Privacy
SmaiID shares the minimum claim set required for an application to work. Everything beyond that is your decision.
Profile visibility
Currently Konsmik-visible. Your immutable SmaiID is never published.
Private
Only you and applications you explicitly authorize.
Konsmik-visible
Discoverable by handle inside Konsmik entities.
Public
Handle, display name and avatar visible on the open web.
Default claim sharing
What leaves SmaiID, and under which condition.
Display name
Shared with every application you authorize.
Email address
Only when the email scope is approved.
Phone number
Sensitive. Approved per application.
Region
Coarse region only. Never precise location.
Trust state
Level only โ never your reputation history.
Your identity data
Identity records only. Course progress, balances and messages live with the entity that owns them.
Export identity data
Profile, devices, sessions, consents and security events as JSON.
Deactivate SmaiID
Moves SID-H-7QK2-4M9T-XB13 to DEACTIVATED. Entities keep their own local records.
Erase identity
Permanent. Requires step-up authentication and a cooling-off period.
Not yet enforced: Visibility, export and erasure need the identity store, an export pipeline and a lifecycle state machine. This build presents the policy surface only.