focused infrastructure demos · one bounded trust-chain laboratory

Choose one boundary. Inspect it end to end.

Each page exercises one part of the verification rail and keeps its endpoint, observable outcome, simulated inputs, and production limits beside the interaction. The directory does not run anything itself.

Public runner Reference or synthetic inputs Guided or gated surface
people and wallets

Private facts and holder-bound presentations.

seven scoped technical lanes · closed public runner

Issue and walk the lab trust chains

Create fresh, purpose-bound Web TLS, eIDAS-profile, mdoc, wallet, vLEI/EUDI relying-party, and QKD identity artifacts in six local lanes; separately verify bundled real GLEIF testnet evidence read-only; reject fourteen boundary attacks; then sign one public evidence manifest. Technical success and external recognition stay separate.

Real cryptographic checksPrivate and profile-shaped issuers

POST /api/sandbox/trust-chain/run

Open the trust-chain laboratory →

vLEI + EUDI registrar · bounded public runner

Onboard a company as a wallet relying party

Run a proposed GLEIF and German EUDI Wallet Sandbox scenario: bind a synthetic PID wallet to a controlled vLEI role, issue local reference access and registration artifacts, enforce one registered purpose, then reject root, key, scope, revocation, replay, and signature attacks.

Real cryptographic checksProposed scenario; local partner fixtures

POST /api/sandbox/portable-trust/run

Open the portable-trust demo →

real zero-knowledge · public runner

Unlinkable age verification

Generate and verify a real Groth16/BN254 proof of age_over_18, then present the same stand-in holder to two relying parties and compare their different scoped nullifiers. The date of birth is not disclosed.

Live endpointReference-grade setup

POST /verify/age

Open the age-proof demo →

OID4VCI + OID4VP · public runner

EUDI wallet round-trip

Create a demo credential offer by QR, then initiate a wallet presentation that asks for an age claim and verifies issuer and holder binding. This standards path does not by itself claim cross-site unlinkability.

Live endpointsDemo issuer and data

POST /api/v1/oid4vci/offer · POST /api/v1/oid4vp/initiate

Open the wallet round-trip →

holder + action binding · portable runner

Approve one exact network action

Issue a synthetic operator credential to an ephemeral embedded wallet, bind its presentation to one fixed mock Quality-on-Demand request, and independently verify the signed receipt. Revocation, altered QoS, and destructive operations fail closed.

Real cryptographic checksSynthetic identity and network

POST /api/sandbox/operator-wallet/*

Open the operator-wallet demo →

authority and delegation

Who may act, and how far.

organizational ZK · public runner

Prove the role, hide the organization

Observe an accepted organizational-role proof and the explicit rejection of foreign-root, tampered-nullifier, replay, and tier-escalation cases.

Live endpointGLEIF test ecosystem

GET /vlei/zk/demo

Open the organization demo →

attenuated delegation · public runner

An agent denied at its cap

Issue a key-bound delegation chain, run two metered purchase attempts, and watch the second fail when the worker crosses its narrower spend cap.

Live endpointEphemeral demo keys

GET /agent/chain/demo

Open the agent-control demo →

wallet-bound step-up · public browser flow

Raise assurance with a passkey

Start from a simulated federated session, bind a real WebAuthn credential, and inspect which assurance axis changes. The flow does not turn a simulated identity source into verified identity evidence.

Live WebAuthnSimulated upstream login

/onramp/login → /binding/challenge → /passkey/enroll → /stepup

Open the step-up demo →

operations and governed decisions

Inputs are not decisions.

payment policy · public runner

Inspect a signed payment-policy result

Evaluate a bundled synthetic authorization sample and inspect the signed policy receipt. No wallet presentation is received, no SCA is performed, and no money moves.

Live endpointCanned fixture

GET /verify/payment/demo

Open the payment-control demo →

signed field evidence · public runner

A reading is not the decision

Check an instrument signature, separate calibration record, technician scope and holder proof, asset/work-order challenge, freshness, coverage, and replay before issuing a minimised receipt.

Live endpointSynthetic fixture and test keys

GET /verify/inspection/demo

Open the inspection demo →

GFTN / GXS · closed-input public runner

Run one governed SME payment

Compare a dated, GET-only OBP public-catalogue checkpoint with the separate synthetic payment control: approve, wallet step-up, or decline, then inspect adaptive promotion, rollback, and attack controls.

Interactive deterministic controlsSynthetic decision data, no money

GET /api/sandbox/gftn-sme/evidence · POST /run · /adaptive

Open the GFTN SME sandbox →

governed risk reference · public overview

JointRisk control plane

Inspect how separate fraud and early-loss heads feed a signed, transaction-bound approve, step-up, or decline decision and a reviewable model promotion path. The computational control room remains gated.

Guided executionSynthetic data, uncalibrated model

Open the JointRisk reference →

honest scope

What is live, and what remains a boundary.

The pages above call the listed same-origin endpoints. A successful runner result is shown only after the endpoint returns. Each page states whether its credentials, keys, upstream identity, sensor input, or business data are synthetic, self-minted, test-ecosystem, or partner-gated.

The demos do not confer issuer trust, eIDAS qualification, OIDF certification, GLEIF adoption, regulated payment participation, hardware provenance, or production model validation. Those are separate governance, partner, or operational milestones.