Tesseratessera
Platform

Everything you need to issue and verify digital credentials

A complete infrastructure platform for verifiable credentials. Multi-tenant by design, API-first, and built for the EU Digital Identity Wallet ecosystem.

Credential Issuance

Issue verifiable credentials to holders using the OpenID for Verifiable Credential Issuance (OpenID4VCI) protocol. Credentials are cryptographically signed by the issuer and bound to the holder's wallet.

OpenID4VCI Protocol

Standards-compliant credential issuance via authorization code or pre-authorized code flows. Supports immediate and deferred issuance.

Multiple Credential Formats

Issue credentials in SD-JWT (Selective Disclosure JSON Web Token), JWT-VC (JSON Web Token Verifiable Credential), and ISO 18013-5 mDoc formats.

Credential Lifecycle

Full lifecycle management: issuance, suspension, revocation, and re-issuance. Status lists provide real-time revocation checking.

Batch Issuance

Issue credentials in bulk via the API. Onboard entire workforces, student cohorts, or membership groups in a single operation.

Credential Verification

Verify credentials presented by holders using the OpenID for Verifiable Presentations (OpenID4VP) protocol. Request only the specific claims you need — the holder controls what to share.

OpenID4VP Protocol

Verification via JWT Authorization Requests (JAR) with Digital Credentials Query Language (DCQL) for precise claim selection.

Selective Disclosure

Request only the claims you need. Verify age without seeing a birthdate, confirm employment without accessing salary data.

Cross-Device Flows

Support same-device and cross-device verification. QR codes for in-person checks, deep links for online flows.

Cryptographic Proof

Every verification produces a cryptographic proof chain: issuer signature, holder binding, and presentation integrity — not a document scan.

Credential Formats

Support for all major credential formats in the EU Digital Identity ecosystem.

FormatStandardSelective DisclosureUse Case
SD-JWTIETF draft-ietf-oauth-selective-disclosure-jwtYesPID, attestations, certificates
JWT-VCW3C Verifiable Credentials Data Model 2.0NoDiplomas, licenses, full documents
mDocISO 18013-5 / ISO 23220YesMobile driving licenses, age verification, government ID

Architecture

Built for organizations that need reliable, secure credential infrastructure at scale.

Multi-Tenant

Each organization operates in isolation. Shared database by default, dedicated database optional. All data scoped per tenant.

API-First

RESTful API for all operations. Issue credentials, configure verification policies, and manage keys programmatically.

Key Management

Cryptographic keys stored with AES-256 encryption at rest. Support for EC (P-256, P-384) and RSA key types. Per-tenant key isolation.

OIDC Integration

Connect verifiable credential flows with your existing identity provider. Translate wallet presentations into standard OIDC tokens for seamless integration.

Webhook Events

Real-time notifications for credential lifecycle events: issuance, presentation, revocation, and expiration.

Audit Logging

Complete audit trail for every credential operation. Who issued what, when it was verified, and what claims were disclosed.

Ready to build with verifiable credentials?

Get in touch to discuss your use case. We will help you design the credential schema, configure verification policies, and integrate with your existing systems.

Get in Touch