Blog
Writing
Decisions, standards and progress behind Tamga Network — digital trust for institutions, developers and states across the Turkic world.
18 posts RSS feed
Add "verify with Tamga" to your website or app
Two ways to check Tamga credentials on your site or app: the hosted verifier with a page kit, or your own server with @tamga-network/verifier.
Keep reading- Europe
eIDAS 2.0 and the ARF: what they mean for the Turkic world
What the EU built with eIDAS 2.0 and its reference framework, when it applies, why alignment matters for states outside the EU, and where its limits are.
11 min read - Standards
HAIP and Token Status List: high assurance without tracking
What HAIP 1.0 fixes and how Tamga applies it, and how Token Status List revokes credentials without telling the issuer where they are used.
9 min read - Network
How a signed trust list works, from registration to check
How Tamga Network's signed trust lists work: two levels, signing, publication cadence, freshness, the anchor log and what a verifier checks.
8 min read - Standards
ISO mdoc deep dive: CBOR, COSE, MSO and engagement
How an ISO/IEC 18013-5 mdoc is built and verified - CBOR and COSE, the MSO and value digests, device authentication, session transcripts, QR and BLE.
8 min read - Network
How an institution joins Tamga Network
How an institution joins Tamga Network: try it in the sandbox, apply with registration data and a CSR, get listed, issue the first credential.
8 min read - Network
Why Tamga Network is non-profit and bound for a foundation
Tamga Network sells no services and runs no wallet, and its operation will pass to a foundation. Why neutrality matters and how the hand-over works.
7 min read - Standards
OpenID4VCI deep dive: offers, DPoP, proofs, batches
OpenID4VCI 1.0 issuance in Tamga: offers and tx_code, PAR and PKCE, DPoP, the nonce endpoint, key proofs, wallet attestation, batches of 10.
9 min read - Standards
OpenID4VP and DCQL deep dive: request to verdict
How a verifier requests and checks credentials with OpenID4VP 1.0: x509_hash signed requests, DCQL, encrypted direct_post.jwt, the A–E pipeline.
8 min read - Standards
SD-JWT VC deep dive: signing, disclosures, KB-JWT
How an SD-JWT VC is built and checked byte by byte - salted digests, _sd, cnf, the KB-JWT and sd_hash, vct#integrity and status - with Tamga's profile.
9 min read - Privacy
Revocation without tracking: privacy in the status list
How Tamga Network's status lists let a verifier check revocation without telling the issuer where a credential was shown, and where that privacy ends.
9 min read - Europe
Tamga ARF: how we adapted the European framework
Tamga ARF 1.0 follows the EU reference framework: what it contains, what stays identical, what differs and why, and how states and institutions take part.
10 min read - Privacy
How do you trust a wallet? Attestations and hardware keys
How an institution on Tamga Network decides a wallet is safe to issue to: wallet attestations, key attestations, hardware evidence and the trust list.
9 min read - Network
What is a trust network, and what does Tamga Network do?
A trust network publishes signed lists of who may issue and check digital credentials. What Tamga Network does, what it does not do, where to start.
8 min read - Privacy
What Tamga Network never sees
What Tamga Network's lists, logs and services never contain, where its provisional services touch personal data, and what operators can and cannot access.
9 min read - Privacy
Zero-knowledge in Tamga: Longfellow, circuits, trust list
How Tamga Network checks "over 18" with a Longfellow zero-knowledge proof, why circuits sit in the signed trust list, and what works today.
10 min read - Announcements
Real cryptography, working today: the Tamga first release
What runs end to end today (diplomas, revocation, identity, passes, tickets, website sign-in) and every shortcut we still take, listed openly.
2 min read - Network
Why we start without a blockchain
A ledger run by one operator is a slower database. Tamga starts with signed trust lists, the EU model, and adds a ledger once independent operators join.
1 min read