What is the Federated Key Registry Protocol?
Last Updated June 8, 2026
To ensure absolute tamper-proof auditability of identity state, device registration status, and FIDO2 keys, UID.one anchors cryptographic identifiers to a federated key registry:
- Cryptographic Protocol: ECDSA (Elliptic Curve Digital Signature Algorithm) signatures.
- Registry System: Federated Key Registry.
- Architecture: During device enrollment, public key hashes are registered in our federated registry, creating a secure root-of-trust. Downstream relying parties (e.g., Trip.Express) can verify device and signature validity directly by querying the registry API, avoiding central points of failure and eliminating blockchain dependencies.