Connect — the national identity service

Your identity,
held by you.

A Xity identity is secured by keys generated on your own device — no passwords to leak, no central vault to breach. You verify what you choose, and decide exactly what each service learns about you.

Services

What you can do here

Every common task, in order of use. One screen, one purpose.

A key is generated on your device. Nothing personal is requested.
Open →
Unlock the key stored on this device with your PIN.
Open →
Lost your PIN or device? Start a recovery from any device.
Open →
A signed capture ceremony — face scan, document, comparison.
Open →
Scoped, time-limited permission to another Xity wallet.
Open →
Exactly what protects you, and what it cannot do.
Open →
Security model

Four commitments

Read each one in depth on the security page — including what the system honestly cannot yet do.

Your keys never leave your device

When you create an identity, an Ed25519 keypair is generated inside your browser. The private key is encrypted with your PIN and stored only on this device. XityConnect never receives, stores, or transmits it.

Prove who you are without showing everything

Verification is recorded per method, and stronger levels are granted only by the operator. You disclose what a service needs — nothing more.

Recovery that an attacker cannot rush

Every recovery waits 24 hours from initiation. The wallet owner is notified the moment one starts and can cancel it with one action. Takeover requires surviving that window — with a proof the owner controls.

An auditable chain of record

Registrations, verifications, recoveries, and key rotations are anchored to XityChain. Public records carry no personal data — identity payloads are redacted on every public read path.