NIST 800-63 · FIPS 201 aligned

Identity you can verify, credentials you control.

AegisID issues tamper-evident verifiable credentials to a secure mobile wallet — backed by biometric proofing, a private decentralized ledger, and assurance mechanisms developed to meet the highest industry standards.

Hyperledger Indy · Aries · W3C Verifiable Credentials
Verified

Verifiable Credential

Digital Identity

Holder
•••• Resident #4827
Assurance
IAL2 / AAL2
Issuer
AegisID Authority
anchored on-ledger

Built on open standards & government-grade assurance

NIST SP 800-63-4FIPS 201 / PIVW3C Verifiable CredentialsHyperledger IndyHyperledger AriesOIDC · SAML 2.0FIDO2 · WebAuthnAES-256-GCM
The platform

A complete end-to-end solution for the issuance, management, and verification of digital identities

A unified identity ecosystem encompassing identity proofing, issuance, federation, and verification, enabling a seamless "onboard once, authenticate everywhere" architecture.

Verifiable Credentials

Issue cryptographically signed, W3C-standard credentials that holders present anywhere — selectively disclosed, instantly verifiable, impossible to forge.

Secure Mobile Wallet

AegisWallet puts credentials in the user's hands. Built on Aries Bifold & Credo-TS, with hardware-backed keys and offline presentation.

Biometric Identity Proofing

IAL2/IAL3 onboarding with document capture and live face-match. Biometrics are envelope-encrypted at rest with per-record data keys.

Federation & SSO

Bridge to existing identity providers via OIDC and SAML 2.0 — including Microsoft Entra — with pairwise subjects and acr/ial/amr claims.

Private Decentralized Ledger

Credential definitions and revocation are anchored on a permissioned 4-node Hyperledger Indy network you govern — no public chain, no third party.

Tamper-Evident Assurance

Hash-chained audit logs, step-up authentication (AAL2→AAL3), DPoP holder-of-key binding, and Argon2id credential recovery across the platform.

How it works

Establishing comprehensive trust through a streamlined three-stage validation process

01

Onboard & proof

The user captures their ID and a live selfie. AegisID runs document checks and biometric face-match to establish identity assurance — no manual review queues.

02

Issue to wallet

On a successful proof, the issuer mints a verifiable credential and delivers it over secure DIDComm into the user's AegisWallet, anchored to your private ledger.

03

Present & verify

Relying parties request a proof; the holder consents and presents selectively. Verification is cryptographic and instant — online or offline, with no callback to the issuer.

Solutions

A unified trust architecture providing seamless interoperability across diverse industry sectors

Wherever identity has to be both private and provable, AegisID fits the assurance level your sector demands.

Government & Public Sector

Issue resident and workforce credentials that meet PIV and NIST 800-63 assurance — citizens prove eligibility without oversharing personal data.

Financial Services

Reusable KYC. Onboard once, then satisfy verification at every touchpoint with a presented proof instead of repeated document uploads.

Enterprise Workforce

Bind employee identity to phishing-resistant credentials and federate into Entra, OIDC and SAML apps with step-up authentication.

Healthcare & Regulated

High-assurance patient and practitioner identity with audited, encrypted biometric storage and tamper-evident access records.

Contact us

Experience AegisID through a Custom Demonstration

Share your specific identity requirements with our team, and we will guide you through a live issuance and authentication workflow tailored to your organization’s high-assurance standards.

Contact Info

Matthew Hoerig

aegisid@vanguardcs.ca

Provided by: Vanguard Cloud Services Inc.

By submitting, you agree to be contacted about AegisID. We never share your details.