Aldenburg Protocol Playground

Flow inspector, tamper lab, SD-JWT workbench, and conformance runner. Mock wallet / issuer / verifier speak Credo 0.7. JWT iss is the HTTP(S) SAN URL, never did:web. Base: https://playground.aldenburg-id.com · OpenAPI

Mock-wallet issuance (OpenID4VCI)

Paste a credential offer from the registry (or any P0–P4 issuer). The playground holder steps through offer → metadata → token → proof → credential and shows each JWT.

Mock-wallet presentation (OpenID4VP)

Uses the credential from the last issuance on this session. Paste a Pulse Arena OpenID4VP request, or a City Portal SIOP (openid://?response_type=id_token) / OpenID4VP deep link. After SIOP, copy the second (PID name + city) deep link and run presentation again.

Emit a credential offer

Emit a presentation request

Standing-20 reject paths

Issues a real PID from the registry, tampers it, and evaluates with Pulse Arena's verifyAgePresentation (the venue counterparty). All six standing reject paths are required.

Paste a compact dc+sd-jwt

Conformance against a base URL

Metadata, endpoints, ES256 allow-list, trust-list membership. Run in-process against P0–P4 from tests, or paste any live origin here.