decentralized-id.github.io/_posts/identosphere-dump/web3-and-decentralized-identity/web3.md
2022-12-02 04:30:37 -05:00

89 KiB
Raw Blame History

published
false

Web 3

3box IDX: A Devkit for Open Identity (From Kaliya, this is interesting, but they are taking on a huge amount of work without an IPR container/wrapper).

Designed to be cross-platform and highly configurable, IDX is compatible with all blockchains, wallets, and a wide variety of user and application data storage options including Ceramic, Textile, OrbitDB, Filecoin, IPFS, and Secure Data Stores — so you can seamlessly integrate decentralized identity with the rest of your Web3 tech stack.

  • The 3 parts of identity in a dynamic world

    At 3Box we live and breathe identity, and while GDPR and data abuses like Facebooks may be concerning, they have also brought some welcome attention to the issues of digital privacy and data control.

  • Elemental Chat - 1st Holochain P2P App for Hosts

    Elemental Chat running on HoloPorts has no central database. Each person who is running the app signs their messages to their own chain and then automatically posts them to the shared database that is hosted by the other users of the application.

  • The Rise of MetaNations Tim Bouma

So whats the imperative for us as real people and governments? To make sure that these realms are as open and inclusive as possible. Personally for me, I dont want to have a future where certain metacitizens can exert their metarights in an unfair way within the real world; the chosen few getting to the front of the line for everything.

Importantly, the verifier and the issuer never actually interact directly. They only ever compare notes in the ledger. The process only begins when you kick start it, reveals only the information you want to reveal, and doesnt require an all-powerful centralized authority holding all the private keys to work.

In Stephensons “Snowcrash” Hiro Protagonist, the aptly named protagonist of the book, side hustles as a “Stringer for CIC”; essentially a gig economy worker collecting digital intelligence and posting it to a massive data marketplace. Users of the metaverse can then access this library to search for any information they want.

MetaVerse

When you create your metaverse avatar, who owns it? Is it yours, or does the platform own it? This question is very fundamental for the future of digital services and human rights. Its also a very practical and technical question in terms of how we build these platforms and databases.

When comparing Meta — formerly Facebook — and Microsofts approaches to the metaverse, its clear Microsoft has a much more grounded and realistic vision. Although Meta currently leads in the provision of virtual reality (VR) devices (through its ownership of what was previously called Oculus), Microsoft is adapting technologies that are currently more widely used.

Kurt Nielsen & Nagib Aouini from Partisia Blockchain

Broadly speaking, ENS domain names also belong to a kind of decentralized identifier. The identity of the domain name is formed by a collection of attributes, identified by a certain domain name. As a domain name system, ENS conforms to the three characteristics of the Zooko triangle, namely security, decentralization, and human readability.

Your @iota web3 username. We are buidling an #IOTA for gas-free, sapiens-friendly wallet & dApp addresses. Neat, easy and secure. +info

Besides an exciting front side of virtual reality (VR) element that everybody could at least vaguely relate to, there are a lot of other interesting developments, particularly around the digital economy and trusted interactions enabled through digital and self-sovereign identity (SSI).

Web 3.0 encourages users participation and restore the control over their digital identity and assets

Oasis Digital Studios ("Oasis"), Bonifii will make its verifiable credential available for players in the game Aftermath Islands and facilitate in-game financial transactions in the same, privacy-preserving way real world customers use the Bonifii credential. This collaboration in the metaverse breaks new ground in the emerging digital experiences of Web 3.0.

This guy gets it ^^^^^

Given the history of why web1 became web2, what seems strange to me about web3 is that technologies like ethereum have been built with many of the same implicit trappings as web1.

  • […]

Personally, I think enough money has been made at this point that there are enough faucets to keep it going, and this wont just be a blip. If thats the case, it seems worth thinking about how to avoid web3 being web2x2 (web2 but with even less privacy) with some urgency.

This post will be a living document that I keep up with as I learn, experiment, and gather feedback from developers building in web3.

a16z, the famous venture capital company, is entering the DAO field through investments into DAO projects, such as the recent investments in social DAO project, FWB.

Passwordless authentication is a fundamental shift in how people will access their tools and information online, and it will provide more security, prevent billions in losses, and create greater transparency.

The dark side of COVID vaccine

In The crypto-communists behind the Web3 revolution, Benjamin Pimentel argues that "The future of decentralized finance echoes a decidedly Marxist vision of the future." He references various Silicon Valley icons like Jack Dorsey, Marc Andreessen, Elon Musk, and others, comparing their statements on Web3 and crypto with the ideology of communism.

… to have aspects that have relevance to the DID/VC work.

I recently read a twitter thread by an academic who abandoned a book-length monograph on O'Reilly, with multiple chapters on the vicissitudes of what O'Reilly kept trying to make Web 2.0 "mean" and what it ended up meaning after billions of dollars of VC and a decade-long hype cycle's worth of marketing and spin had been applied to it. Web3 is likely to be an even bigger, uglier, stupid semantic tug-of-war for some time.

  • [...]

Anyways, I hope we can keep the CCG list a DMZ in this rapidly-escalating culture war, before "Web3" becomes the next "Critical Race Studies" or "Satanic Panic".

Scores of illicit vendors are capitalising on vaccine scepticism in Europe and North America by selling counterfeit Covid-19 vaccination and test certificates for Bitcoin.

MSFT Explains: Decentralized identity: The Direct Presentation model

When we use identity-related credentials in the real world, they often have different properties than digital credentials. There are two separate ceremonies in most cases: issuance and presentation. If you have spent any time at a department of motor vehicles or a passport office, youve seen what an issuance ceremony can be it is usually an intensive process, but the tradeoff is that once you have a credential like a drivers license or passport, you can use that credential for multiple purposes, at multiple places, over a long period of time.

The technical name for the model at work here is called the Direct Presentation model. A credential is issued, and then held for a long period of time with intermittent voluntary presentations to many different verifiers. To put that back into our example, my auto club issues me a card, which I hold in my wallet for years (maybe decades!), and I might choose to show that card to a garage when I need a tow, or possibly to a store to get a discount.

Tweets with Annoucements:

Moxie argues that protocols evolve slowly, while platforms evolve quickly. Thats because a platform can make decisions without waiting for a whole crowd of others to reach consensus. But heres the thing — some protocols dont need to evolve quickly. As long as a base protocol is versatile enough to let people create and express things in an unlimited range of fit-for-purpose application protocols, it can be as stale and boring as it likes. And its precisely the decentralisation, versatility, and stability of these base protocols — HTTP, email, and yes, Bitcoin and Ethereum — that allow platforms to innovate so quickly on top of them.

A good explanation and good critique of Web3

So while the blockchain space is in some abstract sense perfectly private and perfectly reliable, things are weakest at the joints. The on-ramps and off-ramps are parts of the real world, theyre tied to physical reality and KYC/AML/CTF regulations.

Any system connected to the real world is going to have some of the problems of the real world connected to it too. Thats just life.

The tools people have to participate in these territories, browsers and password managers, let us visit those territories, but we ourselves cannot be visited. We cannot act. Online relationships (client-server) are inherently asymmetric and the power accrues to those who define the territory.

…Ceramic, a decentralized network for composable Web3 data. The network consists of three core components:

  1. Scalable, decentralized data infrastructure
  2. Open APIs for storing, modifying, and retrieving data
  3. Community-created marketplace of reusable data models

Rather than being a DAO, the world is a gigantic metasystem that provides numerous tacit capabilities for action and interaction. So, while “Life is a DAO” makes a better t-shirt, I prefer “Life is a Metasystem.” Take the red pill.

Vinay: My history goes back to the 1990s. I was involved very heavily in the kind of cypherpunk movement in the 90s. My first year where 100% of my salary went through crypto cash was 1999, so 99/2000 I got a full year of salary in crypto cash.

Both financial crisis reformers and Bitcoin proponents believe that the existing financial order is a collusive arrangement between large banks who are supported by government power…. Societies and social contracts are built on cooperative mechanisms, but also barriers and enforceable rules.

The amount of utopian bullshit and fake promises on a technology that doesnt really work as anything but a speculative bubble and money laundering device should be a big red flag. Crypto is a movement based on the theory that the existing nation-state is a system rigged by billionaires, and the right response is to create a different and more corrupt order rigged by different billionaires, money launderers, and dictators.

Still not excited about tokenization of credential exchange. (Kaliya)

A game changing, blockchain based, public utility layer, which makes it simple for people and organizations to exchange verifiable, immutable, trusted self-sovereign career credentials.

Web3 social media? Decentralized identity? Digital society in the metaverse? On this episode, we unpack the future social world in the metaverse and the protocols that will help shape it.

In the three years since weve been active as a Web3 company, this is the second time we had the opportunity to participate in this massive gathering of some of the brightest minds in the Web3 space. What better way to open our presence at ETHDenver than to become official sponsors of the Opening Party?

SSI verifiable credentials are like non-fungible token attached to decentralized identifiers (DID)

When we dine at a restaurant in the physical world, we do not do so within some administrative system. Rather, as embodied agents, we operationalize our relationships by acting for ourselves. Web3, if built correctly, can help people to act as full-fledged participants in the digital realm.

In sum, SSI saves time, enhances security, and returns personal data ownership to individuals, thereby lessening the power of GAFA [Google, Apple, Facebook, and Amazon].

Providing that baseline of knowledge is the goal of a series of six workshops called “Imagining a Better Online World: Exploring the Decentralized Web.”

On the 31st of January, 2022, we deployed SkillWallet DAO, and the first self-sovereign ID that ever existed. Soon we will be sharing more details about the DAO Mechanics and our radically transparent approach to progressive decentralization.

Despite the large sums of money made by the people who own Bitcoin, Ethereum, and other altcoins, Ive always viewed the Web3 movement as anti-capitalist. That couldnt be further from the truth. The movement is really about doing one of the most capitalist things there is: cutting out the middleman. It means that instead of value accruing to the Aggregators, there can be a more direct connection between suppliers and consumers.

The only falsifiable prediction I'm willing to make is that ten years from now, Chris Dixon and the Winklevoss Twins will be much richer than me, and my quality of life will be the same, or worse.

There are five essential mental models to understanding why Web3 matters, and they overlap often throughout the course of the conversation.

Web3 has begun to impact all corners of digital culture, from media to finance, art and gaming, and even identity. Mental models allow for digestible thinking patterns to understand and predict the world, and Chris lays out how these new digital primitives are changing everything.

On May 6, 2021, two days after the Me2B Alliance published our report on data sharing in school utility apps, Google issued a “pre-announcement” describing major improvements to app labeling in the Android app store:

The announcement signals a serious intention to not only catch up to Apples privacy label, but surpass it, by introducing independent validation of the Android app privacy information.

We encourage users to start creating and launching their profiles as we begin integrating Tezos Profiles support across the Tezos ecosystem. Currently, we are focused exclusively on publicly available information and accounts to avoid privacy issues.

Constantin Kogan joins Fabian Vogelsteller, Ethereum developer, LUKSO founder, creator of Mist browser, web3.js, Feindura (CMS), ERC20, and ERC-725 protocols, and author of Meteor.js.

Magic makes it plug and play for developers to add secure, passwordless login, like magic links and WebAuthn, to their applications. Users are no longer exposed to password-related risks from the very start.

Recent regulatory guidance has clarified that banks may serve as custodians of virtual assets. In response, the banking industry has rushed to understand how it can seize this new business opportunity, without creating an untenable amount of AML and regulatory risk

Web 2.0 vs Web 3.0 — A Bridge Between the Past and the Future Web 2.0 represents the Internet as we know it today and includes all the blogs, social media sites, shopping, news generation, and more! It is marked by user-generated content, interoperability across different services, usability, interactiveness, and high levels of participation.

Built on Polkadot, Fractal Protocol is an open-source, zero-margin protocol that defines a basic standard to exchange user information in a fair and open way, ensuring a high-quality version of the free internet. In its first version, it is designed to replace the ad cookie and give users back control over their data.

We know that many communities are desirably and rightly passionate about their adopted protocols. We are not taking shots at any of the ones discussed below, which we didnt take forward; we only want to explain our thinking and why we see using Cosmos as a massive boon for us.

The first major feature we introduced with this beta release is the account, a higher-level API to use IOTA Identity. Similar to the recent Chrysalis update, IOTA Identity becomes a lot easier to use by utilizing the account. It is intended to provide a much more simplified interface that is perfect for 90%+ of the use cases. The other 10% are more complex use cases that may still want to utilize the lower-level APIs to have more control over the Identities. The account doesnt just simplify the interactions with DID Documents, but also with the Tangle and Stronghold.

Whether its the enforcement of legal identities, platform lock-in, or more implicit social norms, the logic of individualized identity was baked into web 2.0. With the advent of web 3.0, we have a chance to do things differently.

Panel speakers: - Jesus Ruiz, Member of the Board and CTO, Alastria - Jun Li, Founder, Ontology - Ingo Rube, Founder and CEO, BOT Labs (KILT Protocol)

Ian Grigg is one of the most influential builders in the crypto space, having built digital asset systems since the nineties. We discuss his invention of the Ricardian contract framework, what makes cryptonetworks successful, identity as communal phenomenon, and the importance of building positive-sum systems.

Since Magics authentication protocol is based on key pairs provided by decentralized blockchain networks, it is platform-independent and thus able to provide authentication service without having to rely on centralized identity providers.

Public blockchain and smart contracts are a convenient and viable cloud for security-critical information and allow to implement more complex schemes. For example, your service requires that the user's identity be confirmed by some external KYC provider, or there must be an always available master public key to distribute software updates in the network (relevant for IoT).

verims initial product suite can be broken down into three parts.

  • A decentralised network for secure and private trusted data exchange
  • Token-based payment rails for digital identity interactions
  • Easy-to-use software kits for external app developers to integrate into their own products

(besides Bitcoin, infominer is a Cosmos maximalist)

Ill cover how the Decrypt team streamlined development and onboarding to launch Decrypt Tokens and Drops — along with how crypto DNA and a leading product and team drove their trust in Magic.

Holochain makes a bold claim: Consensus is unnecessary for most of the things blockchain is interested in doing.

Since identity is such a central part of society, UNISOT, through its UNISOT ID service, offers our customers control over their data. Under self-sovereign identity model users who have one or more identifiers (something that enables a subject to be discovered and identified) can present claims relating to those identifiers without having to go through an intermediary. In the following sections we will outline how SSI can change the way you interact with others on the Internet as well as in the real world.

I don't know about Discord, but in my opinion a [#decentralized self sovereign identity solution would make a great addition to the identity server of @matrixdotorg

Ontology is bringing Ont ID to Polkadot users, as part of an initiative to bringing OScore, their DID based credit scoring solution, to their own Polkadot parachain.

Solid - Inrupt

A story appeared in the NY Times about Tim Berners-Lees vision for the web and Solid-Inrupt that are working towards fulfilling it. The article included a quote from Kaliya, and has stirred up an active thread on the CCG mailing list.

Others say the Solid-Inrupt technology is only part of the answer. “There is lots of work outside Tim Berners-Lees project that will be vital to the vision,” said Kaliya Young, co-chair of the Internet Identity Workshop, whose members focus on digital identity.

Mr. Berners-Lee said that his team was not inventing its own identity system, and that anything that worked could plug into its technology.

  • A solid discussion is underway, including this from Kayode Ezike

    when I developed solid-vc, I was operating mostly under the threat model of compromised cryptographic keys used to sign credentials via jsonld-signatures and a compromised Solid password.*

    I don't want to bombard you all with too much information about this project in this thread, but for now I will share the solid-vc repo again as well as my RWoT9 submission.

Epic Content sez Infominer.

Through the DID Specification, service endpoints and DIDComm, Impervious has interlaced DIDs with Bitcoin Lightning, IPFS, WebRTC and resilient relays to introduce a new peer-to-peer internet standard with practical applications for mitigating censorship and surveillance risk

Could blockchain and the decentralized web mean the end of surveillance capitalism? Maybe! In this episode, Perkins Coie partner Charlyn Ho defines digital identity, explains how blockchain empowers users to take control of their data, and shares how Web3 could dismantle Big Techs monopoly on Big Data - if its built the right way.

  1. With one line of code verify realid.eth wallet addresses.

const result = await provider.resolveName(${address}.realid.eth);

if(parseInt(address, 16) === parseInt(result, 16)) {

// address has Real ID

}

  1. Guard against Sybil attacks and follow KYC/AML regulations.

  2. Reduce sign-up friction and lower costs for exchange.

  3. If desired, create membership requirements based off of the attached identity (for instance, if you wanted to create an NFT collection that could only be minted by residents of New York City) without requiring users to give up their whole identity.

Self-Sovereign Identity (SSI) is arguably the most effective form of digital identity in Web 3.0. SSI is a user-centric identification method for controlling information. Fully aligned with Web 3.0, SSI eliminates the need to store personal information entirely on a central database and gives individuals greater control over the information they share to protect their privacy.

Web 3 Meta

On March 11, 2022, I was a panelist on The Metaverse: The Emperors New Clothes panel at the Vancouver International Privacy & Security Summits panel. Nik Badminton set the scene and led a discussion with myself, James Hursthouse and Kharis OConnell. Here are seven reflections.

DAOs are, I think, one of the best illustrations of the problem with a lot of these Web3 projects: They are trying to find technological solutions that will somehow codify very complex social structures. A lot of them also seem to operate under the assumption that everyone is acting in good faith, and that project members interests will generally align—a baffling assumption given the amount of bad actors in the crypto space.

Many people are still struggling to comprehend exactly what the metaverse is and what promise it will deliver. On a conceptual level, the metaverse has been positioned as the next generation internet that provides a way for us to make our physical lives seamlessly integrate with our virtual lives, creating real-time immersive experiences

I spoke with White via email about her views on Web3 fixtures such as DAOs (distributed autonomous organizations), cryptocurrencies, and NFTs (non-fungible tokens). Our conversation has been lightly edited for length and clarity.

Although metaverse initiatives are still in their infancy, they are rapidly scaling up leveraging technologies such as blockchain, augmented reality, virtual reality, Internet of Things, artificial intelligence and digital twins to redefine our digital capabilities.

No. 7: Protecting Our Personal Data

Called a "self-sovereign identity," it would keep the data with the individual. People would use the Secure ID for online interactions; any data sent would be encrypted. But the key is that those online entities would not store the data themselves. So, there would be no more huge, centralized places where personal data could be stolen.

Outside of events like the buzzy Fashion Week, Decentraland receives only about 25,000 visitors a day, according to its own internal data.

That lack of engagement isnt deterring investors from scrambling to buy up Decentraland property or from striking major brand partnerships.

Web 3 and the NFT brain eating worms…

Editorial commentary:  I dont really get it but some how folks finally “get” NFTs and then are like oh…that is an identity and this sort of just pulled out of the box made by some cryptohackers thing is going to be the answer…. Sigh.  more people are writing about them as if…its “new” when this diagram.

Has been literally floating around the user-centric identity community for 18 years.

See Johanness version from 2005/6

More weird Crypto Identity thoughts. PFPID

Building nontransferable Identity locked to your Ethereum wallet.  And connected with a real world identity. Mmm..what could go wrong. Should Roven explain it to them?

Despite cryptos unquestionably right-libertarian roots, and the continuing prevalence of those politics in crypto today, were also seeing people asking questions like:

  • How can we create a more equitable financial system, where everyone has access to banking services?
  • …..

The rules of engagement havent changed when it comes to the necessity to create value for consumers, and in this territory its more important than anywhere else.

April 2022 with Odyssey and The Hague

February 2022 with Heidrick & Struggles

We cant fit this entire EPIC 63 tweet thread, here. Recommend to check it out!

1/ Here's an A-Z list of every startup or company I could find building the [blockchain] crypto privacy & identity ecosystem. Why privacy AND identity? Cuz we can't make real progress on privacy unless we also rearchitect toward user-centric identity -- fight me!

blockchain agnosticism is possible due to our DID registry component: all incoming activity is delegated to the DID registry with specific connections to each blockchain so that the rest of our technology components do not have to participate in the process. Other components need not know where the information persists from; they delegate that special knowledge to the DID registry and continue to perform their regular activities as usual.

Blockchain analytics solutions have been a critical part of enabling the crypto industry to combat financial crime since Elliptic produced the first such capabilities in 2014

In Web3 protocols cryptographic keys are used for encryption and signature verification. Typically a key is split into a public and a private key and because private keys are hard to keep secure, it is considered good practice to change keys over time.

“Pairwise Trust” now available on MetaMUI SSID In the ever-evolving digital society, one of the most important thing is to control ones digital identity and digital property.

In Web3 protocols cryptographic keys are used for encryption and signature verification. Typically a key is split into a public and a private key and because private keys are hard to keep secure, it is considered good practice to change keys over time.

In MetaMUI, users can create their own DID by submitting their personal information(KYC) to one of the Sidechain Operators, and the operator will decide whether approving or denying the request depending on the status of the submitted data. Once the request is approved, the users personal data get hashed, and the hashed data is safely stored in the users device.

“The interest of the individual in privacy may not be aligned with their interest in the metaverse provider,” Casey explained. “We have plenty of history of this through current social media. Its not obvious how these misaligned, structural interests will yield much different results in the metaverse.”

Users will now be able to control their digital identity with their Solana accounts instead of relying on traditional/custodial profiles. The Importance of Building a Self-Custodial Future In crypto, there is a saying that goes ”Not your keys, not your crypto

A whole lot of ecosystem players at the event were pleasantly surprised to discover Web3Auths Key Management Infrastructure

the verification is “stamped” on the Users XRP Ledger Account with a Non-Fungible-Token, called a Human UUID, that uniquely identifies the verified individual. The User can then present their verified credentials, cross-checked against the XRP Ledger Account, to financial institutions to satisfy KYC requirements. Effectively, iXRPL “tokenises” the one-off cost of verifying your identity into a reusable asset.

Regulation will touch every person in every jurisdiction worldwide; crypto must find ways to preserve its decentralization and privacy.

New paper by Glen Wheyl

Key to this sociality is decomposable property rights and enhanced governance mechanisms—such as quadratic funding discounted by correlation scores—that reward trust and cooperation while protecting networks from capture, extraction, and domination. With such augmented sociality, web3 can eschew todays hyper-financialization in favor of a more transformative, pluralist future of increasing returns across social distance.

The ideological argument for Web3 is very compelling, and I personally hold many of the same ideals. I strongly believe in working toward a more equitable and accessible financial system, creating a fairer distribution of wealth in society

SSI “Neighbors”

Our vision is to give DAOs the tools to better represent the varying nature of membership, improve member engagement, coordination and distribution of power and permission. By doing so, we also aim to progressively improve their autonomy and permissionlessness, while surfacing clear paths and incentives for individual members to deepen their participation. 💪

REPUTATION FOR DECENTRALIZED ECOSYSTEMS

  • Trust Graph is an open protocol for sourcing & rendering Trust relationships
  • It is a toolkit for building and reading distributed Trust Graphs
  • An ambitious plan to create interoperability between existing and future Trust Networks
  • Compatible with existing rating schemes (scores, percentages, star ratings, etc)
  • Open Source (Apache licensed)

Infominer says this maybe a response to twitters BlueSky - SelfAuthenticating protocol. It may not have occurred to them the possibilities enabled by SSI\VCs until seeing twitters plans (or to begin with the whole thing was just a marketing stunt to pump their bitcoin holdings)

Fixating on the degree—rather than the type—of decentralization is leading us astray

web3 — which combines the decentralized, communitygoverned ethos of the first era with the advanced, modern functionality of the second era. This will unlock a new wave of creativity and entrepreneurship

Building a better internet won't happen by chance or simply maximizing freedom. We have to build systems that support justice. How can we do that?

Humans are tribal, we want to belong and integrate ourselves in like-minded communities that are focused on the things we are passionate about. And, just as we have since the dawn of humanity, we submit to our innate urges to form tribes, develop communication standards and protect one another.

A massive wave of world-class talent has entered web3 over the last year. They are brilliant and passionate and want to build a better internet. Thats why we decided to go big.

Explore the unique paradigms behind Web3 reputation, prominent use cases, and example architectures to incorporate credentials into your application.

We've entered the “in it for the tech” phase.

Attention now shifts to builders and a heads down mentality can lead to the creation of some of the most intriguing Web3 companies to date.

Web3

people think a token is an easy way to raise money, which it is, relative to many other ways of raising money. But keep in mind that every step you take in your entrepreneurial journey is just a step closer to the next, usually bigger, problem.

Lets transition our knowledge from Web2 to Web3 and know which technologies support what.

we must work to preserve the freedom of individuals to self-identify by building those technical capabilities into the DNA of Web 3.

PoPP signs and issues “stamps” to the users Passport that publicly attest to the users claims. Behind the scenes, these are Verifiable Credentials (VCs) that are stored on the users Ceramic streams.

There is practically no boomer control of bitcoin or web3

Affinidis consent manager has a simple architecture as it comprises only a few modules and this is what makes it easy to implement across any application stack.

Consensus 2022 SSI Sessions

If folks are talking at the event, reach out, we will share info - its not just where Kaliya is going in the world.

Drummond Reed, Chief Trust Officer, Evernym

Joe Cutler, Partner, Perkins Coie LLP

Lisa Seacat DeLuca, Director of Product & Engineering, Identity, Unstoppable Domains

Mr. Tobias Batton, CEO, Ex Populus

Mr. Richard Widmann, Global Head of Strategy, Google Cloud

In a much needed multi-chain extension to Sign-in with Ethereum, users will now be able to control their digital identity with their Ethereum/ENS, Solana, and Starknet accounts instead of relying on traditional/custodial profiles.

OWN (Ontology Web3 Network) Infrastructure is a series of general blockchain basic protocols and products provided by Ontology for Web3 applications. Basic components including data and reputation, etc., and general-purpose tools such as a Web3 wallet, etc. Web3 applications can choose different basic components according to different scenarios for easy integration.

crypto wins by solving problems that nobody else can solve, profitably. It has to win at three levels to survive:

  • Ordinary people have to use it
  • It has to generate actual value, not just move value around
  • Governments have to tolerate it or use it themselves — either one will do

Verifiable Credentials + Web3

Verifiable Credentials (VCs) allow people and organizations to issue statements on behalf of others. These statements are then verifiable even if the original issuer is no longer around. We can see VCs in action in many KYC (Know Your Customer) and AML (Anti-Money Laundering) flows. For the entire flow to work, though, there needs to be a verifier.

Regulation & Crypto

The Gillibrand official press release (but not the RFI bill text) specifically calls out both Bitcoin and Ether which, together, comprise more than half of the total market capitalization of crypto as being commodities under the bills framework and thus falling under CFTCs jurisdiction.

Regulations around stablecoins have a long way to go for this asset class to be properly regulated. Nevertheless, improvements are being made and such incidents only speed up the process.

What if people had the ability to assert their own legally binding permissions for data collection, use, sharing, and retention by the technologies they use? The IEEE P7012 has been working on an interoperability specification for machine-readable personal privacy terms to support such an ability since 2018.

The convergence of multiple rapidly maturing technologies, such as AI, IoT, and blockchain permits any connected entity — whether a person, vehicle, device, package, piece of infrastructure, or data set — to communicate and autonomously participate as an independent economic agent in transactions.

Now is the key moment to bring the ethos, technology and ambition of web3 to the real world to solve human problems.

someone opened his door using Ethereum. As a self-sovereign identity developer [...] this is hilarious. I can think of ten ways to open your door that are more secure. But I believe theres more to these stories. These people are coming up with solutions that are in line with most of the core values we in the SSI space have been working on for years.

In 2017 we published Chainauth, a mechanism for anchoring verifiable credentials on Bitcoin, and in 2021 we released Civic Pass, a multi-chain token protocol, in conjunction with identity.com.[...]

Why, if we had Chainauth, based on verifiable credentials, did we release Civic Pass, a token protocol very similar to SBTs?

Yikes!

When using the smart contract pattern for verifications, you can use any blockchain you would like. For the sake of this guide, we will focus on Solidity, which is the programming language for the Ethereum Virtual Machine.

Web3 and SBT Debates Continue

The lack of a universal identity standard is holding us back; its harming collaborative processes and opening the door for bad actors and scams which breed mistrust and stigmatize the entire industry.

DSI is a multi-chain self-sovereign identity protocol enabling users to maintain a unified identity over Web3. It allows users to manage all their  as well as on-chain and off-chain credentials through a single identity which allows them to build their reputation and own their data and identity in a trustless and secure manner.

crypto wins by solving problems that nobody else can solve, profitably. It has to win at three levels to survive:

  • Ordinary people have to use it
  • It has to generate actual value, not just move value around
  • Governments have to tolerate it or use it themselves — either one will do

VR is not ready for artistic reasons, far more than for technical ones.

So my prediction is this: the Metaverse is going to fail.

The stay-at-home culture which VR is fundamentally rooted in doesnt provide the lived experiences which people want.

Definitions of “DAO” (short for Decentralized Autonomous Organization) usually start with technology, specifically blockchain. But I think that actually misses much of whats exciting about DAOs, a bit like if you were to explain why your smartphone is great by talking about semiconductor circuits. Lets try to define DAO without starting with blockchain.

Will we have to agree on what counts as a “real” identity under the covers? Will there always be biological or “legal” identities behind every metaverse entity? What happens when metaverse entities create completely synthetic digital children? Will there be levels of identity that bottom out somewhere?

A Self-Sovereign Digital Twin™ (SSDT) is a digital twin which is anchored in a decentralized trust network using W3Cs DIDs)Standard (for MOBIs community, this is the Integrated Trust Network, or ITN). By using the SSDT and W3Cs VC Standard, the controller of the SSDT can participate as an autonomous economic agent in trusted transactions through issuing VCs and Verifiable Presentations (VPs). For MOBIs community, this is done using Citopia Marketplace. Citopia utilizes the network effect and Zero-Knowledge (ZK); allows for the onboarding of SSDT; and enables VCs and VPs.

Critique of the SoulBound Tokeh Paper

Even little bits of what might be considered mostly harmless private information when correlated can present unexpected privacy problems. What this means is that the only information safely applicable for use in a Soul Bound Token is so impersonal as to be of little practical use.

Video-calling app Keet, the first app built on Holepunch, will integrate built-in payments powered by Bitcoin's Lightning Network.

Exploring the Unprecedented Privacy Risks of the Metaverse," boffins at UC Berkeley in the US and the Technical University of Munich in Germany play-tested an "escape room" virtual reality (VR) game

Search engine phishing exploits the trust we have in search engines and the convenience of searching for something rather than remembering the domain.

Our petition calls on the SEC to develop a workable regulatory framework for digital asset securities guided by formal procedures and a public notice-and-comment process, rather than through arbitrary enforcement

Instead of sending an SMS code, the new Coinbase Security Prompt sends users a push notification to their Coinbase mobile app

Some of this is clearly aspirational, perhaps on the other side of likely.

web1: read web2: read + write web3: read + write + own

If you want to explain Web3 in the simplest language, I think it is a decentralized collaboration model.

Experts globally agree on one key point about decentralized identity: it will be essential to the evolving metaverse and Web3 world. Well all be using personal keys, blockchains and decentralized applications to limit the amount of personal information we expose to data brokers, data breaches and dodgy business practices.

Proposal: its not Web3 — its DeWeb (a la DeFi) as we undo all the mistakes around centralized ownership of the web 2 era. Opinions?

  • [] Bonus points — “de-web” sounds like “untangling a clusterfuck” which is exactly what it is.

  • [...] DeWeb is: - Self-sovereign identity with portable accounts and easy sign-on (such as sign-in with Ethereum). - Custody of your own data and the ability to revoke access to it by 3rd parties. - Permission-less commerce rails. - Permission-less domains (ENS) - more?

  • Mail3 Web3 natives deserve a better mail

  • Souls, Tokens, and Verifiable Credentials - Indicio Tech Sam Curren

The paper “Decentralized Society: Finding Web3s Soul” has generated much discussion as a more advanced and beneficial way of applying an NFT-type technology to encode “social relationships of trust” in Soul-Based Tokens.

With current technologies, we can have a user sign-in using their keys (e.g. Sign-In with Ethereum), have credentials issued to their identifier (and store them), and use capabilities to retrieve and present those credentials.

Despite people spending a lot of money today on all forms of digital content, from streaming service subscriptions to in-game purchases, we don't own any digital content we "buy" online.

about current tech giants profit off our data and how that can change in Web 3

Every single day, the 5 tech giants use your online property to make massive profits. Last year alone, they took in $1,400,000,000,000. Here's what you need to KNOW & DO

Fractal Protocol enables users, individuals to control who has access to their data, for which purposes, and under which conditions. It allows users to reap the just rewards for providing access to the data that fuels the ecosystem.

The open source implementation of DID on Cardano

On this theme, Im particularly interested in one event, an attempt to map the projects that make up the DWeb and look for opportunities for interoperability. This was a vision I carried with me to the last DWeb Camp, and Im hoping to see more conversations about building bridges between networks.

this mechanism is to use public blockchains, paired with cryptocurrency, for staking and distributing awards to nodes performing the verification work. By doing so, the execution of the verification mechanism is completely automated, immediate, and impartial.

All in all, the exponential rise in cases of data breaches and hacks on Web 2.0 applications, calls for a new system that protects users data and privacy on the internet. Additionally, the rapid growth of the decentralized internet means that digital identities are becoming more important than ever as users turn to virtual worlds and metaverses in future.

If you are considering integrating tokenized identity into your protocol, seek out a model that meets these requirements.

  • Fraud Detection
  • Provenance
  • Privacy
  • Verifiable Credentials

The response has been overwhelming: over the past 15 days, 12,000+ Masa SBTs have been minted on testnet. The community resonated with our thesis: web3 needs an identity protocol.

But the first thing you should know about the metaverse, even as its still emerging and being defined, is that the time to act is now. The metaverse is expected to contribute USD 3 trillion to global GDP by 2013 and customers will expect immersive and interactive activities and apps from your brand

We designed Sovereign Accountable Commons (SACs) in order to embed mutual accountability in apps and organizations without needing blockchains to secure the integrity of the space. Because all Holochain apps inherently hold the code underlying SACs, any platform built on Holochain has the ability to follow the principles which we lay out in this article.

Bankless: The Decentralized Identity Revolution good long article

Web3 digital identity — soulbound tokens, verifiable credentials, and Proof of Personhood projects — represent a credible alternative to formulating digital identities in a decentralized, bottom-up manner.

Although their methods differ, these builders are aligned in the same goal: Enabling individuals to create a rich social layer without reliance on central issuers.

  • Despite its impressive track record, the firm has made some blunders over the years.
  • Some of its worst bets include OpenBazaar, Diem, Basis, and BitClout.

EPIC overview of Web3 identity projects

Now, when it comes to defining and verifying identity, a few distinct approaches pop up [Transactional Identity, Personal Identity, Collateralized Identity, Social Identity, Reputational Identity, Data Identity, Credentialing Services, Authentication]

Soulbound tokens are based on a concept first popularized by online role-playing multiplayer games like World of Warcraft.

SSI differs in that their default visibility is private and off-ledger, whereas SBTs are proposed as public and on-ledger by default.

Johannes riffing on this post with a great chart

Tl;dr: Coinbase is funding a lawsuit brought by six people challenging the US Treasury Departments sanctions of the Tornado Cash smart contracts and asking the Court to remove them from the U.S. sanctions list. The lawsuit explains that OFAC exceeded its authority from Congress and the President in sanctioning open source technology, rather than sanctioning the bad actors who used it or the property of those bad actors.

A key opportunity Web3 presents in the identity space is the ability to interact with a user's blockchain data. This presents two benefits: enriching user profiles and streamlining the login process with federated logins using storage wallets.

Decentralizing access to blockchain APIs is a vital step to improve network uptime and importantly, give people sovereignty of their personal data.

Ocean Protocol, the Web3 platform to unlock data services for AI and business innovation, has joined forces with Chainstep, Datarella, Fetch.ai, peaq and 51nodes to develop the system architecture for European mobility with the preservation of data autonomy as its core principle, within the Gaia-X moveID project.

Dock has partnered with Auth0, one of the worlds leading identity management companies. Auth0 has added the support for Docks Web3 IDs in their marketplace integration to enable Auth0s enterprise customers to integrate Web3 IDs on their platforms.

Ethereum Merge

Now that Ethereum runs on a PoS consensus mechanism, builders will be able to start using a form of data partitioning to improve throughput, called sharding. Sharding is a horizontal scaling technique common among other major database providers.

This upgrade transforms Ethereum, the worlds first and largest smart contract platform, into an almost net-zero technology positioned for sustainable future growth

Interestingly, all interviewed users claimed to have had a seamless and easy onboarding experience all the way from download through wallet creation — yet they still managed to give their SRPs to phishing scammers.

Featuring Verifiable Credentials  :)

Because its visual and experiential, the metaverse is “a little bit easier to grasp from a leadership perspective,” said Cutlan. “I dont know anyone who saw early days blockchain demos and said, I need to show 20 of my friends.”

Warning of dystopian nightmares

DAO

The year is 1996. John Perry Barlow is about to declare, “The internet consists of transactions, relationships, and thought itself” (1.

From the vantage point of todays web, someone might argue that only the first part of Barlows statement is correct.

We had the opportunity to present on Ethereum's Identity Layer, covering the evolution of decentralized identity, and how Ethereum presents an incredible opportunity for users to truly own and control their identity and data. Check out that talk in this post.

By incorporating the main components detailed above: DIDs, tokens and verifiable credentials, Civic.me  is our proof of concept for an enriched identity layer on Web3, which goes beyond simple public keys and wallets.

In this summary paper, we will explain the different components of decentralization, the benefits of decentralized systems, examples of how different projects have approached the process of decentralizing, and good-faith critiques of decentralization. This paper will act as a TL;DR summarizing the concept of decentralization within its current usage, while providing linked resources throughout for those interested in digging deeper into specific areas.

  1. Create a governance token that gives holders the right to vote in some sort of directly- democratic process;
  2. Distribute governance tokens, usually as an airdrop to past users and stakeholders based on specific criteria determined by the initial project team;
  3. Invest in processes that relinquish the founding teams control over the project, like creating a constitution to help navigate future challenges, forming internal working group structures, passing control of administrative controls and treasury management to the community of stakeholders, and providing a venue for stakeholders to participate in governance discussions.

Sometimes the ability to opt-out is what makes a technology truly useful.

Ethereum competitors that aim for scalability (Solana, Polkadot, Near)

Together with Archblock, the team behind the TrueFi protocol, MetaMask Institutional and Parallel Markets, Circle Internet Financial has built the first proof-of-concept for “know your business” (KYB) verification using Verite, Centre's set of open source protocols for decentralized digital identity credentials

Musings from, amongst other places, Unfinished Live and DWeb Camp all written up in the Atlantic.

Long before the NFT boom or the Web3 backlash, an unglamorous movement was under way. Where does it stand now?