Issuance and verification
Observe issuance failures or unusual volume, verification failures, correlation breakdowns and service availability.
Trust operations
Monitor the health and risk signals around credential services without requiring possession of credential contents.
Credential assurance
Observe issuance failures or unusual volume, verification failures, correlation breakdowns and service availability.
Monitor status publication issues, revocation events or spikes, expiry processing and failures that could leave relying decisions without current evidence.
Changes to issuer configuration, keys, trust policy or verification policy need controlled ownership and operational visibility.
Vigilance can be integrated with available DiligenceID lifecycle and operational events. Exact signals and APIs are confirmed against the deployed platform; credential contents need not become monitoring data.
DiligenceID operates independently of Vigilance. Monitoring of digital-credential activity is optional and additive—DiligenceID does not require Vigilance, and Vigilance does not require DiligenceID.
A spike can indicate attack, misuse, configuration change or service failure. Detection and runbooks must preserve that uncertainty until investigation establishes cause.
Apply the model
Start with the risk, available telemetry, accountable owner and proportionate response.
Talk to MAITS →