WHAT’S A ROLE PROOF?
We generate a digitally signed object that references a certificate through a cryptographically generated representation, using commonly accepted hashing algorithms.

| Â | |
![]() |
Each proof represents an application or organizational role and has a unique ID. |
![]() |
Proofs are generated for each role repeatedly with each having only a short life. |
![]() |
Proofs reference other proofs for delegation. This can be done across multiple authorities. |
![]() |
Each contains a list of certificates, referenced by their hash to show authorization. |
![]() |
Each is digitally signed to give it cryptographic authenticity. |





