cross-posted from: https://feddit.org/post/317047

in February 2024, the EU Parliament adopted the eIDAS regulation, creating the framework for a “European Digital Identity Wallet”. This digital Wallet will enable citizens to identify themselves in a legally binding manner, both online and offline, sign documents, login into websites and share personal data about them with others. Recently, the European Commission published the Architectural Reference Framework (ARF) 1.4 for the technical implementation of the Wallet.

The success of the EU Digital Identity Wallet depends on its ability to gain citizens’ trust and establish a resilient infrastructure in our current data-driven economy.

“However, after our analysis, we believe that this goal has been missed,” says the digital rights group Epicenter Works.

“We see severe shortcomings in the ARF that either contradict the regulation or ignore important elements of it. These issues, if left unaddressed, could significantly undermine user rights and privacy.”

  • MajorHavoc@programming.dev
    link
    fedilink
    English
    arrow-up
    6
    ·
    2 days ago

    I wouldn’t trust them as a lone voice on something, but if other groups come to the same conclusion, sure.

    As a Privacy nerd, I agree with the conclusions in the article, for what it’s worth. We do see a lot of “privacy” law proposals lately that are anything but.

    I don’t think things will get better, on this front, until the average person better understands privacy rights and risks.