The platform

One trust fabric for humans, apps, and AI agents.

Affinidi is a connected system — issue verifiable identities, hold them under user control, verify them anywhere, and govern who to trust, across every boundary. Here's how the pieces fit together.

IssueHoldVerifyConnect
How it connects

Four building blocks, one loop.

Each product owns one job — and hands off to the next. Together they form a single trust loop that works the same whether the actor is a person or an AI agent.

Control plane

Affinidi Trust Fabric

The identity-first Agent Gateway. It governs how agents, apps, and services connect — with policy enforcement, observability, and cross-boundary trust tunnels. Every actor gets a verifiable identity at birth.

  • DIDComm v2.1
  • TSP Rev2
  • MCP · A2A · AP2 · x402
  • Works with Entra · Okta
  • Policy & observability
Includes
Credential engine

Affinidi Elements

Issue, hold, verify, and privately exchange W3C Verifiable Credentials. Elements Services covers issuance and verification, the Vault keeps credentials under the owner’s control, and Messaging moves them over encrypted DIDComm — with zero PII stored on our side.

  • OID4VCI · OID4VP
  • SD-JWT
  • User-held Vault
  • DIDComm exchange
Trust networks

Affinidi Radix

Decide who to trust. Governance frameworks, registries, and runtime trust queries (TRQP) that tell any verifier whether a party — human, organisation, or agent — is legitimate.

  • Governance frameworks
  • Registries
  • TRQP endpoints
  • Runtime trust queries
Includes
Developer layer

Affinidi Forge

Build on all of it. Multi-language SDKs, CLI, and docs to embed issuance, verification, and agent trust into your stack — in a few lines, on open standards.

  • TS · Python · Rust · Java
  • CLI & API
  • Reference apps
  • Open standards
The foundation

Open standards, no lock-in.

Everything above is built on open specifications and standards bodies — so credentials and identities interoperate across vendors, borders, and ecosystems.

Decentralized Identity Foundation — contributorWorld Wide Web Consortium — contributorGlobal Legal Entity Identifier Foundation — contributorAYRA — contributor
  • DIDComm v2.1
  • Trust Spanning Protocol (TSP Rev2)
  • DID:WebVH
  • Selective Disclosure (SD-JWT)
  • Digital Credentials Query Language (DCQL)
  • European Digital Identity (EUDI)
  • MCP
  • A2A
  • OID4VCI
  • OID4VP
Built in the open · Audited · Interoperable

Trust you can verify, not just claims.

56 Public repositories
120 Contributors
5,000+ Commits
8 SDK languages
Open standards
Decentralized Identity Foundation — contributorWorld Wide Web Consortium — contributorGlobal Legal Entity Identifier Foundation — contributorAYRA — contributor
  • DIDComm v2.1
  • Trust Spanning Protocol (TSP Rev2)
  • DID:WebVH
  • Selective Disclosure (SD-JWT)
  • Digital Credentials Query Language (DCQL)
  • European Digital Identity (EUDI)
Explore our GitHub → Join 2,500+ on Discord →
Security & compliance
  • ISO 27001 certified Independently audited (SAC & UKAS), backed by a public Trust Centre.
  • Zero PII stored User-consented by design — no central honeypot of personal data.
  • End-to-end encryption DIDComm v2.1 encrypted channels for every exchange.
  • Data residency & self-host Run in your own cloud or on-prem — data never leaves your domain.
Visit the Trust Centre →

Cookie Preferences

We use cookies to enhance your experience. You can manage your preferences below. For more information, read our Cookie Policy.

Strictly Necessary Always Active

These cookies are essential for core website functions such as security, session integrity, and cookie preference storage. They cannot be disabled.

  • _cf_bm: Distinguishes humans from bots (Cloudflare) · 30m
  • _cfuvid: Ensures secure browsing (Cloudflare) · Session
  • __hs_initial_opt_in: Prevents HubSpot's banner · 7 days
  • _gtm_debug: GTM debug mode (testing only) · Session
Analytics

These cookies help us understand how visitors interact with the site so we can improve content and performance. All data is aggregated and anonymous.

  • _ga, _gid, _gat: Google Analytics · Session – 2 years
  • __hstc, hubspotutk, __hssrc: HubSpot visitor tracking · 13 months
  • __hs_opt_out: HubSpot opt-out preference · 6 months
Marketing & Targeting

These cookies allow us and our partners to serve personalised ads and measure campaign performance.

  • _gcl_au, _gcl_dc: Google Ads conversion tracking · 90 days
  • IDE: Google Display Network personalisation · 1 year
  • _fbp: Meta / Facebook remarketing · 90 days
  • li_gc, _li_fat_id, bcookie: LinkedIn tracking · 1–24 months
  • guest_id, personalization_id: Twitter/X analytics · 2 years