SIOPv2 (Self-Issued OpenID Provider v2) is an OpenID Foundation specification that extends OpenID Connect so a user’s own wallet acts as the identity provider, authenticating with self-issued and decentralised identifiers rather than a third-party server. It lets relying parties verify a subject controls a DID and, paired with OpenID for Verifiable Presentations, accept verifiable credentials. It is a key protocol for decentralised, wallet-centric digital identity.
Content
- The holder presents a self-issued ID token signed by keys associated with their DID, which the relying party resolves and verifies without a hosted provider. Combined with OpenID4VP, SIOPv2 enables selective disclosure of verifiable credentials, supporting privacy-preserving, user-controlled authentication flows.