SmaiID
V1 ยท AAL2
SH

Privacy

SmaiID shares the minimum claim set required for an application to work. Everything beyond that is your decision.

Profile visibility

Currently Konsmik-visible. Your immutable SmaiID is never published.

Private

Only you and applications you explicitly authorize.

Konsmik-visible

Discoverable by handle inside Konsmik entities.

Public

Handle, display name and avatar visible on the open web.

Default claim sharing

What leaves SmaiID, and under which condition.

Display name

Shared with every application you authorize.

Always

Email address

Only when the email scope is approved.

On consent

Phone number

Sensitive. Approved per application.

On consent

Region

Coarse region only. Never precise location.

On consent

Trust state

Level only โ€” never your reputation history.

On consent

Your identity data

Identity records only. Course progress, balances and messages live with the entity that owns them.

Export identity data

Profile, devices, sessions, consents and security events as JSON.

Deactivate SmaiID

Moves SID-H-7QK2-4M9T-XB13 to DEACTIVATED. Entities keep their own local records.

Erase identity

Permanent. Requires step-up authentication and a cooling-off period.

Not yet enforced: Visibility, export and erasure need the identity store, an export pipeline and a lifecycle state machine. This build presents the policy surface only.