Deixe as pessoas entrarem com a identidade que elas já têm.
MitID, BankID, itsme, UAE PASS, gov.br, a Carteira EUDI. O usuário faz login com sua identidade digital governamental ou bancária, e a carteira retorna atributos assinados e verificados. Em breve, com todas as carteiras e países já no catálogo.
Confiado por mais de 2.000 organizações em todo o mundo.
MitIDDenmark · Danish Agency for Digital GovernmentEm breve
BankIDSweden · Finansiell ID-Teknik / bank consortiumEm breve
BankIDNorway · BankID BankAxept ASEm breve
VippsNorway · Vipps MobilePay / BankID NOEm breve
Buypass IDNorway · Buypass ASEm breve
itsmeBelgium, Luxembourg, Netherlands · Belgian Mobile IDEm breve
iDINNetherlands · Dutch banks (Currence iDIN)Em breve
Finnish Trust NetworkFinland · Finnish banks and mobile operators (FTN)Em breve
PersonalausweisGermany · Bundesministerium des Innern (eID)Em breve
Freja eIDSweden · Freja eID GroupEm breve
UAE PASSUnited Arab Emirates · UAE Digital Government AuthorityEm breve
gov.brBrazil · Governo Federal do BrasilEm breve
OneIDUnited Kingdom · OneID (UK bank-verified identity)Em breve
GOV.UK WalletUnited Kingdom · UK Government Digital ServiceEm breve
Smart-IDEstonia, Latvia, Lithuania, Belgium · SK ID SolutionsEm breve
Mobile-IDEstonia, Latvia, Lithuania · SK ID Solutions with the national mobile operatorsEm breve
Bank iDCzechia · Bankovní identita, a.s.Em breve
MojeIDCzechia · CZ.NICEm breve
DiiaUkraine · Ministry of Digital Transformation of UkraineEm breve
FranceConnectFrance · DINUM (French state)Em breve
AuðkenniIceland · Auðkenni (Icelandic electronic ID)Em breve
EUDI Wallet30 países da UE e EEE · The user's own member state; the issuer differs per country+26Em breve
A disponibilidade vem do catálogo de métodos de produção, não desta página. Uma carteira aparece aqui no momento em que pode ser aceita em seu fluxo de trabalho. Nenhuma data de lançamento é prometida.
Em breve
Vinte e duas carteiras. Trinta e quatro países.
Cada carteira no catálogo é listada com sua marca oficial, os países em que opera e sua autoridade emissora. Nenhuma está ativa em produção ainda: a chave de lançamento está desativada, então cada uma aparece como 'em breve' e não pode ser habilitada em um fluxo de trabalho até que seja ativada.
Como funciona
Do login com carteira a um usuário verificado em quatro passos.
Passo 01 / 04
01
Crie o fluxo de trabalho
Marque as carteiras que você aceita em cada país assim que estiverem ativas. Escolha se um login cancelado ou falho retorna para a captura de documento ou é recusado. Não é necessário código.
Integre
Integre nativamente com nossos SDKs Web, iOS, Android, React Native ou Flutter. Redirecione para uma página hospedada. Ou simplesmente envie um link ao seu usuário — por e-mail, SMS, WhatsApp, onde quiser.
O usuário passa pelo fluxo
Didit mostra as carteiras que você aceita para aquele país com suas marcas reais, direciona para a que o usuário escolhe e aguarda o retorno da declaração assinada.
Você recebe os resultados
Webhooks assinados em tempo real mantêm seu banco de dados sincronizado no momento em que um usuário é aprovado, recusado ou enviado para revisão. Consulte a API sob demanda. Ou abra o console e leia os atributos assinados.
Feito para desenvolvedores · Construído contra fraudes · Aberto por design
Seis funcionalidades. Uma lista de aceitação por país.
Uma wallet é um método dentro da Verificação de ID, com o mesmo contrato de resultado da captura de documentos. O que muda é a evidência: uma assinatura do emissor em vez de uma foto.
Toda wallet carrega sua marca oficial, sua autoridade emissora, os países em que opera e seu nível de garantia. Todas as vinte e duas estão no mesmo catálogo que seu console lê, marcadas como "em breve" até o lançamento, para que a lista nunca prometa demais.
Catálogo de carteiras
Direto do catálogo de métodos
22
No catálogo
34
Países cobertos
10
eIDAS alto
MitIDEm breve
BankIDEm breve
BankIDEm breve
VippsEm breve
Buypass IDEm breve
02 · Lista de aceitação
Marque o que você aceita. O usuário escolhe.
As carteiras são uma lista de aceitação, nunca um ranking. Não há controles de ordenação em lugar nenhum, porque a ordem seria um palpite sobre uma pessoa que você ainda não conheceu. A Noruega lista quatro; o usuário escolhe uma.
Lista de aceitação para a Noruega
Sem controles de ordenação em nenhum lugar
BankIDEm breve
VippsEm breve
Buypass IDEm breve
EUDI WalletEm breve
Marcar é toda a configuração. O usuário escolhe entre o que você aceita, e a ordem na tela não tem significado. Cada carteira mantém seu status de catálogo até entrar em operação.
03 · A transição
Transfira para a wallet, retorne verificado.
Didit gerencia a transição, a tela de espera e o retorno. Se o usuário não tiver uma wallet, cancelar ou o login falhar, uma chave decide se ele volta para a captura de documentos ou é recusado.
A transição
O que o usuário final vê
1Escolha uma carteira entre as que você aceita
2Faça login dentro da carteira
3Retorne com atributos assinados
Sem carteira, cancelado ou falhouDocumento
04 · Atributos assinados
Leia atributos assinados pelo emissor.
Nome, data de nascimento e o identificador nacional que a wallet expõe, além da própria declaração assinada. Desmarque qualquer atributo opcional que você não queira armazenar e ele nunca será gravado na sessão.
Atributos assinados
MitID · Danish Agency for Digital Government
Full nameSempre
Date of birthSempre
CPR alias (pseudonymised)Sempre
Level of assurance reachedSempre
Signed assertionSempre
Assinatura do emissorVálida
05 · Garantia
Alcance o mais alto dos três níveis de garantia.
Um documento oferece garantia documental. Uma consulta a um registro oferece uma correspondência de dados. Uma wallet oferece garantia criptográfica, porque o emissor assinou os atributos e Didit verifica essa assinatura.
Níveis de garantia
Apenas para interfaces de administrador
DocumentalCaptura de documento
Conferência de dadosConsulta em registro
CriptográficaLogin via carteira
Usuários finais nunca veem um rótulo de garantia, nome da fonte ou preço. Seus revisores veem todos os três.
06 · Abrangência
Trinta e quatro países no catálogo.
A EUDI Wallet sozinha cobre trinta estados da UE e do EEE assim que for lançada, e as wallets nacionais adicionam Brasil, Ucrânia, Emirados Árabes Unidos e Reino Unido. Nada nesta página se move até que o catálogo diga que uma wallet está pronta, então sua reivindicação de cobertura e a nossa permanecem as mesmas.
Alcance no catálogo
Países com pelo menos uma carteira
34
Países
30
Coberto pela EUDI Wallet
A cobertura segue o catálogo país a país. Uma bandeira aqui significa que uma carteira está listada para aquele país, não que esteja ativa.
Integre
Uma chamada. Um resultado assinado de volta.
Crie a sessão, envie o usuário para ela e verifique o webhook assinado quando o resultado chegar. A wallet com a qual o usuário fez login retorna no resultado.
Cole o bloco abaixo no Claude Code, Cursor, Codex, Devin, Aider ou Replit Agent. Preencha o placeholder my_stack com seu framework, linguagem e caso de uso. O agente provisiona o Didit, aceita as wallets por país, configura o webhook e faz o deploy.
didit-integration-prompt.md
# Didit digital ID wallets — integrate in 5 minutes
You are adding digital ID wallet sign-in to my_stack. The user signs in with a
government or bank digital identity and the wallet returns signed attributes.
Every URL, header, and enum value below is canonical — do not paraphrase or
"improve" them.
## 1. Provision an account
- Sign up: https://business.didit.me (no credit card required).
- Grab the API key for your application from the console.
## 2. Read the methods catalog first
Wallet availability is server-driven per country. Never hard-code a wallet list.
The catalog is not a public REST endpoint. Read it one of two ways:
- Business Console (signed in): your application -> ID Verification ->
Countries tab. https://docs.didit.me/console/id-verification-methods
- Didit MCP server tool didit_workflow_get_id_verification_methods_catalog,
authenticated with the same x-api-key; pass country (ISO 3166-1 alpha-3)
to narrow it to one country. https://docs.didit.me/integration/mcp/tools
- Public mirror of the coverage table (no auth, read-only):
https://docs.didit.me/core-technology/id-verification/verification-methods#coverage
The catalog gives you, per wallet id: the display name, the countries it
covers, the issuing authority, the level of assurance, the availability state,
and the attributes it returns. As of this prompt every wallet is coming soon:
the launch switch is off in production, so the catalog will not let you accept
one yet. Build against the catalog and re-read it; do not hard-code a date.
## 3. Create a workflow with the ID Verification (OCR) feature
POST https://verification.didit.me/v3/workflows/
-H "x-api-key: <your-api-key>"
-H "Content-Type: application/json"
The ID Verification feature's enum value is OCR (UPPERCASE — strict enum;
there is no ID_VERIFICATION alias and the API rejects it). Wallets are its
wallet method, accepted per country under config.methods on that same
feature entry, in the same request. Keys are ISO 3166-1 alpha-3.
{
"workflow_label": "Wallet onboarding",
"features": [
{
"feature": "OCR",
"config": {
"methods": {
"DNK": {
"document": { "enabled": true },
"wallet": {
"enabled": true,
"providers": ["mitid"],
"on_failure": "fallback_to_document"
}
},
"NOR": {
"document": { "enabled": true },
"wallet": {
"enabled": true,
"providers": ["bankid_no", "vipps"],
"on_failure": "fallback_to_document"
}
}
}
}
}
]
}
Response: the workflow uuid — use it as workflow_id in step 4.
Rules that the API enforces:
- providers is an accept-list, not a ranking. Order carries no meaning and
the end user picks
- on_failure is either fallback_to_document or decline. It covers all three
cases: no wallet, cancelled, sign-in failed
- a wallet id the catalog does not mark available for that country is
rejected, and the rejection fails the whole save — including any lookup
configuration next to it. While every wallet is coming soon, keep
wallet.enabled false (or omit the wallet block) so the save succeeds
- unknown wallet ids already saved on a workflow are preserved untouched, so
a config written by a newer console version is never silently dropped
- a country with no method enabled is rejected at publish time
## 4. Create a session
POST https://verification.didit.me/v3/session/
-H "x-api-key: <your-api-key>"
-H "Content-Type: application/json"
-d '{ "workflow_id": "<id from step 3>", "vendor_data": "<your user id>" }'
Response: 201 with url (the hosted verification link), session_token and
session_id. Redirect the user to url, or open it in the SDK. The field is
named url — there is no session_url and no verification_url. Didit
shows the accepted wallets for the user's country with their brand marks,
hands off to the wallet, and waits for the signed assertion to come back.
## 5. Webhooks
Register a destination (console -> API & Webhooks, or
POST https://verification.didit.me/v3/webhook/destinations/ with
webhook_version "v3" and subscribed_events ["status.updated"]) and store the
secret_shared_key it returns. Verify every delivery:
Header: X-Signature-V2 (NOT X-Signature, NOT X-Signature-Simple)
Algorithm: HMAC-SHA256, hex digest, over the CANONICAL JSON of the payload:
parse the body, sort keys recursively, serialise compact with
Unicode preserved and whole-valued floats as integers. Do NOT
hash the raw request bytes — that is the v1 X-Signature
algorithm and fails for V2 whenever whitespace or key order
differs from the canonical form.
Freshness: the signed body field timestamp is the dispatch time (Unix
seconds, refreshed on every retry). Reject when
abs(now - timestamp) > 300 seconds, and reject when the
X-Timestamp header does not equal it. The header is not
covered by the signature, so it must never be the only replay
check: a captured delivery replays with just that header
refreshed.
Compare: constant-time (crypto.timingSafeEqual)
Reference handler (Express) — use it as written:
const crypto = require("crypto");
// X-Signature-V2 signs canonical JSON: keys sorted as strings, compact,
// Unicode preserved. Emit the sorted entries directly - rebuilding an object
// would reorder integer-like keys ("10", "2"). Never hash req.rawBody.
const canonical = (v) =>
Array.isArray(v) ? "[" + v.map(canonical).join(",") + "]"
: v && typeof v === "object"
? "{" + Object.keys(v).sort()
.map((k) => JSON.stringify(k) + ":" + canonical(v[k])).join(",") + "}"
: JSON.stringify(v);
app.post("/webhooks/didit", express.json(), (req, res) => {
// Freshness: the signed body timestamp (refreshed on retry) must be recent
// and X-Timestamp must agree - the header alone is unsigned and replayable.
const ts = Number(req.body?.timestamp);
if (!ts || String(ts) !== req.headers["x-timestamp"] ||
Math.abs(Date.now() / 1000 - ts) > 300) return res.sendStatus(401);
const expected = crypto.createHmac("sha256", SECRET)
.update(canonical(req.body), "utf8").digest("hex");
const sig = String(req.headers["x-signature-v2"] ?? "");
const valid = sig.length === expected.length &&
crypto.timingSafeEqual(Buffer.from(sig), Buffer.from(expected));
if (!valid) return res.sendStatus(401);
const { status, decision } = req.body;
// One entry per ID Verification node; pick yours by node_id when you run several.
const [idv] = decision?.id_verifications ?? [];
// idv.verification_method: "document" | "id_lookup" | "wallet"
res.sendStatus(200);
});
Body fields you will use: session_id, status, webhook_type, workflow_id,
vendor_data, decision.
Status values: Approved, Declined, In Review, In Progress, Not Started,
Abandoned.
## 6. Reading the result
The decision is the V3 shape: every feature result is a plural array with one
entry per workflow node. ID Verification results live in
decision.id_verifications[] — there is no singular decision.kyc (that is the
V2 shape) and no decision.id_verification. Select your entry by node_id (the
id of your ID Verification node in the workflow graph); with a single ID step,
take index 0. Each entry carries, next to the document fields:
verification_method "document" | "id_lookup" | "wallet"
assurance "documentary" | "data_match" | "cryptographic"
wallet_provider the catalog wallet id the user signed in with; null
on document and id_lookup entries
wallet_verification provider, provider_name, issuing_authority,
issuing_country, credential_type, level_of_assurance
(low | substantial | high), verified_at,
signature_valid, attributes (what the wallet shared),
portrait when the wallet shares one; null otherwise
fallback_from { method, reason, action } when the session fell
back to document capture or was declined; else null
A wallet entry that succeeds is assurance cryptographic — the highest of the
three. Check wallet_verification.signature_valid before you trust attributes.
Field-by-field reference: https://docs.didit.me/reference/data-models#id-verification
## 7. Billing
- published customer prices in USD per completed wallet verification:
- MitID personal: $0.35; production availability: Coming soon
- BankID Sweden: $0.30; production availability: Coming soon
- BankID Norway High: $0.35; production availability: Coming soon
- Vipps Plus: $0.28; production availability: Coming soon
- Buypass ID: Coming soon; production availability: Coming soon
- itsme: Coming soon; production availability: Coming soon
- iDIN full identification: $0.85; production availability: Coming soon
- Finnish Trust Network: $0.30; production availability: Coming soon
- Personalausweis Profile 2: $0.45; production availability: Coming soon
- Freja eID: Coming soon; production availability: Coming soon
- UAE PASS: Coming soon; production availability: Coming soon
- gov.br: Coming soon; production availability: Coming soon
- OneID: Coming soon; production availability: Coming soon
- GOV.UK Wallet: Coming soon; production availability: Coming soon
- Smart-ID: Coming soon; production availability: Coming soon
- Mobile-ID: Coming soon; production availability: Coming soon
- Bank iD: Coming soon; production availability: Coming soon
- MojeID: Coming soon; production availability: Coming soon
- Diia: Coming soon; production availability: Coming soon
- FranceConnect: Coming soon; production availability: Coming soon
- Auðkenni: Coming soon; production availability: Coming soon
- EUDI Wallet: Coming soon; production availability: Coming soon
- an announced price does not enable a wallet; check the live workflow catalog
- wallet checks are outside the document free tier; other checks are billed separately
- full pricing: https://docs.didit.me/core-technology/id-verification/digital-id-wallets#pricing
- document capture bills its own price when the user falls back
## 8. Hard rules — do not change
- base URL for v3 endpoints: verification.didit.me
- auth header: x-api-key (lowercase, hyphenated)
- webhook headers: X-Signature-V2 plus X-Timestamp; canonical JSON, never
raw bytes; freshness from the signed body timestamp
- feature enum: OCR (uppercase) — the ID Verification feature; per-country
methods go under its config.methods
- method keys: document, id_lookup, wallet (lowercase, snake_case)
- wallet ids come from the catalog verbatim, lowercase, snake_case
- country keys: ISO 3166-1 alpha-3, uppercase
- result path: decision.id_verifications[] (array), never decision.kyc
## 9. Verify your integration
- run one session per accepted wallet in sandbox
- assert the id_verifications[] entry for your node has verification_method
wallet and wallet_verification.signature_valid true
- cancel a wallet sign-in and assert your on_failure setting actually fires
- assert your webhook accepts a correctly signed payload with reordered
keys, whitespace and integer-like metadata keys ("10" before "2"), and
rejects a wrong X-Signature-V2, a payload whose signed timestamp is older
than 300 seconds, and that same stale payload with only the X-Timestamp
header refreshed
Docs: https://docs.didit.me/integration/integration-prompt
Conformidade por design
Abra um novo país com um clique. Nós fazemos o trabalho pesado.
Nós abrimos as subsidiárias locais, garantimos as licenças, realizamos os testes de penetração, obtemos as certificações e nos alinhamos a cada nova regulamentação. Para lançar verificações em um novo país, basta ativar uma chave. Mais de 220 países ativos, auditados e testados trimestralmente, o único provedor de identidade que um governo de um estado membro da UE formalmente considerou mais seguro do que a verificação presencial.
Preços e disponibilidade da carteira de identidade digital
Os preços abaixo são em USD por verificação de carteira concluída. Eles cobrem o produto de identidade nomeado; outras verificações de fluxo de trabalho e fallback de documentos são cobradas separadamente. As 500 verificações de documentos gratuitas mensais não cobrem carteiras. Um preço anunciado não significa que uma carteira está ativa: a disponibilidade é mostrada separadamente. Preços não anunciados estão "Em breve". Carteiras de identidade verificam pessoas; a triagem de carteiras de criptomoedas é um produto separado.
Preços e disponibilidade da carteira de identidade digital
Carteira de identidade
USD / verificação concluída
País / região
Disponibilidade em produção
MitID personal
US$ 0,35
Denmark
Em breve
BankID Sweden
US$ 0,30
Sweden
Em breve
BankID Norway High
US$ 0,35
Norway
Em breve
Vipps Plus
US$ 0,28
Norway
Em breve
Buypass ID
Em breve
Norway
Em breve
itsme
Em breve
Belgium
Luxembourg
Netherlands
Em breve
iDIN full identification
US$ 0,85
Netherlands
Em breve
Finnish Trust Network
US$ 0,30
Finland
Em breve
Personalausweis Profile 2
US$ 0,45
Germany
Em breve
Freja eID
Em breve
Sweden
Em breve
UAE PASS
Em breve
United Arab Emirates
Em breve
gov.br
Em breve
Brazil
Em breve
OneID
Em breve
United Kingdom
Em breve
GOV.UK Wallet
Em breve
United Kingdom
Em breve
Smart-ID
Em breve
Estonia
Latvia
Lithuania
Belgium
Em breve
Mobile-ID
Em breve
Estonia
Latvia
Lithuania
Em breve
Bank iD
Em breve
Czechia
Em breve
MojeID
Em breve
Czechia
Em breve
Diia
Em breve
Ukraine
Em breve
FranceConnect
Em breve
France
Em breve
Auðkenni
Em breve
Iceland
Em breve
EUDI Wallet
Em breve
Austria
Belgium
Bulgaria
Croatia
Cyprus
Czechia
Denmark
Estonia
Finland
France
Germany
Greece
Hungary
Ireland
Italy
Latvia
Lithuania
Luxembourg
Malta
Netherlands
Poland
Portugal
Romania
Slovakia
Slovenia
Spain
Sweden
Iceland
Liechtenstein
Norway
Em breve
Três planos, uma tabela de preços
Comece grátis. Pague pelo uso. Escale para Enterprise.
500 verificações gratuitas todo mês, para sempre. Depois, pague apenas quando um módulo for executado. Contratos personalizados, residência de dados e acordos de nível de serviço (SLAs) no plano Enterprise.
Grátis
$0/ mês · sem cartão
Para construir, testar e para seus primeiros usuários.
Tudo o que você precisa para começar:
500 verificações KYC completas todo mês
ID, prova de vida, face match, dispositivo e IP
Mais de 200 sinais de fraude, blocklist, duplicatas
KYC reutilizável em toda a rede Didit
Construtor de fluxo de trabalho, gerenciamento de casos, SDKs
Suporte de IAAgente de IA no console, documentação e comunidade.