start this learning pathChoose a starting point
- 01Understand identity and credentials
Distinguish identifiers, control, claims and application requests.
From concepts to scenarios9 questions - 02From presenting a credential to accessing a resource
Follow an upload request through identity, evidence, trust and permission.
9 questions - 03Compare the layers of identity mechanisms
Move from identifiers to authentication and verifiable claims.
5 questions
Explore the connections
Each explanation stands on its own. “Builds on” links show the background it uses.
Identity and credentials
Concepts, products and related approaches
- What does a DID identify?
Distinguish the identifier, its document and its subject.
- Does control prove real-world identity?
Proving control of an identifier and establishing a real-world identity are different tasks.
Builds on ↑What does a DID identify? - What does a verifiable credential make verifiable?
Check authorship and integrity, then decide whether to accept the claim.
- Why trust an issuer?
Checking a credential protection mechanism differs from deciding whether to trust its issuer.
- How does did:abt relate to DID Core?
DID Core supplies a shared model; each method supplies its own rules.
Builds on ↑What does a DID identify? - What does Arc Wallet do in an identity flow?
The wallet manages identities and credentials; applications still evaluate requests.
- What does DID Connect connect?
Understand the exchange between an application request and the user’s identity tool.
Builds on ↑What does Arc Wallet do in an identity flow? - What does DID Motif help you recognize?
A visual identifier helps recognition; it is not proof of control.
Builds on ↑What does a DID identify? - What does DID Names manage?
Domain management and DID methods belong to different layers.
- Does presenting a Passport transfer it?
Proving eligibility and transferring an asset are different operations.
- How does a resource NFT relate to access?
A rights object supplies evidence; a service decides which operation it permits.
- Can every key in a DID document serve every purpose?
Separate a verification method from its permitted verification relationship.
- How does WebID identify someone with a Web address?
HTTP URIs and profile documents offer another identification model.
Builds on ↑What does a DID identify? - Does OpenID Connect solve the same problem as DID?
Separate a login protocol, an identifier and API authorization.
- Must a credential’s subject also be its holder?
Separate who makes a claim, who it describes, who presents it and who verifies it.
- Does a valid signature mean a credential is still usable?
Check validity periods, suspension and revocation separately.
- How should DID, WebID, OIDC and VC be compared?
Identify the layer each occupies before comparing combinations.
Builds on ↑What does a DID identify? - Is a DID document a personal profile?
It describes verification and interaction information, not a biography.
Builds on ↑What does a DID identify? - What rules does a DID method define?
Methods supply operational rules beneath the shared data model.
Builds on ↑What does a DID identify? - How does DID resolution differ from DID URL dereferencing?
Resolution finds a document; dereferencing locates a more specific resource.
- Can a DID always be recovered after losing a key?
Recovery depends on the method and the control arrangements already in place.
Builds on ↑What rules does a DID method define? - What does DIF contribute to decentralized identity?
It coordinates engineering work on specifications and implementations.
Builds on ↑What does a DID identify? - What does an ArcBlock Passport represent?
Eligibility an application recognizes, not a government travel document.
- How can a VC and an NFT express resource rights together?
Separate a verifiable claim, ownership state and service authorization.