The did:webs method is a secure, web-based Decentralized Identifier method that combines traditional web infrastructure with advanced cryptographic trust mechanisms. Unlike its predecessor did:web, this method's trust is not rooted in DNS, webmasters, or certificate authorities, but instead uses KERI (Key Event Receipt Infrastructure) to provide a secure chain of cryptographic key events controlled by the identifier's owner.
Key features:
The method achieves a balance between accessibility and security by:
Technical Architecture:
DID Generation and Structure:
did:webs:<host>[:<path>]:<aid><aid> component is a KERI Autonomic IdentifierResolution Process:
HTTPS URLKERI event streamKey Management:
Ed25519 and Secp256k1Security Features:
Technology Stack:
HTTPS for transportKERI for cryptographic trustCESR for data encodingJSON for DID documentsIf you are featured in the Web of Trust Map and wish to exercise your GDPR rights, including the right to be forgotten, visit the privacy policy page