W3C standards implementation for Nuggets identity infrastructure. Learn about DIDs, Verifiable Credentials, and OpenID Connect for secure interoperability.
Nuggets leverages established W3C open standards to create secure, interoperable identity solutions for both humans and AI agents. Our platform is built on three key standards: Decentralized Identifiers (DIDs), Verifiable Credentials (VCs), and OpenID Connect (OIDC), enabling seamless integration with existing systems while providing advanced privacy and security capabilities.
DIDs are cryptographically verifiable identifiers that enable users, organisations and AI agents to prove control over their digital identity without depending on centralized registration systems. Each DID is associated with cryptographic keys that allow the holder to authenticate and authorize actions.Unlike traditional identifiers tied to specific platforms or services, DIDs work across organizational boundaries and technology stacks. The DID holder maintains complete control over their identifier and associated authentication materials.In Nuggets’ Platform:
Human Users: Each person receives DIDs that anchor their self-sovereign identity, with unique PeerDIDs generated for each entity they interact with to prevent correlation
AI Agents: Every AI agent operates with its own public DID, establishing clear accountability chains to human controllers
Organizations: Companies use public DIDs for corporate identity management and AI agent oversight
Core Capabilities:
Cryptographic Control: Identity holders prove ownership through digital signatures, holder binding and key challenges
Decentralized Verification: Authentication without relying on centralized identity providers
Service Discovery: DID documents can specify service endpoints, which can be used for identity-related services
Verifiable Credentials enable cryptographically secure claims about any attributes, qualifications, or permissions. These digital credentials contain claims issued by trusted authorities and can be independently verified without contacting the original issuer.VCs that support Selective Disclosure, such as BBS+ or SD-JWT transform how sensitive information is shared by allowing precise control over what data is disclosed and to whom. The cryptographic signatures ensure data integrity while enabling privacy-preserving verification.Example Nuggets VC Applications (non-exhaustive list):
Identity Attributes: Verified personal information derived from authoritative sources
Authorization Grants: Permissions and capabilities assigned to users and AI agents
Compliance Certifications: Regulatory compliance status and audit results
Reputation Indicators: Trust scores and historical performance metrics
Access Permissions: Fine-grained authorization for systems and data
Advanced Features:
Selective Disclosure: Present only required information for each interaction
Zero-Knowledge Proofs: Demonstrate compliance without revealing sensitive details
Revocation Management: Issuers can invalidate credentials when circumstances change (coming soon)
Composite Credentials: Combine multiple claims from different issuers (coming soon)
OpenID Connect provides standardized authentication flows that work across web and mobile, and API applications. Built on OAuth 2.0, OIDC enables applications to verify user identity and obtain authorized access to resources.Nuggets enhances OIDC with decentralized identity capabilities, maintaining compatibility with existing enterprise systems while adding advanced security and privacy features.Nuggets OIDC Enhancement:
Nuggets integrates these standards to create unified identity infrastructure supporting both human users and autonomous AI systems:Identity Establishment:
Users and AI agents receive DIDs as persistent identity anchors
Identity attributes and permissions encoded as verifiable credentials
Cryptographic keys enable authentication
Authentication Flows:
OIDC provides familiar authentication patterns for applications
DID-based verification enhances security beyond traditional username/password and even Passkeys that can be shared.
Verifiable credentials supply verified claims about identity and permissions
Privacy and Control:
Users maintain complete control over identity data in self-sovereign wallets
Selective disclosure ensures minimal data exposure for each interaction
Zero-knowledge proofs enable selective compliance verification without data revelation
Nuggets’ standards-based approach delivers:Vendor Neutrality: Open standards prevent lock-in to proprietary identity systemsCryptographic Security: Mathematical verification replaces trust-based authentication modelsPrivacy Architecture: User-controlled data sharing with granular permission management. This ensures no external surveillance or transaction correlation, while maintaining compliant access to necessary consent and audit data for regulatory requirements.Regulatory Alignment: Standards support compliance requirements across jurisdictionsTechnology Evolution: Open standards adapt to emerging technologies and requirementsEcosystem Interoperability: Identity credentials work across platforms and organizational boundariesThis foundation enables Nuggets to provide advanced identity capabilities while ensuring compatibility with existing enterprise infrastructure and future technology developments.