SpruceID

Kit de Herramientas / Plataforma de Identidad

Self-sovereign identity toolkit providing DID and verifiable credential implementations, authentication tools (Sign-In with Ethereum / SIWE), credential issuance platforms (Credible), and identity wallet SDKs (SpruceKit). Built the California DMV mobile driver's license (mDL) wallet, winning a Gartner Eye on Innovation Award. Powers credential workflows for government, enterprise, and Web3 use cases with open-source libraries.

Empresa

Detalles

Licencia Permissive (Apache 2.0 / MIT); GitHub: github.com/spruceid — includes ssi (core identity lib), DIDKit (cross-platform VC toolkit), SIWE (Sign-In with Ethereum), SpruceKit wallet SDKs
Estado de Desarrollo 🟢 Activo
Detalle del Estado de Desarrollo Released (production use: California DMV mDL wallet launched August 2023; SIWE with 2.89M+ NPM downloads; active development across multiple repos as of Jan 2025)
Propietario Spruce Systems Inc.; Co-founders Wayne Chang (CEO) and Gregory Rocco; both previously at ConsenSys
Órgano de Gobierno Company-controlled (Spruce Systems Inc.)
País USA (globally distributed, remote-first team across 3 continents and 8+ countries)
Año de Inicio 2020
Stack Rust + TypeScript + Python + Go (core libraries in Rust with WASM bindings; SDKs in multiple languages including TypeScript, Python, Go, Ruby, Elixir; mobile SDKs support React Native, Flutter, and native mobile)
Financiamiento VC (Series A led by a16z crypto, April 2022)
Última Investigación 9 mar 2026

Dominios de Caso de Uso

Capacidades

Identidad soberana Atestaciones portátiles Divulgación contextual

Kit de Herramientas / Plataforma de Identidad Atributos

Orígenes Identity / Web3 authentication (won Ethereum Foundation + ENS RFP to develop Sign-In with Ethereum standard; expanded to government-grade credential issuance)
Base de Datos Kepler (decentralized storage network organized around data overlays called Orbits; user-controlled encrypted storage via Web3 wallets) + credential-specific storage per deployment
Lenguaje de Consulta REST API + GraphQL (SpruceKit and Credible Platform expose REST APIs; DIDKit provides programmatic access)
Formatos de Datos W3C Verifiable Credentials (JSON-LD) + ISO mDL (ISO/IEC 18013-5) + SD-JWT VC + CBOR-LD + JSON + EIP-4361 (SIWE message format)
Soporte Móvil Mobile support (SpruceKit Wallet SDK supports React Native, Flutter, and native iOS/Android; built CA DMV Wallet app with 4.8-star ratings on both app stores)
Soporte Web Yes (SIWE enables web browser authentication via Ethereum wallets; SpruceKit provides web-based credential management; OIDC Identity Provider for SIWE)
Aplicaciones Nativas Native apps (California DMV Wallet for iOS and Android; SpruceKit Wallet SDK enables native app development)
Términos Self-hosting + Enterprise SaaS (open-source libraries for self-hosting; Credible Platform available as cloud-prem or on-prem enterprise deployment)
Fondos $34M Series A (a16z crypto lead; participants include Ethereal Ventures, Electric Capital, Y Combinator, Okta Ventures, SCB 10X, Robot Ventures, OrangeDAO)
Basado En W3C DID and VC standards; EIP-4361 (Sign-In with Ethereum); Ethereum / ENS; ISO/IEC 18013-5 (mDL); OpenID Connect; ZCAP-LD (authorization capabilities)
Permisos Apache 2.0 / MIT (dual, permissive) — SpruceKit and all component libraries are published under Apache 2.0 or MIT licenses, allowing use in commercial and proprietary products without source disclosure. Contributors provide an express patent grant under Apache 2.0.
Herramientas de Desarrollo SpruceKit SDK (open source, Apache 2.0 / MIT) — modular Rust, Swift, Kotlin, and TypeScript libraries for W3C VC issuance/verification, mDL (ISO 18013-5), and selective disclosure; ssi Rust core library (Apache 2.0) for DID resolution and cryptographic signing; SpruceKit Mobile SDK for iOS/Android credential wallet integration; SIWE (Sign-In with Ethereum) libraries in JavaScript, Rust, and Python; OpenID4VP Rust implementation; archived DIDKit cross-platform CLI and language bindings (Rust, Python, Java, Flutter); Credible reference wallet (Flutter, archived); TreeLDR schema definition language; Swagger/OpenAPI docs at sprucekit.dev.
Autenticación e Identidad Decentralized ID (DID) with multiple methods; Sign-In with Ethereum (SIWE/EIP-4361) as primary Web3 authentication; OIDC Identity Provider bridge for Web2 integration; wallet-based authentication
Modelo de Almacenamiento Kepler (decentralized storage with user-controlled Orbits); credential storage in holder wallets; issuer-side credential management via Credible Platform (cloud-prem or on-prem)
Interoperabilidad High: W3C VC + ISO mDL dual-format support; OIDC/SIWE bridge for Web2; interoperability demonstrated with 25+ vendors; working with AAMVA, NIST, Google, Panasonic, Samsung, Okta, Auth0; TSA mDL acceptance
Portabilidad de Datos Full portability (W3C VC and ISO mDL standards-based credentials; open-source wallet SDK; no platform lock-in; CA DMV Wallet supports Apple and Android native wallets as alternatives)
Gobernanza y Toma de Decisiones Company-controlled (Spruce Systems Inc.) with strong open-standards commitment; SIWE developed via open community calls with Ethereum Foundation and ENS; active W3C, DIF, and standards body participation
Estándares de Identidad W3C DID; W3C Verifiable Credentials (VCDM 1.1 and 2.0); EIP-4361 (SIWE); ISO/IEC 18013-5 (mDL); OpenID Connect; OIDC4VC; DID method traits specification
Métodos DID Soportados did:key, did:web, did:pkh (blockchain-agnostic), did:ens, did:ethr, did:ion, did:tz (Tezos); DID method traits spec for upgradeable identity paths
Gestión de Claves User-controlled (wallet-based key management); HSM support for enterprise (Credible Platform supports hardware security modules); TEE support (trusted execution environments); browser/OS keychain integration
Tipos de Credenciales Verifiable Credentials (W3C VCDM); mobile driver's licenses (ISO mDL); SD-JWT VCs; professional/educational credentials; age verification credentials; government IDs; Rebase witnesses for social account linking
Método de Verificación Cryptographic signature verification (multiple suites including Ed25519, EcdsaSecp256k1, BBS+); on-device verification (mDL NFC/QR without callback to issuer); selective disclosure; Groth16 ZKP support
Funciones de Privacidad Selective disclosure (mDL: share only required fields, e.g., age >21 without address); no digital trail/phone-home by design; on-device verification; privacy-preserving credential presentation
Métodos de Autenticación Cryptographic signatures (wallet-based); Sign-In with Ethereum (EIP-4361); OIDC via SIWE Identity Provider; biometric authentication (device-level for mDL); passkeys/WebAuthn compatibility
Mecanismo de Revocación Credential revocation via Credible Platform (issuer-controlled); StatusList2021 support; ZCAP-LD for capability revocation in Kepler
Tipos de Agentes Soportados Humans (individuals with wallet credentials); Organizations (issuers/verifiers via Credible Platform); Government entities (DMV, TSA integration)
Tipos de Billetera/Cliente Mobile app (CA DMV Wallet, custom wallets via SpruceKit SDK); browser extension (SIWE integration); desktop application; SDK/Library integration (React Native, Flutter, native mobile, Rust, TypeScript)
Mecanismos de Recuperación Wallet-dependent (device-level backup via Apple/Google ecosystem for mDL); enterprise key recovery via HSM/TEE infrastructure; seed phrase for crypto wallet integrations
Cumplimiento / Regulaciones REAL ID compliant (mDL); TSA-accepted; ISO/IEC 18013-5 certified; DHS Silicon Valley Innovation Program participant; AAMVA interoperability testing; Gartner Eye on Innovation Award 2023
Protocolos de Intercambio de Credenciales OIDC4VC (OpenID for Verifiable Credentials); ISO/IEC 18013-5 (mDL presentation); Presentation Exchange; SIWE (EIP-4361); ZCAP-LD (authorization capabilities)
Marco de Confianza Cryptographic verification (DID-based trust); government-anchored trust (state DMV issuance); AAMVA interoperability framework; open standards compliance
Modelo de Costos Free (open-source libraries under Apache 2.0/MIT); Enterprise licensing (Credible Platform for government/enterprise deployments)
Resistencia a la Censura Hybrid (SIWE/DID-based credentials are user-controlled and portable; mDL credentials depend on issuing government authority; Kepler provides decentralized storage option)