Concepts and trust chain
The objects and properties to understand before integrating the API or configuring an Easytiou organisation.
Trust model
A global “trusted” status would hide meaningful differences. Easytiou exposes each established property, its source and its limitation.
Event and participants
An event is a context bounded by a start and end time. It carries a requested assurance level, a frozen policy and expected participants. An expired event cannot receive a new challenge.
| Object | Purpose | Example |
|---|---|---|
Event | Context and time window | Executive committee, 8 April 2026 |
Participant | Invited identity with a role | Organiser, subject or witness |
VerificationRound | Atomic control execution | Co-presence challenge |
Report | Durable record of collected facts | Signed and timestamped bundle |
Assurance levels
| Level | Indicative use | Main controls |
|---|---|---|
| Normal | Suspicious message or everyday interaction | Context, bound device, local biometrics, signed response |
| High | Remote sale or sensitive meeting | Mandatory identity, dated event, observed presence, report |
| Critical | Strategic or irreversible decision | Cooling-off period, reinforced control, quorum and timestamping |
The achieved level is capped by the weakest mandatory control. A failure or expiry yields a degraded or inconclusive outcome.
Factual outcomes
A confirmed identity does not establish that a statement is true and does not automatically authorise a payment or business decision.
Evidence bundle
The evidence bundle contains a timeline, policy versions, outcomes, file digests, a signature and, depending on level, a third-party timestamp. It is designed for later verification without relying on a screenshot.
- Statuses describe completed controls, never the general “trustworthiness” of a person.
- A later revocation does not rewrite valid historical evidence.
- Unnecessary sensitive data is excluded or pseudonymised.
Try “event”, “identity” or “evidence”.
