NIST 800-63 · FIPS 201 aligned

Identity you can prove, credentials you control.

AegisID issues tamper-evident verifiable credentials to a secure mobile wallet — backed by biometric proofing, a private decentralized ledger, and assurance machinery built to government-grade standards.

Hyperledger Indy · Aries · W3C Verifiable Credentials
Verified

Verifiable Credential

Digital Identity

Holder
•••• Resident #4827
Assurance
IAL2 / AAL2
Issuer
AegisID Authority
anchored on-ledger

Built on open standards & government-grade assurance

NIST SP 800-63-4FIPS 201 / PIVW3C Verifiable CredentialsHyperledger IndyHyperledger AriesOIDC · SAML 2.0FIDO2 · WebAuthnAES-256-GCM
The platform

Everything you need to issue, hold, and verify trusted identity

One platform spanning proofing, issuance, federation and verification — so a person is onboarded once and trusted everywhere.

Verifiable Credentials

Issue cryptographically signed, W3C-standard credentials that holders present anywhere — selectively disclosed, instantly verifiable, impossible to forge.

Secure Mobile Wallet

AegisWallet puts credentials in the user's hands. Built on Aries Bifold & Credo-TS, with hardware-backed keys and offline presentation.

Biometric Identity Proofing

IAL2/IAL3 onboarding with document capture and live face-match. Biometrics are envelope-encrypted at rest with per-record data keys.

Federation & SSO

Bridge to existing identity providers via OIDC and SAML 2.0 — including Microsoft Entra — with pairwise subjects and acr/ial/amr claims.

Private Decentralized Ledger

Credential definitions and revocation are anchored on a permissioned 4-node Hyperledger Indy network you govern — no public chain, no third party.

Tamper-Evident Assurance

Hash-chained audit logs, step-up authentication (AAL2→AAL3), DPoP holder-of-key binding, and Argon2id credential recovery across the platform.

How it works

From stranger to trusted in three steps

01

Onboard & proof

The user captures their ID and a live selfie. AegisID runs document checks and biometric face-match to establish identity assurance — no manual review queues.

02

Issue to wallet

On a successful proof, the issuer mints a verifiable credential and delivers it over secure DIDComm into the user's AegisWallet, anchored to your private ledger.

03

Present & verify

Relying parties request a proof; the holder consents and presents selectively. Verification is cryptographic and instant — online or offline, with no callback to the issuer.

Solutions

One trust fabric, many industries

Wherever identity has to be both private and provable, AegisID fits the assurance level your sector demands.

Government & Public Sector

Issue resident and workforce credentials that meet PIV and NIST 800-63 assurance — citizens prove eligibility without oversharing personal data.

Financial Services

Reusable KYC. Onboard once, then satisfy verification at every touchpoint with a presented proof instead of repeated document uploads.

Enterprise Workforce

Bind employee identity to phishing-resistant credentials and federate into Entra, OIDC and SAML apps with step-up authentication.

Healthcare & Regulated

High-assurance patient and practitioner identity with audited, encrypted biometric storage and tamper-evident access records.

Contact us

See AegisID with your own credentials

Tell us about your identity challenge and we’ll walk you through a live issuance and verification flow tailored to your assurance needs.

Your contact

Matthew Hoerig

mhoerig@vanguardcs.ca

Vanguard Cloud Services

By submitting, you agree to be contacted about AegisID. We never share your details.