02_VIP_IS: Encrypted Channel Transactions

Statement: All identifying data shall be transacted through encrypted channels.

Review Meeting(s): TBD

Status: Draft

Encrypted Channel Transactions

Encrypted Channel Transactions

Statement (Single phrase or sentene

All identifying data shall be transacted through encrypted channels.

Description

To provide holders and verifiers with confidentiality, verifiers shall only transact identifying data through encrypted secure channels to prevent exposure to third parties.

Note:  In the context of a digital ID, identifying data also includes unique identifiers such as public keys and digest salt values.

Scope (applies to)

Part A: Verifiers
Part B: Issuers
Part C: Providers

Select the Primary Consideration*

CC (Consent and Choice)
PL (Purpose legitimacy and specification)
CL (Collection limitation)
DM (Data minimization)
UR (Use, retention, and disclosure limitation)
AQ (Accuracy and quality)
OT (Openness, transparency, and access)
IA (Individual access & participation)
AC (Accountability)
IS (Information Security)
PS (Privacy compliance)

Reference

02_VIP_IS

Select other relevant considerations

CC (Consent and Choice)
PL (Purpose legitimacy and specification)
CL (Collection limitation)
DM (Data minimization)
UR (Use, retention, and disclosure limitation)
AQ (Accuracy and quality)
OT (Openness, transparency, and access)
IA (Individual access & participation)
AC (Accountability)
IS (Information Security)
PS (Privacy compliance)

Related Requirements

 

Explanatory Notes (Text or Link)

See archived version: Encrypted channels

Page Tasks