Give services the information they need, not everything you know
Sojaly is designed around a simple principle: a service should be able to establish what it needs without automatically receiving everything used to establish it.
The answer can be enough
An application may need to know whether someone is over 18.
It does not necessarily need their date of birth.
An employer may need to know whether a member of staff is at an approved workplace.
It does not necessarily need the person's location history.
A service may need confirmation that a sensitive action was performed by the authorised person.
It does not necessarily need the person's identity document.
Sojaly is designed around these distinctions.
Verification is not data collection
When a verification service can answer a question without passing the underlying information to the relying application, that is the result Sojaly is designed to provide.
The application gets the answer it needs.
The underlying identity information remains protected.
Build with verified identity
Whether you need a complete product for your organisation or a verification service for your application, Sojaly gives you an identity layer you can build on.