top of page

Trust Frameworks at Scale Are Governance Plus Evidence, Not Diagrams

  • Writer: Ott Sarv
    Ott Sarv
  • Feb 19
  • 4 min read

Updated: May 24

Person reviewing a trust framework diagram beside audit notes and policy documents, showing that scalable trust frameworks require legal authority, mandate allocation, evidence, certification, supervision and remedy beyond architecture diagrams.
A trust framework does not scale through polished diagrams. It scales when legal authority, mandate allocation, technical enforcement, audit evidence, certification, supervision and remedy operate together.

Trust frameworks are often depicted as architecture diagrams. These diagrams include boxes representing wallets, registries, issuers, verifiers, status lists, APIs, and sometimes a blockchain layer. Arrows illustrate the flows of issuance and presentation. Governance is typically referenced in a separate document, while certification is mentioned as a future phase.


At a small scale, this may be acceptable. However, at national or cross-border scales, it is not. A trust framework that relies on diagrams instead of enforceable governance and verifiable evidence does not scale effectively. It becomes fragmented.


This is where the Seven Layers Model for Digital Public Infrastructure becomes critical. A trust framework is not merely a technical integration pattern. It is a governed public capability that must withstand audit, dispute, and political scrutiny.


The Recurring Error: Capability Without Entitlement


Across digital identity, wallet ecosystems, and data exchange platforms, a common mistake arises. Technical capability is often confused with lawful authority.


An API exists; therefore, access is assumed. A credential format is standardized; hence, trust is assumed. A wallet can present attributes; thus, acceptance is assumed. This confusion leads to significant issues, as described in data exchange platform legal authority: plumbing does not grant access. A transport layer does not create legal entitlement. A protocol does not allocate public authority.


Trust Framework at Scale Requires Layered Discipline


When mapped against the Seven Layers Model for Digital Public Infrastructure, a scalable trust framework must be coherent across all layers.


Layer 1: Constitutional and Legal Authority


The framework must rest on an explicit legal basis. In the European context, this includes Regulation (EU) No 910/2014, as amended by Regulation (EU) 2024/1183, and its related Implementing Regulations on wallets, certification, protocols, notifications, and PID and EAA issuance.


Without a lawful mandate defining who may issue, who may rely, and under what conditions, technical interoperability cannot produce institutional trust.


Layer 2: Governance and Mandate Allocation


Trust frameworks must clearly define role allocation, liability, revocation powers, and supervisory oversight.


  • Who may suspend a credential?

  • Who may withdraw a mandate?

  • Who resolves cross-border disputes?


Governance must not be decorative. It must define enforceable responsibility and remedy. This is where mandate gating becomes central. Access decisions must be tied to legally defined authority and scope. Otherwise, data exchange and wallet presentation become uncontrolled entitlement expansion.


Layer 3: Institutional Capability


Institutions must be capable of executing what the framework promises. A supervisory authority must possess the power and resources to enforce compliance. A certification scheme must operate with credible conformity assessment bodies. Trust frameworks collapse when institutional capacity is assumed rather than evidenced.


Layer 4: Technical Enforcement


Protocols, formats, status mechanisms, cryptographic binding, and lifecycle management belong here. Current debates about JSON-LD, SD-JWT VC, mDoc, revocation lists, and presentation profiles are important. However, they are Layer 4 concerns. They do not, on their own, create trust.


A trust framework is not secure because it uses a specific format. It is secure when technical controls enforce governance decisions.


Layer 5: Evidence and Auditability


This is where most frameworks fail at scale. Trust actions must be provable, not merely asserted. Issuance, presentation, revocation, suspension, trust anchor updates, and mandate changes must produce verifiable evidence that can withstand disputes.


Certification results, conformity assessment body findings, supervisory audits, and revocation cascades are not secondary outputs. They are structural components of trust. A framework that cannot produce evidence under audit is not a trust framework; it is merely a pilot.


Layer 6: Economic Alignment


Trust frameworks must align incentives. If business models create friction through transaction pricing, licensing complexity, or fragmented governance, adoption will stall. Wallet ecosystems, and priced trust transactions in particular, must be assessed through economic throughput, not only cryptographic assurance.


Layer 7: Public Legitimacy


Digital Public Infrastructure is not a product. It is an institutional function. Public acceptance depends on enforceable safeguards, contestability, and visible supervisory control.


If governance drifts from the legal mandate or if operational practices exceed the authorized scope, legitimacy erodes regardless of technical quality. This risk is described as governance drift.


Evidence, Not Rhetoric


In large-scale environments such as the European Digital Identity Wallet ecosystem, trust frameworks now operate under binding law, implementing acts, cybersecurity certification schemes, and supervisory structures.


At this level, diagrams are irrelevant unless accompanied by defined legal authority, mandate allocation and revocation rules, certification outcomes, conformity assessment evidence, supervisory enforceability, and documented lifecycle controls.


The conversation must shift from architectural elegance to evidentiary sufficiency.


The Difference Between Interoperability and Trust


Interoperability allows systems to communicate.


Trust requires systems to justify actions.

A trust framework at scale must answer not only whether a credential is technically valid but also whether the issuer was legally empowered, the mandate was active and within scope, the relying party was authorized, the supervisory framework recognizes the interaction, and evidence can be replayed and reviewed.


This is where the Seven Layers discipline matters. It prevents capability from being mistaken for entitlement and anchors Digital Public Infrastructure in enforceable public authority.


From Pilots to Production


Many frameworks function well in controlled pilots. However, fewer survive in production. The transition requires certification aligned with applicable legal frameworks, cross-border recognition mechanisms, defined liability allocation, operational revocation and suspension procedures, and transparent supervisory oversight. Without these, scale magnifies weakness rather than resilience.


Conclusion


Trust frameworks at scale are governance plus evidence, not diagrams. Formats, cryptography, APIs, and wallet interfaces matter. However, they exist within a layered institutional structure. When legal authority, mandate gating, enforceable governance, certification evidence, and supervisory power align across all layers, scale becomes possible.


Digital Public Infrastructure succeeds not when it merely demonstrates capability but when it showcases lawful, auditable, and contestable authority.

Meet the author of the Seven Layer Model for Digital Public Infrastructure

Ott Sarv

  • LinkedIn
Ott Sarv The Seven Layer Model Author

author of the Seven Layer Model for Digital Public Infrastructure

Senior advisor in Digital Identity and Digital Public Infrastructure. Ott Sarv helps institutions align lawful authority, institutional mandate, canonical records, and machine-readable rules with verifiable execution, enabling enforceable outcomes. Engagements combine policy, architecture, and delivery support.

Download the Seven Layer Model for DPI

This paper is shared with practitioners and researchers working on digital public infrastructure and digital identity.


Submit your details to receive the PDF access link.

bottom of page