Security & Privacy
Security and privacy model for S.I.G.N. including data placement, selective disclosure, audit access controls, and operational security practices.
Purpose
Security goals
The privacy principle: “private to the public, auditable to lawful authorities”
Data classification and placement
Recommended classification
Placement rules of thumb
Cryptography and standards (reference)
Credential + identity stack
Signature schemes (reference)
Privacy / ZK (reference)
ePassport integration (reference)
Privacy mechanisms in practice
Selective disclosure
Unlinkability
Minimal disclosure
Payment privacy (New Money System alignment)
Access control and lawful audit
Role-based access control (RBAC)
Audit access
Evidence export
Operational security baseline
Key management
Monitoring and incident response
Supply chain and SDLC security
Threat model (high-level)
Recommended evidence artifacts (standard set)
Last updated
Was this helpful?
