Decentralized Identity Attestation Verification With Revocation Checks
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing digital identity systems lack decentralized control and regulatory compliance, particularly in managing sensitive user data and ensuring user sovereignty over their identity information.
Innovation Solution
A decentralized identity management system utilizing a distributed ledger network with attestation issuers, relying parties, and user-controlled private keys, enabling secure and compliant management of digital identities through attestation issuance, revocation, and verification.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If digital identity information is stored on mobile devices, then users have direct access to their identity data, but security risks increase due to the sensitivity of the information
Solution Approach 1:
The patent introduces a distributed ledger as an intermediary layer between users and their identity information. Instead of storing sensitive data directly on mobile devices, the system uses cryptographic keys and decentralized identifiers (DIDs) on the ledger to represent identity. Users control their identities through private keys while the ledger maintains verification records, thus enabling access without direct exposure of sensitive data on devices.
2Adaptability or versatility
If users maintain control over their own identity information, then user sovereignty is achieved, but regulatory compliance becomes more difficult to ensure
Solution Approach 1:
The system implements feedback mechanisms where the distributed ledger continuously tracks and verifies identity operations. When users control their identity information through DIDs and verifiable credentials, the ledger provides real-time verification and auditing capabilities. This allows regulatory compliance to be maintained through transparent, immutable records that can be independently verified while preserving user control.
3Reliability
If identity information is stored in a centralized system, then regulatory compliance is easier to maintain, but user control and sovereignty are reduced
Solution Approach 1:
The patent inverts the traditional centralized identity model by placing control in the hands of users through decentralized identifiers and cryptographic key pairs. Instead of a central authority managing identity data, users generate their own DIDs and control their verifiable credentials. The system achieves compliance not through centralization but through distributed verification and immutable ledger records that provide auditability without requiring central control.
4Ease of operation
If sensitive identity data is stored on mobile devices, then users can access their information conveniently, but the risk of data breaches and unauthorized access increases
Solution Approach 1:
The patent extracts sensitive identity data from mobile devices and stores it on a distributed ledger in the form of decentralized identifiers and cryptographic keys. Users retain convenient access through their private keys and can present verifiable credentials without exposing underlying personal information. This extraction removes the vulnerability of storing sensitive data on devices while maintaining user accessibility through cryptographic proof.
Data Source
AI summary
Systems and methods for maintaining decentralized digital identities are disclosed. In an information processing apparatus for a relying party within a distributed ledger network and comprising at least one computer processor, a method for decentralized digital identity attestation verification may include: (1) receiving, from a relying party, an attestation verification request for a user; (2) retrieving a user decentralized identifier for the user; (3) retrieving an attestation issuer decentralized identifier for an attestation issuer; (4) validating the user decentralized identifier and the attestation issuer decentralized identifier; (5) verifying that the attestation has not been revoked; and (6) communicating that the attestation is valid to the relying party.


