Home » Solutions » The Sphereon Business Wallet

The Sphereon
Business Wallet

Every action checked. Every decision provable.

Most business wallets stop at issuing, holding and verifying credentials. The Sphereon Business Wallet does all of that as well, very well in fact.
But Sphereon continues where they stop.

In Sphereon VDX every action is checked against policy before it executes. What happened, why it was allowed, and on what grounds, are all recorded in a tamperproof evidence trail. Each decision remains provable, one by one, long after it was made.

Discuss your compliance strategy

Read the architecture brief →

What the Sphereon business wallet does

Built upon the Sphereon VDX platform, the business wallet provides all the core functionality an organization needs to manage its complete digital credential lifecycle.

Credential definition and issuance

Define credential types and issue them securely to holders once underlying conditions are met, such as the completion of required training, safety authorizations, or qualifications.

Credential verification and presentation

Verify credentials from any compliant wallet, whether remotely via SD-JWT or in physical proximity via ISO 18013-5 mdoc, establishing instant cryptographic trust.

Configuration and key management

Use the management interface to configure SD-JWT and mdoc format credentialss, configure full credential branding, and define presentation definitions. It provides complete control over the identities and keys required to issue or verify credentials.

Organizational holder and public credentials

Manage the credentials your organization holds. Configure specific credentials to be public, automatically making them available to the outside world as Linked Verifiable Presentations (Linked VP) to easily prove organizational attributes.

What does Sphereon VDX add to the business wallet

What sets the Sphereon business wallet apart from the competition is the underlying VDX platform. It goes beyond standard wallet capabilities by ensuring that every piece of information you issue or receive is rigorously verified and legally defensible.

Authoritative semantic modeling

Create a semantic model that describes your exact operational “world.” VDX assigns an authoritative definition to every attribute, establishing its meaning, legal basis, trust level, sensitivity, disclosure rules, and audit duties. This model is explicitly referenced in every step of the VDX issuing and verifying workflow.

Industry-standard decision engines

VDX evaluates every action using integrated industry-standard decision engines, like AuthZEN, Cedar, OPA. These engines cross-reference incoming and outgoing data against external laws and industry regulations, as well as your organization’s own internal policies and technical specifications.

Dynamic flow gating and connectors

Connect directly to internal and external systems using our flexible Connectors framework. The decision engines use this context to generate explicit outcomes, such as Permit, Deny, or Step-Up-Required, which strictly gate the next steps in the issuing or verifying workflow.

Tamper-proof evidence preserved

Move beyond the basic log files typically used by the competition.

Every decision is cryptographically logged as tamper-proof evidence, with all context and rules permanently preserved to ensure complete defensibility for later internal review or regulatory audits.

Every action checked. Every decision provable.

Governance at the core of the wallet, not a footnote!

Many wallets can manage a credential’s lifecycle. That is now expected. Some also keep an audit log, but usually as a background security feature, next to encryption and access control. VDX works the other way around. Governance and accountability come first.

This matters more as accountability rules tighten. Regulations such as NIS2 raise the bar for access control and demand defensible, tamper-evident audit trails, with liability reaching management personally. VDX is built to help organisations meet exactly that expectation.

Policy is enforced before an action runs, not reconstructed afterwards from logs. The record shows why a decision was reached, which rules matched, and under whose authority. It does not simply show that something happened.

This is the difference between proving a decision and logging an event. An organisation can approve an action, or grant access, and months later, justify that decision to a regulator, an auditor, or a court. It can do so decision by decision, on evidence that has not been changed in the meantime.

Integrating the business wallet into your operations

Beyond technical verification, the wallet operates as an API-driven application service designed to map directly to your organizational structure, supporting complex delegations, open standards, and seamless background integration with existing enterprise systems.

API-first, headless architecture

Deploy a pure application service rather than a standalone software suite your staff has to learn. All issuance, holding, and verification processes run silently in the background of your existing systems, while manual access is strictly reserved for administrators in the management configurator.

Digital mandates and representation

Delegate access and rights to employees, authorized representatives, or external service providers. The wallet supports verifiable digital mandates that define the exact scope of representation, can be time-bounded, revocable, and are automatically verified by counterparties.

Flexible enterprise deployment

Deploy the wallet infrastructure to meet your specific security requirements. Run it self-hosted under your own complete control, or utilize our managed hosting. It integrates directly into your existing ERP, GRC, and procurement workflows.

Ecosystem interoperability

Avoid vendor lock-in with full support for evolving European digital identity standards. Ensure seamless cross-border interaction with native support for eIDAS 2.0 profiles, OpenID Federation, and integration with Federated Trust Registries.

The power of VDX: limitless extensibility

The Sphereon business wallet is not a static application. Because it is built on the VDX platform, its core trust capabilities can be seamlessly extended. The modules below are not separate products; they are powerful examples of how the wallet’s architecture can be adapted to solve complex physical, operational, and financial workflows.

Credential-gated reservations

An extension that manages the allocation of high-value or high-risk resources, such as lab equipment, vehicles, or secure spaces, by requiring the wallet to pre-check specific mandates, authorizations, training records or certifications before a reservation can be made.

Proximity verification

A capability demonstrating how the wallet bridges the digital and physical worlds, allowing organizations to authorize actions directly at the object level, such as unlocking industrial machinery or a secure location, using physical in-person proximity verification.

B2B eInvoicing

An extension showing how trusted identity integrates into financial flows. It utilizes the wallet’s verifiable organizational attributes, such as proofs of the company’s identity and digital mandates, to enable real-time, tax-compliant direct eInvoicing between parties in corporate supply chains.

Digital product passports 

A module that extends corporate trust to physical goods, proving the wallet infrastructure can issue and manage decentralized records tracking the sustainability and provenance of products for European Ecodesign compliance.

Stop managing silos.
Start operating with verifiable trust.

Transition your organization to the European digital identity ecosystem.
Let’s discuss how the Sphereon business wallet and VDX platform can
automate your compliance and securely power your daily operations.

Schedule a wallet consultation

Logo Sphereon

Sorry

De versie van de browser die je gebruikt is verouderd en wordt niet ondersteund.
Upgrade je browser om de website optimaal te gebruiken.