Table of Contents
...
The ecosystem creates assurance to verifiers, credential holders and relying parties that trust anchors are applying generally accepted trust criteria to their methods and practices by the introduction of accreditation and independent third-party audits that act in their interest. Relying parties acquires trust from the ecosystem based on the ability of the players to follow through on its commitments and the integrity of its decisions. Symbols of this trust are stored on publicly accessible credential registry it can be propagated throughout the ecosystem.
The Governance Metamodel includes a Controlled Document section titled "Risk Assessment, Trust Assurance and Certification". The deliverables contributing to this section is derived from this TF.
...
- ToIP Trust Assurance Primer (Google Document version) provides an overview of Trust Assurance concepts and why it is an important aspect of ToIP governance. (Google Document version)
- ToIP Risk Assessment Kit is a guide that Governance Authorities can use to develop a a risk assessment enabling a proper control scheme to be implemented
- ToIP List of SSI and Verifiable Credential Risks is an inventory of various risks that affect the Governance Stack for consideration in risk assessments
- ToIP Levels of Assurance defines classes of objects (e.g. credentials) and actors participating in creating, maintaining and using those objects at defined levels of assurance
- ToIP Ecosystem Control Objectives and Practices identifies a set of control requirements and suggested control practices of roles in an ecosystem to address risks in an ecosystem and varying levels of assurance
- ToIP Trust Assurance Framework Implementation Guide is a reference guide to Governance Authorities to assist in creating an appropriate risk-based scheme for an ecosystem
- ToIP Risk Assessment (Google Document version), Trust Assurance, and Certification Controlled Document Template is a model are models for governance framework developers to assist in creating this various controlled document documents of the governance metamodelGovernance Metamodel.
- ToIP Trust Criteria Matrix Template (Google Document version) is a model for governance frameworks that want to enact their own assurance criteria for governed roles operating in the ecosystem. (Google Document version)
- ToIP Certification and Trust Marks is a deep dive into enacting a formal certification scheme using Trust Marks
...