Solidus Lexicon
The vocabulary we build on, and who wrote it
An encyclopedia of the identity, credential and consensus vocabulary Solidus is built from, with each entry stating who specified it and what Solidus has actually built.
- 227
- entries
- 218
- credit someone else
- 9
- we implemented
- 118
- running here
Every term here was specified by someone else. 118 of them run on Solidus today, and 91 describe something we have not built yet.
Categories
- Standards & Specifications53The open specifications Solidus is assembled from: W3C DIDs and Verifiable Credentials, the IETF's JOSE and OAuth families, DIF's interop protocols. The largest section here, and the one with the most running code behind it.
- Identity & Verification48The vocabulary of proving who someone is: KYC, IDV, AML, liveness, portability. The language your compliance team and your vendors already speak, defined without the sales pitch.
- Consensus & Chain23How the Solidus chain agrees on state: HotStuff BFT, validators, finality, slashing. Every mechanism here has a published paper behind it, and every entry names it.
- Cryptography23The mathematics underneath selective disclosure: BBS+, BLS, zero-knowledge proofs, Merkle trees. What each primitive actually guarantees, and what it does not.
- AI Agents & Machine Identity19Identity for software that acts on its own: ERC-8004 agent passports, workload identity, verifiable off-chain compute. The newest vocabulary in the book, and the fastest moving.
- Unit Economics & Cost10What verification costs, what reuse saves, and who carries the liability when a check is wrong. Every figure here is a model you can re-run with your own numbers.
- EU Regulation10eIDAS 2.0, the EUDI Wallet, the Architecture Reference Framework, GDPR, MiCA. What each one obliges you to do, and when the deadline actually falls.
- Türkiye Regulation10MASAK, KVKK, TCKN, e-Devlet, BTK SIM registration, crypto-exchange licensing. Türkiye's identity rules written down in one place, which is rarer than it should be.
- Industry Verticals10Where identity verification is legally required or commercially load-bearing: eSIM, SIM registration, hospitality, gig platforms, employment, age gates. Each entry names the rule that forces the check.
- Solid & Personal Data Stores8Tim Berners-Lee's Solid project: WebID, LDP, WAC, RDF, and where personal data stores came from. Solidus Pod is Solid-compatible, and each entry says exactly how far that goes.
- Privacy7Correlation, linkability, herd privacy, the phone-home problem: the properties that decide whether a credential system watches its own users. The questions worth asking any vendor, us included.
- Security6Threat models, trust anchors, replay and man-in-the-middle attacks. The failure modes a credential system has to survive, named plainly.
All 227 entries
- Account Takeover (ATO)
- Adverse Media Screening
- Age Assurance
- Age Verification
- Agent Card
- Agent Onboarding
- Agent Passport
- AML (Anti-Money Laundering)
- Anchor Transaction
- AnonCreds
- Anti-Cheat Precondition
- ARF
- Attestation
- Authentication
- BBS+ Signature
- Bearer Token
- BFT
- BLAKE3
- BLS Signature
- BTK SIM Registration (Turkey)
- CBOR
- CDD (Customer Due Diligence)
- Chargeback
- Committee Election
- Confidential Computing
- Consent
- Correlation
- Correlation Handle
- COSE
- Cost Per Verification (CPV)
- Credential Portability
- Credential Reuse Rate
- Credential Schema
- Credential Status
- Cryptographic Suite
- Data Integrity Proof
- Data Minimisation
- Data Residency
- Decentralized Identifier (DID)
- Deterministic Execution
- DID Document
- DID Method
- DID Resolution
- did:solidus
- DIDComm v2
- Disclosure Digest
- DORA
- DPoP (RFC 9449)
- Driver Onboarding
- Drop-off Rate
- e-Devlet (Turkey's e-Government Gateway)
- Ed25519 / EdDSA
- EDD (Enhanced Due Diligence)
- eIDAS 2.0
- EKDS · KPS · TCKK
- ERC-8004
- eSIM Activation
- ETSI TS 119 461
- ETSI TS 119 612
- EUDI Wallet
- EVM Subnet
- False Positive Rate
- FATF Travel Rule
- FIDO2 / WebAuthn
- Finality
- First-Party Fraud
- Fork Choice
- Gas
- GDPR (General Data Protection Regulation)
- GDPR Article 17 (Right to Erasure)
- Genesis Block
- Governance
- Guardian Recovery (Social Recovery)
- Guest Registration
- HD Wallet (BIP-32/44)
- Herd Privacy
- Holder Binding
- HotStuff / HotStuff-2
- ICAO 9303
- IDV (Identity Verification)
- ISO 18013-5 mDL
- ISO 27001
- ISO/IEC 27701
- ISO/IEC TS 18013-7
- Issuer-Holder-Verifier triangle
- IVMS101
- Job Envelope
- JSON Web Signature (JWS)
- JSON Web Token (JWT)
- JSON-LD
- JSON-RPC
- JWKS (JSON Web Key Set)
- k-of-n Threshold
- KBS (Kimlik Bildirme Sistemi)
- KERI
- Key Binding JWT (KB-JWT)
- KVKK (Kişisel Verilerin Korunması Kanunu)
- KYB (Know Your Business)
- KYC (Know Your Customer)
- Law 5070
- Law No. 6222 (Sporda Şiddet ve Düzensizliğin Önlenmesine Dair Kanun)
- LDP
- Leader Election
- Level of Assurance (LoA)
- Liability Shift
- libp2p
- Light Client
- Linkability
- Linked Data Signature
- Liveness Detection
- Machine Customer
- Machine Identity
- Man-in-the-Middle
- Manual Review Queue
- Marketplace Seller Verification
- MASAK (Mali Suçları Araştırma Kurulu)
- MASAK Tebliğ 32
- mDoc
- Merchant Onboarding
- Merkle Tree
- MiCA (Markets in Crypto-Assets Regulation)
- Minimal Disclosure
- MRZ
- mTLS
- Multibase
- NFC
- NIS2
- NIST iBeta (PAD Certification)
- NIST SP 800-63
- Non-Custodial Wallet
- Nonce
- OAuth 2.0
- OID4VCI
- OID4VP
- Onboarding (Customer / Account Onboarding)
- OpenID Connect (OIDC)
- OpenID Federation
- Operator Registry
- Pairing-Based Cryptography
- Pairwise DID
- Pass Rate
- Passive authentication
- PCI DSS
- PEP (Politically Exposed Person)
- Periodic Review
- Phone-Home Problem
- PID
- PKCE
- Pod
- Predicate Proof
- Presentation Attack
- Presentation Exchange
- Proof Purpose
- Proof-of-Identity
- QTSP
- Quorum Certificate
- RDF
- Re-KYC
- Re-verification Cost
- Refresh Token
- Reliance (in an issuer/verifier model)
- Remediation
- Replay Attack
- Revocation
- Rider Verification
- Right to Erasure vs Audit Trail
- Right to Work
- Risk Scoring
- Safety vs Liveness
- Salted Hash Disclosure
- Sanctions Screening
- SD-JWT VC
- Sealed Inference
- Seed Phrase (BIP-39)
- Selective Disclosure
- Session Fixation
- Sidetree
- SIM Registration
- SIWE / EIP-4361
- Slashable Offence
- Slashing
- SOC 2
- Solid Protocol
- Solid-OIDC
- Source of Wealth / Source of Funds (SoW / SoF)
- Sparse Merkle Tree
- SSI (Self-Sovereign Identity)
- State Root
- Status List
- Sybil Attack
- Synthetic Identity Fraud
- TCKN (T.C. Kimlik Numarası)
- Threat Model
- Ticketing Identity
- ToIP
- Token Introspection
- Total Cost of Ownership (TCO)
- Transaction Pool
- Trust Anchor
- Trust Registry
- Trusted Execution Environment (TEE)
- Turkish Crypto-Exchange Licensing (KVHS Regime)
- Turtle
- UBO (Ultimate Beneficial Owner)
- Universal Resolver
- Unlinkability
- Validator
- VASP (Virtual Asset Service Provider)
- VC Data Model 2.0
- Vendor Lock-In
- Venue Access Control
- Verifiable Credential
- Verifiable Off-Chain Compute
- Verifiable Presentation
- Verification Reuse
- View Change
- VRF
- W3C DID Core
- W3C Digital Credentials API
- W3C VC API
- WAC/ACL
- WebID
- Workforce Screening
- Workload Identity
- X.509 / PKIX
- x402
- Zero-Knowledge Proof