Application Layer

HTTP message signing (JWS) ensures message integrity and non-repudiation.

Identification & Trust

eIDAS QWACs identify the TPP. eIDAS QSeals are used for signing.

Transport Layer

TLS 1.2+ with Mutual Authentication (mTLS) secures the communication channel.

A defense-in-depth approach providing security at the channel, participant, and message levels.