The Core Architecture
Four Pillars of Sovereignty
oneWallet.online is built on a foundation of user control, automation, and phygital interoperability. It is designed to solve the "Governance Deficit" in digital interactions.
Sovereign Identity Anchor
Not just a credential holder, but a sovereign "Digital Twin" anchored by high-assurance biometrics and EUDI/eIDAS 2.0 compliance. It securely stores verified attributes, effectively becoming your passport to the digital and physical world.
Agentic Financial Vault
The secure command centre for delegated transactions. By utilising Ephemeral On-Behalf-Of (OBO) Tokens, you can authorise AI agents (such as smart home appliances or shopping assistants) to execute payments on your behalf, capped at exact limits and bound to human-in-the-loop consent approvals.
Universal Consent Engine
Your data stays with you. The wallet manages granular, revocable consent for every interaction via immutable Agreement DAGs. You decide who sees your data, for how long, and for what purpose.
Phygital Access Key
A universal passkey for the physical world. Authenticate securely at any POI Appliance running Switcher+ to access civic, retail, or banking services instantly, converting your digital intent into hardware-attested physical actions.
Party Knowledge Graph (PKG) & Delegation DAGs
Within the graph-native Party Knowledge Graph (PKG), all entities – biological humans, corporate bodies, and autonomous software agents – are treated as first-class, identical Party Nodes possessing zero inherent permissions.
Authority is exclusively granted by drawing stateful, time-tracked PartyRole edges (e.g., Authorised Treasurer, Underwriter, performingAgent) linking that Party node directly to an active contract graph. This enables Authority Revocation without Identity Deletion.
Software agents operate under executable Delegation DAGs guided by the Monotonic Delegation Axiom – mathematically guaranteeing agent authority is a strict, temporary subset of principal rights.
Profiles carry dynamic xBOMs and a cATO heartbeat. The System of Intelligence continuously scores operational telemetry to dynamically adjust credit lines and entitlements in real time.
Unlosable Identity:
The Phygital Link
In the onePOI ecosystem, your identity is resilient. It exists securely in the cloud (SoR) and is accessible via your biology at any POI Appliance running Switcher+, ensuring you are never locked out of your life.
Zero-Device Recovery
Lost or stolen phone? Walk up to any physical Switcher+ POI Kiosk. Undergo the Multi-Modal Biometric Gauntlet (3D NIR facial structure + rPPG liveness). The system performs an O(1) constant-time lookup on the ledger to securely find and bind a new device to your sovereign DToP anchor without re-onboarding.
Cash-In / Credential-Out
Convert physical cash into digital value or issue verified physical credentials at a Switcher+ POI Appliance. Edge-generated cryptographic keys are split via Threshold Cryptography (MPC) and bound to your oneWallet dashboard, ensuring keys never exist in plaintext on the kiosk.
DToP Loss & Recovery – survives device theft, governs new device
What: A two-frame storyboard: (frame 1) citizen's phone is lost – the device is now an inert brick because the secret material lives in the SRAM Enclave Hive on the device, useless without biometric proof. (frame 2) citizen visits any POI Appliance, biometrically reauthenticates, the new device is bound to the existing DToP via the Registrar; all Agreement DAGs, all consents, all credentials reinstated. Lost device shown as crossed-out; new device shown inheriting the same DToP anchor.
Why: The 'unlosable identity' promise is the wallet's marquee feature. A storyboard makes 'recovers from physical loss without re-onboarding' visceral and credible – this is the moment most readers decide whether the wallet is real or aspirational.
Powered by Intelligence
Switcher+ & Agentic Core
The wallet is not a passive container; it is an active, intelligent agent that orchestrates your digital life.
The sovereign wallet integrates directly with the Switcher+ concierge service and the Customer Attribute Management System (CAMS) to actively monitor and optimise your service subscriptions (Utilities, Telco, Banking).
Automated Migration
One-click switching of providers using verified identity data and portability protocols under Agreement DAG consent.
Phygital Onboarding
Initiate high-security switching workflows on your phone and biometrically ratify them at any edge cabinet.
Agentic Payments
Authorise autonomous AI shopping assistants to execute transactions safely. By issuing Ephemeral On-Behalf-Of (OBO) Tokens, you delegate precise payment authority bounded by active micro-consents – ensuring your main credentials remain completely shielded.
Universal Impact
Delivering profound value across every tier of society.
The Consumer
Frictionless Living- Seamless Switching via Switcher+
- Programmatic Rewards & Loyalty
- Unified Financial Control Dashboard
The Citizen
Civic Engagement- Secure Digital ID & Voting
- Phygital Identity Recovery
- Verifiable Credential Storage
The Beneficiary
Dignified Inclusion- Direct Aid Disbursement
- Privacy-Preserving Eligibility Proof
- Easy Cash-Out at POI Network
Under the Hood
System of Systems
How oneWallet.online interacts with the broader onePOI.online platform architecture.
SoE
The Interface. The wallet app itself, providing the intuitive UI/UX on devices.
SoA
The Governance. Enforces rules via Agreement DAGs, ensuring compliance & consent.
SoI
The Brain. AI agents provide advice, fraud detection, and automated actions.
SoR
The Truth. Secure, immutable ledger anchoring identity and transaction history.
Everything in oneWallet.online
DToP Layer Stack – Anchor · PAIF · PKG · Vault MESH · Solid POD
What: A vertical stack diagram, top to bottom: (top) the citizen's interaction surface → PAIF (Personal AI Foundation that acts for the citizen) → PKG (Personal Knowledge Graph) → Consent DAG layer (machine-executable preferences) → oneVault MESH (TEE-managed secrets/keys) → Solid POD (sovereign personal data storage) → Registrar anchor (DToP root). Arrows showing what stays local vs what crosses the governed mesh boundary.
Why: Six unfamiliar names (PAIF, PKG, Vault MESH, Solid POD, DToP, Consent DAG) appear together on this page. A stack diagram shows the reader where each one lives and what it owns – without it, the names blur into one another.
Six integrated capability pillars that together deliver the world's most complete sovereign identity and personal AI platform – purpose-built for the regulated digital economy.
Digital Twin of the Person
A persistent, sovereign identity anchor seeded from government-issued PID credentials (eIDAS 2.0 / EUDI ARF). Every verified attribute, consent record, and agreement is held by the individual – not the platform. Your customers own their identity. See the Registrar →
Zero Party Platform
PAIF (Personal AI Foundation) and PKG (Personal Knowledge Graph) – a private AI and semantic knowledge layer that the individual actively enriches and fully controls. The intelligence that makes their experience genuinely personal, without exposing their data to anyone without consent.
Consent & Preferences
Consent is not a checkbox – it is a machine-executable contract enforced by the Constitutional OS. Granular, per-attribute, per-purpose control. Revocation is immediate and architecturally enforced – not policy-dependent. Full GDPR, AI Act, and ePrivacy compliance by design.
EU Standards Stack
EUDI Wallet, eIDAS 2.0, FiDA, PSD3, and ODRL Data Governance – all encoded as constitutional invariants, not configuration options. The wallet integrates with EUDI wallets via enclaves and leverages Zero-Knowledge (ZK) Attestations to verify specific eligibility flags without exposing raw identity disclosure.
oneVault MESH & Solid PODs
Cryptographic secrets live in a mobile TEE enclave, mirrored online as a sovereign Digital Twin. Personal data lives in Solid PODs. Enforces Basel IV capital relief for banks by mathematically eliminating operational risk, while supporting Governance-as-a-Service (GaaS) micro-royalties for identity validation transactions.
Universal Phygital Access
Extends EUDI identity guarantees to all customers. Caches security-critical axioms locally to support Autonomous Edge Resilience, enabling offline mobile credential presentation and transactional execution at physical kiosks even when network connectivity is lost.
What oneWallet.online Unlocks for Your Business
As a tenant on the onePOI.online platform, deploying oneWallet.online gives your customers a sovereign identity and AI foundation – and gives your organisation a governed, compliant, and commercially powerful engagement layer.
Government-grade identity verification (EUDI / eIDAS 2.0 PID) with biometric liveness checks – no paper, no manual review, no friction. Your customers are verified, walletised, and consent-ready in a single flow.
Every data access request against your customer's Solid POD is governed by a machine-executable Consent DAG. Consent is provable, auditable, and instantly revocable. GDPR compliance is not a compliance report – it is a mathematical fact.
The ODRL Data Governance Framework transforms FiDA compliance into commercial opportunity. Your customers share financial data on their terms – and you access it through a governed data marketplace that is auditable from first request to last byte.
PAIF-powered agents working exclusively within the customer's constitutional boundary. Agents that act for your customer – and can never act against them. This is the differentiator for personalisation in a post-privacy world: AI that is provably loyal.
The phygital loop extends EUDI-grade identity to customers who do not own a smartphone – through POI appliances and Community HUBs in your merchant or service network. Inclusion is not a CSR commitment; it is a platform architecture feature.
The Digital Twin of the Device means your customer's identity does not live on their phone – it lives in their constitutionally governed oneWallet. A lost phone triggers a verified re-issuance flow, not an identity crisis. Your support desk never touches their credentials.
Strong Customer Authentication (SCA), open banking API standards, and fraud liability frameworks encoded as Agreement DAG constraints. Payment agents operate within PSD3-compliant OBO Token boundaries – SCA is a constitutional guarantee, not a bolt-on.
Your customer's DToP travels with them across the entire tenant ecosystem. Switcher+ enables frictionless, governed data mobility between service providers – with full consent at every step. Portability is the product, not a regulatory obligation to manage.
Zero Party Platform – PAIF & PKG
The most powerful personal AI is the AI that knows you best – and answers only to you. PAIF and PKG together create a sovereign intelligence layer that makes every customer experience genuinely personal without surrendering a single byte of data without their active consent.
PAIF – Personal AI Foundation
A set of AI agents and models that operate exclusively within the individual's constitutional boundary – governed by their own OBO Tokens. PAIF agents act for the customer: they manage preferences, surface relevant offers, negotiate on the customer's behalf, and orchestrate personal financial decisions. They are architecturally incapable of sharing data without the customer's explicit consent.
In a post-digital world where the best AI will work across everything, PAIF is the individual's AI sovereign – governed by the same DRAGON Engine that governs every action on the platform. The difference: these agents serve the person, not the platform.
PKG – Personal Knowledge Graph
A private, sovereign semantic graph of the individual's relationships, preferences, transaction history, and context – enriched over time and stored in their Solid POD. The PKG is what makes PAIF agents genuinely useful rather than generically capable.
No third party has access to the PKG without a consented data request against the customer's Consent DAG. The intelligence stays with the individual. As a tenant, you access curated, consented insights – not a raw data lake you have to govern yourself.
Integrated Consent & Preferences
Consent is not a checkbox. It is a machine-executable contract managed by the System of Agreement. Every consent decision is a DAG node, enforced by DRAGON. Consent withdrawal is immediate and architecturally enforced – not policy-dependent.
The Zero Party Advantage for Tenants
Traditional data strategies rely on third-party data (inferred, purchased, unreliable) or first-party data (collected but ungoverned). The Zero Party Platform creates a third path: data the customer actively enriches and governs, shared with you only when they choose to – with a verifiable proof of consent attached to every byte.
The result is customer intelligence that is richer, more accurate, and entirely liability-free for your organisation. The compliance burden shifts from you to the architecture.
The Complete EU Standards Stack
oneWallet.online does not comply with these standards – it is built from them. Each regulation's requirements are encoded in the Axiom MESH and enforced by DRAGON as constitutional invariants. Compliance is architectural.
EUDI Wallet & eIDAS 2.0
Full ARF (Architecture Reference Framework) compliance. PID issuance and management, QEAA (Qualified Electronic Attestations of Attributes), selective disclosure via W3C Verifiable Credentials and ISO 18013-5 mdoc. Cross-border portability by design – a customer onboarded in Dublin is recognised in Warsaw without a single additional step.
FiDA – Financial Data Access
FiDA mandates consumer-consented financial data sharing. oneWallet's Consent DAGs and ODRL framework implement FiDA permissions as machine-law – transforming a compliance obligation into a commercial capability. As a tenant, you access consented financial data through a governed marketplace where every transaction has a verifiable consent proof.
PSD3 – Payment Services
Strong Customer Authentication (SCA), open banking API standards, and fraud liability frameworks encoded as Agreement DAG constraints. Payment agents operate within PSD3-compliant OBO Token boundaries. SCA is not a UX friction point to design around – it is a constitutional property of every payment interaction on the platform.
ODRL Data Governance
The Open Digital Rights Language (ODRL) framework governs data usage policies as machine-executable rights expressions – enabling Data Spaces, FiDA marketplace models, and cross-border data mobility with constitutional precision. Every data exchange is governed by a provable rights assertion, not a policy document in a drawer.
oneVault MESH, Solid PODs & the Digital Twin of Your Devices
Three interlocking components that ensure every customer's secrets, data, and identity remain theirs – regardless of which device they use, whether they lose their phone, or whether the network goes down.
oneVault MESH & Threshold Cryptography
Cryptographic secrets are managed via Threshold Cryptography (MPC). Private keys never exist intact in local storage; they are split into fragments across devices and enclaves, assembled ephemerally within the mobile TEE and hardware-isolated TEE Hardware-Isolated Enclaves during authorised sessions.
Solid PODs
Personal data lives in Solid PODs – W3C-standard Personal Online Data Stores owned and controlled by the individual. Managed via the Personal Identity and Access Framework (PAIF), you request access to specific data nodes in their POD through their Consent DAGs, satisfying GDPR's 'Right to Erasure' through cryptographic shredding of access keys.
Digital Twin of Your Devices
Enables dynamic synchronisation between mobile enclaves and the cloud-based System of Record (SoR). If a user initiates an AISP request, the intent is mapped as an Agreement DAG, bounded by the Neuro-Symbolic Sandwich, and synchronised instantly. If the phone is lost, the mirror enables secure, biometric-only recovery.
The Architectural Principle: Three Separated Layers
oneVault MESH holds the keys. Solid PODs hold the data. The Consent DAG defines who may access what. DRAGON enforces it. No single component is sufficient – and no single point of compromise can expose the whole. Security emerges from constitutional integration, not from a perimeter wall.
Closing the Phygital Loop
In a post-digital world, the best AI works across everything – because the identity and authority infrastructure that governs it is not device-bound. It is person-bound. oneWallet.online makes that possible for every customer, everywhere.
The EUDI Wallet and Zero Party Platform capabilities should not be the preserve of smartphone owners. The oneWallet.online architecture deliberately extends these capabilities to individuals who do not own a smartphone – through the onePOI.online phygital loop: physical-digital touchpoints that provide the same cryptographic guarantees as a mobile wallet through alternative form factors.
For tenants, this means a single platform that serves your entire customer base – high-tech urban smartphone users and community members who have never downloaded a banking app – with the same constitutional identity guarantees. Zero exclusion is not a policy aspiration. It is an architecture feature.
As AI proliferates into every service and channel, the question is not which AI is most capable – it is which AI is most trusted. Trust requires verifiable identity, verifiable consent, and verifiable authority. oneWallet.online provides all three, across every channel, for every customer.
On-device TEE wallet + oneWallet.online mirror. Full offline capability with online sync. Full EUDI Wallet experience.
Phygital touchpoints at merchant or community locations provide full EUDI-equivalent access through attended, TEE-backed POI appliances in your network.
Human-assisted or kiosk-based access for those with limited digital literacy. The same constitutional guarantees – no exclusion, no second-class experience.
Web, desktop, API, or physical. The DToP is the person – not the device. Constitutional identity is portable across every channel and every EU jurisdiction.
Authority and Fulfilment Are Different Things
A citizen's sovereign identity commands authority; a physical POI touchpoint merely executes permitted fulfilment. oneWallet.online anchors credentials directly to the individual – enabling secure interactions with assisted counters, unstaffed kiosks, and card dispensers without surrendering data sovereignty.
POI Kiosk Form Factor
Optimised for independent citizen navigation, eIDAS 2.0 verifiable credential presentation, and zero-party consent authorisation.
Card & Device Fulfilment
Instant, secure physical hand-off of payment smart-cards, transit tokens, and biometric hardware authenticators under strict Agreement DAG control.
Credential Capture Station
Stereoscopic ICAO 9303 document scanning and biometric liveness attestation. Evidence is routed exclusively to the entitled institution and never retained on unencrypted disks.
oneWallet.online powers the Customer Experience (CX) dimension within the System of Engagement (SoE) TXM Membrane, acting as a sovereign consent remote-control for user identity, data, and payment authorisations across phygital touchpoints.
Ready to Deploy the Future?
Whether you are a Bank, a Government Agency, or a Retailer, oneWallet.online is your white-label gateway to the phygital economy.