SpruceID

Kit de Ferramentas / Plataforma de Identidade

Self-sovereign identity toolkit providing DID and verifiable credential implementations, authentication tools (Sign-In with Ethereum / SIWE), credential issuance platforms (Credible), and identity wallet SDKs (SpruceKit). Built the California DMV mobile driver's license (mDL) wallet, winning a Gartner Eye on Innovation Award. Powers credential workflows for government, enterprise, and Web3 use cases with open-source libraries.

Empresa

Detalhes

Licença Permissive (Apache 2.0 / MIT); GitHub: github.com/spruceid — includes ssi (core identity lib), DIDKit (cross-platform VC toolkit), SIWE (Sign-In with Ethereum), SpruceKit wallet SDKs
Status de Dev 🟢 Ativo
Detalhe do Status de Dev Released (production use: California DMV mDL wallet launched August 2023; SIWE with 2.89M+ NPM downloads; active development across multiple repos as of Jan 2025)
Proprietário Spruce Systems Inc.; Co-founders Wayne Chang (CEO) and Gregory Rocco; both previously at ConsenSys
Órgão de Governança Company-controlled (Spruce Systems Inc.)
País USA (globally distributed, remote-first team across 3 continents and 8+ countries)
Ano de Início 2020
Stack Rust + TypeScript + Python + Go (core libraries in Rust with WASM bindings; SDKs in multiple languages including TypeScript, Python, Go, Ruby, Elixir; mobile SDKs support React Native, Flutter, and native mobile)
Financiamento VC (Series A led by a16z crypto, April 2022)
Última Investigação 9 de mar. de 2026

Domínios de Caso de Uso

Capacidades

Identidade soberana Atestações portáteis Divulgação contextual

Kit de Ferramentas / Plataforma de Identidade Atributos

Origens Identity / Web3 authentication (won Ethereum Foundation + ENS RFP to develop Sign-In with Ethereum standard; expanded to government-grade credential issuance)
Banco de Dados Kepler (decentralized storage network organized around data overlays called Orbits; user-controlled encrypted storage via Web3 wallets) + credential-specific storage per deployment
Linguagem de Consulta REST API + GraphQL (SpruceKit and Credible Platform expose REST APIs; DIDKit provides programmatic access)
Formatos de Dados W3C Verifiable Credentials (JSON-LD) + ISO mDL (ISO/IEC 18013-5) + SD-JWT VC + CBOR-LD + JSON + EIP-4361 (SIWE message format)
Suporte Móvel Mobile support (SpruceKit Wallet SDK supports React Native, Flutter, and native iOS/Android; built CA DMV Wallet app with 4.8-star ratings on both app stores)
Suporte Web Yes (SIWE enables web browser authentication via Ethereum wallets; SpruceKit provides web-based credential management; OIDC Identity Provider for SIWE)
Aplicativos Nativos Native apps (California DMV Wallet for iOS and Android; SpruceKit Wallet SDK enables native app development)
Termos Self-hosting + Enterprise SaaS (open-source libraries for self-hosting; Credible Platform available as cloud-prem or on-prem enterprise deployment)
Fundos $34M Series A (a16z crypto lead; participants include Ethereal Ventures, Electric Capital, Y Combinator, Okta Ventures, SCB 10X, Robot Ventures, OrangeDAO)
Baseado Em W3C DID and VC standards; EIP-4361 (Sign-In with Ethereum); Ethereum / ENS; ISO/IEC 18013-5 (mDL); OpenID Connect; ZCAP-LD (authorization capabilities)
Permissões Apache 2.0 / MIT (dual, permissive) — SpruceKit and all component libraries are published under Apache 2.0 or MIT licenses, allowing use in commercial and proprietary products without source disclosure. Contributors provide an express patent grant under Apache 2.0.
Ferramentas de Desenvolvimento SpruceKit SDK (open source, Apache 2.0 / MIT) — modular Rust, Swift, Kotlin, and TypeScript libraries for W3C VC issuance/verification, mDL (ISO 18013-5), and selective disclosure; ssi Rust core library (Apache 2.0) for DID resolution and cryptographic signing; SpruceKit Mobile SDK for iOS/Android credential wallet integration; SIWE (Sign-In with Ethereum) libraries in JavaScript, Rust, and Python; OpenID4VP Rust implementation; archived DIDKit cross-platform CLI and language bindings (Rust, Python, Java, Flutter); Credible reference wallet (Flutter, archived); TreeLDR schema definition language; Swagger/OpenAPI docs at sprucekit.dev.
Autenticação e Identidade Decentralized ID (DID) with multiple methods; Sign-In with Ethereum (SIWE/EIP-4361) as primary Web3 authentication; OIDC Identity Provider bridge for Web2 integration; wallet-based authentication
Modelo de Armazenamento Kepler (decentralized storage with user-controlled Orbits); credential storage in holder wallets; issuer-side credential management via Credible Platform (cloud-prem or on-prem)
Interoperabilidade High: W3C VC + ISO mDL dual-format support; OIDC/SIWE bridge for Web2; interoperability demonstrated with 25+ vendors; working with AAMVA, NIST, Google, Panasonic, Samsung, Okta, Auth0; TSA mDL acceptance
Portabilidade de Dados Full portability (W3C VC and ISO mDL standards-based credentials; open-source wallet SDK; no platform lock-in; CA DMV Wallet supports Apple and Android native wallets as alternatives)
Governança e Tomada de Decisão Company-controlled (Spruce Systems Inc.) with strong open-standards commitment; SIWE developed via open community calls with Ethereum Foundation and ENS; active W3C, DIF, and standards body participation
Padrões de Identidade W3C DID; W3C Verifiable Credentials (VCDM 1.1 and 2.0); EIP-4361 (SIWE); ISO/IEC 18013-5 (mDL); OpenID Connect; OIDC4VC; DID method traits specification
Métodos DID Suportados did:key, did:web, did:pkh (blockchain-agnostic), did:ens, did:ethr, did:ion, did:tz (Tezos); DID method traits spec for upgradeable identity paths
Gestão de Chaves User-controlled (wallet-based key management); HSM support for enterprise (Credible Platform supports hardware security modules); TEE support (trusted execution environments); browser/OS keychain integration
Tipos de Credenciais Verifiable Credentials (W3C VCDM); mobile driver's licenses (ISO mDL); SD-JWT VCs; professional/educational credentials; age verification credentials; government IDs; Rebase witnesses for social account linking
Método de Verificação Cryptographic signature verification (multiple suites including Ed25519, EcdsaSecp256k1, BBS+); on-device verification (mDL NFC/QR without callback to issuer); selective disclosure; Groth16 ZKP support
Recursos de Privacidade Selective disclosure (mDL: share only required fields, e.g., age >21 without address); no digital trail/phone-home by design; on-device verification; privacy-preserving credential presentation
Métodos de Autenticação Cryptographic signatures (wallet-based); Sign-In with Ethereum (EIP-4361); OIDC via SIWE Identity Provider; biometric authentication (device-level for mDL); passkeys/WebAuthn compatibility
Mecanismo de Revogação Credential revocation via Credible Platform (issuer-controlled); StatusList2021 support; ZCAP-LD for capability revocation in Kepler
Tipos de Agentes Suportados Humans (individuals with wallet credentials); Organizations (issuers/verifiers via Credible Platform); Government entities (DMV, TSA integration)
Tipos de Carteira/Cliente Mobile app (CA DMV Wallet, custom wallets via SpruceKit SDK); browser extension (SIWE integration); desktop application; SDK/Library integration (React Native, Flutter, native mobile, Rust, TypeScript)
Mecanismos de Recuperação Wallet-dependent (device-level backup via Apple/Google ecosystem for mDL); enterprise key recovery via HSM/TEE infrastructure; seed phrase for crypto wallet integrations
Conformidade / Regulamentações REAL ID compliant (mDL); TSA-accepted; ISO/IEC 18013-5 certified; DHS Silicon Valley Innovation Program participant; AAMVA interoperability testing; Gartner Eye on Innovation Award 2023
Protocolos de Troca de Credenciais OIDC4VC (OpenID for Verifiable Credentials); ISO/IEC 18013-5 (mDL presentation); Presentation Exchange; SIWE (EIP-4361); ZCAP-LD (authorization capabilities)
Estrutura de Confiança Cryptographic verification (DID-based trust); government-anchored trust (state DMV issuance); AAMVA interoperability framework; open standards compliance
Modelo de Custo Free (open-source libraries under Apache 2.0/MIT); Enterprise licensing (Credible Platform for government/enterprise deployments)
Resistência à Censura Hybrid (SIWE/DID-based credentials are user-controlled and portable; mDL credentials depend on issuing government authority; Kepler provides decentralized storage option)