Trusted Credential Issuance
Understand where issuer trust begins, before a proof is generated.
A bounded starting point
The current workflow uses a demo authority to issue test credentials. It does not collect biological samples, operate clinics, perform identity checks or issue government documents.
Issuer, holder and verifier
The issuer maintains a registry of test eligibility records. The holder keeps a secret used in proof generation. The verifier decides which issuer and policy it accepts.
- A signing key authenticates a registry snapshot
- A holder commitment binds the sample to a secret
- Issuer authority remains a separate trust decision
Try credential issuance
Start in Vault or the Identity Sandbox. Use only the built-in test fixtures. Follow the signature, registry and status checks before drawing conclusions from a proof.
Beyond the demonstration
A real deployment would need a suitable issuer, identity-proofing process, secure key management, recovery and revocation procedures. These are readiness requirements, not services supplied by the current lab.
Genomic research direction
A future authorised laboratory could issue a bounded claim about a validated process. That would require its own scientific, privacy and regulatory evaluation. No laboratory partnership or clinical capability is claimed here.

