Legal
Terms of service
These terms apply when you use Certifactua’s website, web portals, APIs and wallet apps (together, the “service”). By using the service you agree to them.
The service
Certifactua is open-source credential infrastructure (Apache 2.0). Organisations run ecosystems that issue verifiable credentials; individuals hold credentials in a wallet they control. Features ship incrementally; some flows described on the website may not yet be available in every deployment.
Accounts and access
Access to issuer, admin and verifier consoles is granted by an ecosystem administrator, not self-served from the marketing site. Holder wallets may allow self-registration where the identity provider permits it. You are responsible for activity under your account and for keeping your device and credentials secure.
Your credentials
Credentials are signed by issuing organisations, not by Certifactua as a generic attester. Verifiers decide whether to trust an issuer. Certifactua does not guarantee that any particular credential will be accepted in any context.
Acceptable use
Do not misuse the service: no unauthorised access, interference, fraud, or submission of false evidence. Do not attempt to extract signing keys or other tenants’ data.
Open source and third parties
Source code is published under Apache 2.0. Identity providers (including Google and Apple), hosting providers and certificate authorities have their own terms and privacy policies.
Disclaimer
The service is provided “as is” to the extent permitted by law. We do not exclude liability for death or personal injury caused by negligence, fraud, or other liability that cannot be limited by law.
Changes and contact
We may update these terms; continued use after changes constitutes acceptance. Questions: info@certifactua.com.
See also our privacy policy.