BrightID
Sistema / Design de Identidade
DAO
Detalhes
Licença Permissive / Open source; https://github.com/BrightID — multiple repos including BrightID mobile app, BrightID-Node, Aura frontend, Python SDK, smart contract templates
Status de Dev 🟢 Ativo
Detalhe do Status de Dev Released (mobile app live on iOS and Android; 70K+ sponsored users; 15+ integrated apps; active development)
Proprietário BrightID Main LLC (US entity); governed by BrightDAO (Aragon-based DAO on IDChain)
Órgão de Governança DAO / token-holder governance (BrightDAO, Aragon-based on IDChain) | Company-controlled (BrightID Main LLC, US entity)
País USA
Ano de Início 2020
Stack JavaScript/TypeScript (mobile app — React Native); Python (analysis nodes, SDK); Solidity (on-chain verification smart contracts); Go (IDChain — fork of go-ethereum)
Financiamento Sponsorships (1 DAI per user lifetime paid by integrating dApps); BrightDAO treasury; BRIGHT token ecosystem; undisclosed grants
Última Investigação 1 de jul. de 2026
Sistema / Design de Identidade Atributos
Origens Decentralized Identity / Public Goods (motivated by need for Sybil resistance in quadratic funding and DAO governance without sacrificing privacy or requiring KYC)
Banco de Dados IDChain (Ethereum-based PoA blockchain storing connection events and verification results as on-chain transactions); IPFS (off-chain data)
Linguagem de Consulta REST API (BrightID Node API v5 for verification queries by applications)
Formatos de Dados JSON (API responses); signed connection data (cryptographic key pairs); on-chain transaction records on IDChain
Suporte Móvel Mobile support (iOS and Android native apps — primary interface for creating BrightID, making connections via QR code, receiving verifications)
Suporte Web Yes (web-based Aura verification app at aura.brightid.org; Sponsorships dashboard at sp.brightid.org; Explorer)
Aplicativos Nativos Native apps (iOS and Android; primary user interface)
Termos Free (no cost to end users; apps pay 1 DAI sponsorship per user lifetime to fund operations; surplus redistributed to verified users)
Fundos Undisclosed; self-sustaining via sponsorship model; BrightDAO governs treasury allocation
Baseado Em Novel architecture — no prior identity standard; informed by social graph analysis research (SybilRank); IDChain built on go-ethereum; Aragon for DAO governance
Autenticação e Identidade Social graph web-of-trust (identity established through real-world and online connection parties; connections are cryptographically signed with user private keys; no personally identifying information stored; verification status derived from graph analysis algorithms)
Modelo de Armazenamento Hybrid (connection graph synchronized via IDChain PoA blockchain — permanent on-chain record of connection events; personal data such as names and photos exchanged only off-chain peer-to-peer and never stored on servers)
Interoperabilidade API integration for any application; BrightID verifications consumable by Ethereum-compatible smart contracts via on-chain verification templates; integrated with Gitcoin, 1Hive, Giveth, Aragon, clr.fund, and others
Portabilidade de Dados Self-sovereign (users own their identity and connection data via private key; no central authority controls verification status; graph data is public on IDChain for auditability but names/photos are never stored)
Governança e Tomada de Decisão BrightDAO (Aragon-based DAO on IDChain; governs budget allocation for development, research, community support; governance rights distributed to dApp and community delegates based on sponsorship metrics)
Padrões de Identidade None (does not implement W3C DID, W3C VC, or other formal identity standards; novel social graph approach operates outside existing identity paradigms)
Métodos DID Suportados None (no DID method; identity is a BrightID node address derived from user keypair, not a DID)
Gestão de Chaves User-controlled local keypair (private key generated and stored on mobile device; connections signed with private key; social recovery mechanism available)
Tipos de Credenciais Proof of Uniqueness (non-transferable; graph-analysis-derived; not a W3C Verifiable Credential — a boolean verification result queryable via API or on-chain)
Método de Verificação Social graph analysis (SybilRank algorithm; Aura algorithm run by independent verification nodes; multiple verification tiers: Meets, Bitu, Aura — each with different trust thresholds)
Recursos de Privacidade No personally identifying information stored; names and photos shared only peer-to-peer off-chain; only connection event hashes stored on IDChain; pseudonymous by design
Métodos de Autenticação QR code scanning (mobile app; users meet in person or online and scan each other's QR codes to form connections); deep link (brightid:// protocol)
Mecanismo de Revogação No formal revocation (connections can be removed; verification status recalculated dynamically by graph analysis; no time-bound expiration)
Tipos de Agentes Suportados Humans (individuals only; proof-of-uniqueness is specifically for human personhood)
Tipos de Carteira/Cliente Mobile app (iOS and Android — primary client); Aura web app (secondary verification layer)
Mecanismos de Recuperação Social recovery (users designate recovery connections; if device lost, recovery connections can collectively restore access); Device recovery via backup
Conformidade / Regulamentações No formal compliance framework; GDPR-aligned by design (no PII stored on servers); no KYC/AML
Protocolos de Troca de Credenciais Custom REST API (BrightID Node v5 API; applications query verification status by Ethereum address); smart contract templates for on-chain verification publishing
Estrutura de Confiança Social graph web-of-trust (trust derives from real-world connections and graph analysis; seed groups serve as trusted anchor points; no government-anchored trust)
Modelo de Custo Free to end users; 1 DAI lifetime sponsorship fee paid by integrating applications per user; no per-query fees
Resistência à Censura High (IDChain is a PoA blockchain not controlled by any single entity; BrightID nodes operated by community; graph analysis open source so anyone can run verification; no central server that can be shut down)