OpenID for Verifiable Presentations (OpenID4VP) is an extension of the OpenID Connect and OAuth 2.0 framework that enables relying parties to request and receive W3C Verifiable Presentations from a holder’s digital identity wallet using standard authorisation request-response flows. The specification defines a Presentation Exchange-compatible request syntax, transport bindings for cross-device and same-device wallets, and response encoding options for signed JWT VPs and JSON-LD credential formats. OpenID4VP allows verifiers to specify which credential types and claims are required, enabling selective disclosure and privacy-preserving identity verification without centralised identity providers holding user data.

Content

  • OpenID4VP originated from work within the OpenID Foundation’s Self-Issued OpenID Provider (SIOP) working group, which sought to bring decentralised identity flows into the well-understood OpenID Connect ecosystem rather than requiring organisations to adopt entirely novel protocols. The initial draft specifications circulated from 2020, and the approach gained momentum through the EU’s eIDAS 2.0 regulation, which references OpenID4VP alongside OpenID4VCI as the technical basis for the European Digital Identity (EUDI) Wallet Architecture Reference Framework (ARF).
  • The protocol flow begins with the verifier constructing an authorisation request that embeds a Presentation Definition object, describing required credential types, issuer constraints, and claim paths. This request is delivered to the wallet either via a redirect URI (same-device) or a QR code (cross-device). The wallet presents matching credentials to the holder, who consents; the wallet then constructs a Verifiable Presentation, signs it with the holder’s key, and returns it in the authorisation response—either directly or via the verifier’s redirect endpoint. The verifier validates the presentation against the credential issuer’s public key material and the holder binding proof.
  • The specification is significant because it bridges the established OAuth 2.0 security model—already trusted by billions of web interactions—with the emerging world of self-sovereign credentials. This lowers the integration cost for relying parties who already support OIDC, and allows existing identity federations to progressively adopt holder-controlled credentials. Support for multiple credential formats (SD-JWT VC, ISO 18013-5 mdoc, JSON-LD with BBS+ signatures) makes OpenID4VP format-agnostic.
  • As of 2024–2025 OpenID4VP is at draft-20+ status within the OpenID Foundation and is referenced normatively by the EUDI Wallet ARF v1.4, the US mobile driver’s licence (mDL) presentation ecosystem, and several national digital identity programmes in the United Kingdom, Canada, and Australia. Interoperability events (OWF wallets, HAIP profile) have validated multi-vendor implementations, and the specification is expected to reach final publication under OpenID Foundation governance in 2025.