EU Framework Effective 2026

EU Digital Identity Wallet

The European Digital Identity Wallet framework creating unprecedented PKI demand — every EU citizen will have access to a wallet for secure identification, authentication, and electronic attestation of attributes.

Quick Facts

Status
In Development
Type
EU Framework (eIDAS 2.0)
Scope
All EU Citizens & Residents
Wallets available
2026
Mandatory acceptance
2027

Overview

The EUDI Wallet is the flagship initiative of eIDAS 2.0. Each EU member state must offer at least one digital identity wallet by 2026, enabling citizens and residents to securely identify themselves, authenticate online, and present verified credentials across borders.

Wallets will store Person Identification Data (PID), Qualified Electronic Attestations of Attributes (QEAA), and electronic documents such as driving licenses and diplomas. The entire infrastructure relies on PKI at massive scale: wallet attestations, relying party certificates, trust anchors, and qualified electronic signatures.

This creates the largest PKI deployment in European history. With over 450 million potential users, the wallet ecosystem demands certificate issuance, management, and validation infrastructure capable of operating at population scale while maintaining the highest security and interoperability standards.

Key Requirements

Wallet Trust Evidence (WTE) Certificates

Each wallet instance requires cryptographic attestation certificates proving the wallet's integrity, authenticity, and compliance with the trust framework.

Person Identification Data (PID) Issuance

Member states must issue verifiable Person Identification Data to wallet holders, backed by qualified electronic attestations and strong PKI-based identity binding.

Qualified Electronic Attestation of Attributes

QEAAs allow wallet holders to present verified attributes (diplomas, licenses, professional qualifications) with legally binding value across the EU.

Relying Party Authentication

Every service accepting wallet credentials must authenticate itself with certificates, ensuring wallet holders can verify who is requesting their data before sharing.

Wallet Secure Cryptographic Device

Wallets must use a certified Secure Cryptographic Device (WSCD) for key management, ensuring private keys are generated, stored, and used in a tamper-resistant environment.

Interoperability & Cross-Border Recognition

Wallets must work seamlessly across all 27 member states, requiring standardized protocols, trust lists, and certificate validation mechanisms for universal acceptance.

Key Milestones

21
2021

Framework proposed Jun 2021

The European Commission proposes a framework for a European Digital Identity, amending the eIDAS regulation to introduce digital identity wallets.

24
2024

eIDAS 2.0 adopted, ARF v1.4 published

The revised eIDAS regulation is formally adopted. The Architecture Reference Framework v1.4 provides detailed technical specifications for wallet implementation.

25
2025

Large-scale pilots conclude

EU-funded large-scale pilots (LSPs) across multiple member states conclude, validating wallet architecture, interoperability, and user experience.

26
2026 Current

Member states must offer wallets

Every EU member state must provide at least one European Digital Identity Wallet to its citizens and residents.

27
2027

Mandatory acceptance by public services & large platforms

Public services and large online platforms must accept the EUDI Wallet for identification and authentication, achieving full cross-border interoperability.

Impact on PKI & Certificates

The EUDI Wallet creates the most significant expansion of PKI infrastructure in European history, demanding certificate management at an entirely new scale. Here are the critical areas:

1

Population-Scale Certificate Issuance

With over 450 million EU citizens and residents, the wallet ecosystem requires certificate issuance infrastructure capable of handling massive volumes while maintaining security and availability.

2

Wallet Attestation Certificates

Every wallet instance requires device-bound attestation certificates proving integrity and compliance, with continuous lifecycle management for provisioning, renewal, and revocation.

3

Relying Party Certificates

Every online service, public administration, and platform accepting wallet credentials must obtain and maintain relying party certificates, creating a vast new certificate ecosystem.

4

Trust Anchor Management Across 27 Member States

Cross-border interoperability requires harmonized trust anchor management, standardized trust lists, and automated validation across all member state PKI infrastructures.

How we help

Evertrust & EUDI Wallet

Stream provides CA infrastructure for wallet credential issuance at scale — Our sovereign PKI platform delivers the high-availability Certificate Authority infrastructure needed to issue wallet attestation certificates, PID credentials, and QEAAs at population scale.

Horizon manages millions of certificates across the wallet ecosystem — Our CLM platform provides the governance, discovery, and lifecycle automation needed to manage the unprecedented volume of certificates the EUDI Wallet generates.

Automated provisioning and rotation for wallet attestations — Automate the complete lifecycle of wallet attestation certificates, from initial provisioning through periodic rotation, ensuring continuous compliance without manual intervention.

Policy enforcement for wallet trust framework compliance — Enforce certificate policies aligned with the EUDI Wallet Architecture Reference Framework, ensuring all issued credentials meet interoperability and security requirements.