CodeB’s cover photo
CodeB

CodeB

Software Development

Pembroke, Malta 1,346 followers

The API first framework for your Identity

About us

CodeB — Secure Mobile Identities & Qualified Signatures CodeB transforms mobile devices into powerful identity tools, delivering passwordless access and legally binding digital signatures—all within the convenience of your phone. Digital Identity & Authentication Through the CodeB Authenticator and Identity Broker, CodeB enables secure, passwordless login via OpenID Connect, leveraging mobile device keystores (including Android Strongbox) to generate cryptographically signed tokens—eliminating reliance on external identity providers and mitigating centralized key risks. Qualified Electronic Signatures (QES) The CodeB platform supports fully qualified electronic signatures using national identity (eIDAS) cards with built‑in NFC—no extra card reader needed. Compatible with documents such as PDFs, and supporting cards like Malta’s ID, Germany’s HBA and eGK, this feature ensures legally binding signatures with maximum convenience.

Website
https://www.codeb.io
Industry
Software Development
Company size
2-10 employees
Headquarters
Pembroke, Malta
Type
Privately Held
Founded
1997
Specialties
Self-Sovereign Identities, Blockchain, and SMPP Gateway Software

Products

Locations

Employees at CodeB

Updates

  • View organization page for CodeB

    1,346 followers

    Aloaha ist mit dem EU Digital Identity (EUDI) Wallet Testnet verbunden! Die nächste Generation der digitalen Identität unter eIDAS 2.0 ist da – und Aloaha / CodeB geht voran. Wir freuen uns sehr bekanntzugeben, dass unser OID4VP 1.0 Verifier voll einsatzfähig ist und erfolgreich gegen das EU Digital Identity Wallet testet! Was macht diese Implementierung so besonders? Made in Malta & 100 % Eigenentwicklung Unsere gesamte Verifizierungs-Suite wurde von Grund auf in Malta entwickelt. Wir behalten die vollständige Kontrolle über unseren Technologie-Stack – ohne jegliche SDK-Abhängigkeiten von Drittanbietern oder externe Binärdateien („Black Boxes“). Da wir alle OID4VP-, SD-JWT VC- und Kryptographie-Komponenten in-house entwickeln, eliminieren wir Angriffsflächen in der Software-Lieferkette (Supply Chain) vollständig – für maximale Sicherheit, Transparenz und totale operative Unabhängigkeit. Technische Highlights: 🆔 Native PID-Verifizierung: Sofortige, kryptographische Überprüfung von Personendaten (Person Identification Data – PID) im SD-JWT VC-Format. 🔐 Privacy-First (Selective Disclosure): Minimiert die Preisgabe von Daten, indem nur genau die erforderlichen Attribute abgefragt werden (z. B. Identitätsnachweise ohne unberechtigte Metadaten). 🛡️ Null Supply-Chain-Risiko: Vollständige Immunität gegenüber Schwachstellen in Bibliotheken von Drittanbietern und Upstream-Kompromittierungen. ⚡ Eigenständige & leichtgewichtige Engine: Eigenes Handling von OID4VP 1.0 und Software-Zertifikaten, entwickelt für die nahtlose Enterprise-Integration. Anstelle veralteter Dokumenten-Scans oder manueller KYC-Prozesse basiert die Identitätsprüfung mit Aloaha jetzt auf sofortigem, rein kryptographischem Vertrauen. Möchten Sie unsere EUDI-Wallet-Anbindung testen oder Ihre Unternehmensabläufe eIDAS 2.0-ready machen? 👉 Live-Verifier testen: https://lnkd.in/eWJmNFf7 👉 EUDI Registration Hub: https://lnkd.in/e5MMArCd #EUDI #eIDAS2 #DigitalIdentity #MadeInMalta #VerifiableCredentials #OpenID4VP #SDJWT #Aloaha #CodeB #Cybersecurity #IAM #SupplyChainSecurity #TechInnovation #Malta

    • No alternative text description for this image
  • View organization page for CodeB

    1,346 followers

    Aloaha is Connected to the EU Digital Identity (EUDI) Wallet Testnet! The next generation of digital identity under eIDAS 2.0 is here—and Aloaha / CodeB is leading the rollout. We are proud to share that our OID4VP 1.0 Verifier is fully operational and successfully testing against the EU Digital Identity Wallet! What makes this implementation unique? Made in Malta & Built 100% In-House Our entire verification suite is engineered ground-up in Malta. We maintain complete control over our technology stack with zero third-party SDK dependencies or external binary black boxes. By developing all OID4VP, SD-JWT VC, and cryptographic primitives in-house, we completely eliminate the supply chain attack surface—guaranteeing maximum security, transparency, and total operational independence. Key Technical Capabilities: 🆔 Native PID Verification: Instant, cryptographic verification of Person Identification Data (PID) issued in SD-JWT VC format. 🔐 Privacy-First (Selective Disclosure): Minimizes data exposure by requesting only the exact claims needed (e.g., identity attributes without leaking unnecessary metadata). 🛡️ Zero Supply Chain Risk: Complete immunity from third-party library vulnerabilities and upstream dependency compromises. ⚡ Proprietary & Lightweight Engine: Custom OID4VP 1.0 and software-certificate handshake handling natively designed for seamless enterprise integration. Instead of legacy document scans or manual KYC, identity presentation with Aloaha is powered by instant, pure cryptographic trust. Interested in testing our EUDI Wallet connectivity or integrating eIDAS 2.0 capabilities into your enterprise workflows? 👉 Test our Live Verifier: https://lnkd.in/eWJmNFf7 👉 EUDI Registration Hub: https://lnkd.in/e5MMArCd #EUDI #eIDAS2 #DigitalIdentity #MadeInMalta #VerifiableCredentials #OpenID4VP #SDJWT #Aloaha #CodeB #Cybersecurity #IAM #SupplyChainSecurity #TechInnovation #Malta

    • No alternative text description for this image
  • View organization page for CodeB

    1,346 followers

    Your autonomous AI agents are placing orders, processing invoices, and querying databases right now. Here is the uncomfortable reality: If an agent goes rogue or gets compromised, downstream systems have no way to verify who actually owns it, what it was authorized to do, or how to shut it off without crashing adjacent infrastructure. Shared API keys do not prove ownership. Static OAuth service accounts do not track agent intent. And when an auditor under the EU AI Act asks who is accountable for an automated action, a generic server log will not suffice. MCP and A2A standardized how agents speak to tools—CodeB solves how servers verify who is speaking. Today, we are launching AI Agent Machine Identity inside the CodeB Business Wallet. Built on European Digital Identity Wallet (EUDI / eIDAS 2.0) architecture and W3C standards, CodeB gives every autonomous agent a cryptographic identity legally anchored to your organization. Key Capabilities: - Decentralized Agent Identity (did:web): Assigns fragment DIDs (did:web:...#agent-123) cryptographically bound to your corporate wallet. - Least-Privilege Capability Tokens: Issues short-lived ES256 JWTs clamped by dynamic scopes and strict TTLs. Administrative functions are permanently blocked for agents by design. - Instant One-Click Kill Switch: Calling deactivate-agent immediately revokes access across every downstream service via live manifest and Bitstring status updates. - EU AI Act Auditability: Produces signed, append-only audit trails linking agent execution directly to organizational liability (Articles 12, 14, and 26). - Zero New Stack Required: Operates out of the box as a standard bearer credential for MCP tool servers, A2A dispatchers, and REST APIs. Stop running autonomous agents on shared secrets and implicit trust. Read the technical breakdown and explore the live implementation: https://lnkd.in/efTiUkrG #DigitalIdentity #EUAIAct #MachineIdentity #EUDIWallet #DecentralizedIdentity #Cybersecurity #CodeB #EnterpriseSoftware

  • View organization page for CodeB

    1,346 followers

    Eine digitale Mitgliedskarte. In einem Wallet auf dem Smartphone. Mit jeder Kamera verifizierbar. Innerhalb von Sekunden. Das ist das Versprechen des European Digital Identity Wallet — und die beiden Screenshots unten zeigen, dass es bereits heute funktioniert: live und auf einer Infrastruktur, die wir in Malta entwickelt haben und betreiben. Der Wallet-Screen: meine eigene Mitgliedskarte in einem browserbasierten Wallet, das sich einfach über einen Link installieren lässt. Kein App Store. Kein Download. Es funktioniert auf jedem Smartphone und jedem Laptop. Nach unserem Kenntnisstand sind wir derzeit der einzige Anbieter eines live verfügbaren European Digital Identity Wallet, das auf diese Weise funktioniert. Sollten Sie ein anderes kennen, lassen Sie es uns bitte wissen — wir würden uns sehr gerne austauschen. Das Verifier-Ergebnis: Das sieht jeder Scanner eine Sekunde nach dem Einlesen des QR-Codes der Karte. Ein grünes „VALID“, die offengelegten Informationen und die durchgeführten Prüfungen. Auch auf der Verifier-Seite muss keine Software installiert werden. Dasselbe Prinzip wird in den kommenden Jahren viel Papier und Plastik ersetzen: - Event-Tickets, denen ein Scanner am Eingang innerhalb einer Sekunde vertrauen kann - Mitarbeiterausweise ohne Plastikkarten und Kartendrucker - Kundenkarten ohne eine App, die der Kunde zunächst herunterladen muss - Altersnachweise in Lokalen — ohne den vollständigen Ausweis vorzeigen zu müssen - Mitgliedschaftsverlängerungen, die direkt auf das Smartphone des Mitglieds übertragen werden Wenn Ihre Organisation den Rollout des European Digital Identity Wallet plant, steht meist dieselbe Frage im Raum: „Ist all das wirklich schon real?“ Die Antwort lautet: Ja — und hier sehen Sie einen Teil davon, den Sie noch in dieser Minute selbst in der Hand halten können. Durchgehend standardbasiert. In der EU gehostet und in der EU entwickelt. Live im Produktivbetrieb, nicht lediglich auf einer Roadmap. Probieren Sie es aus. Richten Sie die Kamera Ihres Smartphones auf den QR-Code auf dem Wallet-Screen. Eine Sekunde später sehen Sie das Verifier-Ergebnis — für ein echtes Credential, genau in diesem Moment. Das ist die gesamte Demo. Keine Folien. Kein Verkaufsgespräch. Ein funktionierendes Credential und ein funktionierender Verifier — beide live und beide für Ihre eigene Prüfung offen. Wenn Sie Entscheidungen in den Bereichen Mitgliedschaften, Ticketing, Mitarbeiterausweise oder Kundenvertrauen treffen — und sehen möchten, wie Ihre eigene Umsetzung aussehen könnte — ist der Nachrichten-Button unter diesem Beitrag der schnellste Weg, um ins Gespräch zu kommen. Aloaha Limited, Malta. CodeB Sovereign Communications — ein mit dem European Digital Identity Wallet interoperabler Trust-Stack für Organisationen, die vorangehen möchten. Mehr erfahren → https://lnkd.in/eS4RGxM3 #EuropeanDigitalIdentityWallet #EUDI #DigitalIdentity #eIDAS #Malta

    • No alternative text description for this image
    • No alternative text description for this image
  • View organization page for CodeB

    1,346 followers

    A digital membership card. In a phone wallet. Verified with any camera. In seconds. That is the promise of the European Digital Identity Wallet — and the two screenshots below show it working today, live, on infrastructure we built and run in Malta. The wallet screen: my own membership card, sitting in a browser-based wallet you install from a link. No app store. No download. Works on any phone or laptop. As far as we have found, we are the only live European Digital Identity Wallet on the market that works this way — if you know of another, please tell us, we would love to compare notes. The verifier result: what any scanner sees a second after reading the card's QR. A green VALID, the disclosed details, and the checks that were run. No software to install on the verifier's side either. The same pattern will replace a lot of paper and plastic in the next few years: - Event tickets a scanner at the door can trust in one second - Employee badges without a plastic-card printer - Loyalty cards without an app the customer has to download - Age proof at a licensed premises — without showing the whole ID - Membership renewals that flow straight to the member's phone If your organisation is planning around the European Digital Identity Wallet rollout, the question in the room is usually the same one: "is any of this actually real yet?" Answer: yes — and here is a piece of it you can hold in your hand this minute. Standards-based end to end. Hosted in the EU, built in the EU. Live in production, not on a roadmap. Try it. Point your phone camera at the QR shown on the wallet screen. One second later you will be looking at the verifier result — for a real credential, right now. That is the whole demo. No slides. No sales call. A working credential and a working verifier, both live, both yours to inspect. If you make decisions on membership, ticketing, staff credentials or customer trust — and you would like to see what your version of this could look like — the message button on this post is the fastest way to start. Aloaha Limited, Malta. CodeB Sovereign Communications — a European Digital Identity Wallet-interoperable trust stack for organisations that want to move first. Learn more → https://lnkd.in/ejvJMS9V #EuropeanDigitalIdentityWallet #EUDI #DigitalIdentity #eIDAS #Malta

    • No alternative text description for this image
    • No alternative text description for this image
  • View organization page for CodeB

    1,346 followers

    Twenty-five years of building identity, cryptography, remote signing, secure telephony and sovereign communications software — mostly as separate products that solved separate problems for separate customers. Smart-card readers. PKI middleware. Qualified signature tools. SIP softphones. OIDC identity providers. Every piece worked on its own; the pieces never quite formed one thing. Then ARF 3.0 landed. The European Digital Identity Wallet Architecture Reference Framework does what none of the individual specs ever did: it ties identity issuance, verification, presentation, revocation, remote signing, and holder devices into a single coherent architecture. OpenID4VP + HAIP + SD-JWT VC + ISO 18013-5 mDoc for presentation. OpenID4VCI + Wallet Instance Attestation + Key Attestation + DPoP for issuance. OAuth Status List for revocation. OpenID Federation for discovery. Cloud Signature Consortium v2 + ETSI TS 119 432 SCA + PAdES B-B through B-LTA for signing. All under one roof, one trust model, one holder. We just re-ran our self-declared conformity assessment against ARF 3.0 (21 July 2026). Current count: 58 Met · 9 Partial · 2 Not-met · 0 externally blocked. Both wire formats end-to-end today, both advertised in vp_formats_supported: dc+sd-jwt and mso_mdoc. Every one of those "Met" rows is code Aloaha Limited has been writing pieces of for two decades. What changed this year is that the ARF spec finally gave us a single graph to plug them all into. The QES / QSCD side is one accredited audit engagement away — the crypto-module abstraction takes a certified HSM as a configuration swap. Every line of European Digital Identity Wallet protocol code in the stack is in-house, Malta-built. Zero third-party EUDI SDKs. Which — perhaps worth mentioning quietly — also means no per-verification, per-issuance or per-user upstream royalties riding along on top of a delivered price. The commercial arithmetic on a wallet-adjacent quote gets refreshingly short. Full section-by-section breakdown, every claim linked to a live endpoint: https://lnkd.in/ehQNtqvu #EUDigitalIdentityWallet #EUDIWallet #eIDAS2 #DigitalIdentity #OpenID4VP #OpenID4VCI #HAIP #SDJWTVC #mDoc #ISO180135 #ARF30 #PAdES #QES #RemoteSignature #DigitalSovereignty #Malta #Aloaha #CodeB

  • View organization page for CodeB

    1,346 followers

    Feedback on our EU Digital Identity Wallet verifier and issuer this month has been genuinely helpful — so we opened part of our internal test material as public developer cookbooks. 13 recipes covering what people actually integrate against: OID4VP verifier in 6 frameworks, OIDC sign-in in 8, JWT validation in 7 languages, IAM federation (Keycloak / Auth0 / Okta / Entra / Cognito), webhook HMAC, SIEM (Splunk / Elastic / Datadog / Loki / Sentinel), softphone / chat / meet embeds, real-time WebSocket events, compliance archive. On the wallet piece: our verifier runs green against the OpenID Foundation's OID4VP and HAIP conformance test suite. We are NOT accredited by any EU member state as a qualified wallet or verifier — that's a member-state process. Self-declared OpenID Foundation conformance is the honest signal we can offer today. https://lnkd.in/e3gpMu-S #EUDigitalIdentityWallet #OIDC #OID4VP #OpenIDFoundation #eIDAS2

  • View organization page for CodeB

    1,346 followers

    Vorstellung: das Aloaha Web Wallet. Ihre EU Digital Identity Wallet — direkt im Browser. Kein App Store. Keine Warteliste. Kein SDK, das Sie nicht selbst geprüft haben. Installieren wie jede PWA. Verifizierte Attribute aus Ihrer OIDC-Identität in Sekunden importieren. An jeden HAIP-konformen Relying Party per QR-Scan oder Same-Device-Deeplink präsentieren. Warum wir den Stack selbst gebaut haben: — Jede Zeile EUDI-Protokollcode ist von Aloaha geschrieben. Null Wallet-SDKs von Dritten. Null Supply-Chain-Angriffsfläche auf der Wallet-Ebene. — OpenID4VCI für Issuance. OpenID4VP für Präsentation. SD-JWT VC mit Holder-Binding. Key-Binding JWT. Wallet Attestation. Live heute — nicht als Roadmap-Folie. — Läuft auf demselben souveränen Identity-Broker wie unser OIDC-Provider, unsere SIP-over-WebSocket-Telefone und unser Voice-AI-Empfangsdienst. Eine Vertrauensgrenze, nicht fünf. Ehrlichkeit in einem Absatz: Dies ist der Browser-Begleiter zu einem Wallet-Ökosystem. Zielstufe LoA-Substantial. Es ist nicht die EUDI Wallet Instance — das ist die native App, und sie steht als Nächstes an. Wenn Sie biometrisch gebundene Präsenz-Präsentationen brauchen, warten Sie auf das native Release. Wenn Sie einen gehosteten, überall installierbaren, entwicklerfreundlichen Holder brauchen, der heute auf jedem Gerät mit modernem Browser läuft — starten Sie hier. Gebaut in Malta. Am EU Digital Identity Framework ausgerichtet. Für Organisationen, die bei Identity handeln wollen, bevor es ihr Wettbewerb tut. Demo ausprobieren → https://lnkd.in/enW764WG Anleitung zur Anmeldung → https://lnkd.in/eyuS-PWZ Verifier- und Issuer-Konformität → https://lnkd.in/e89a8JFD Sie sind Relying Party und wollen integrieren — oder öffentlicher Sektor und bauen einen EUDI-nahen Dienst? Melden Sie sich. — Das CodeB-Team, Aloaha Limited #EUDI #DigitaleIdentität #OpenID4VP #OpenID4VCI #SDJWT #Souveränität #Malta #PWA

  • View organization page for CodeB

    1,346 followers

    Announcing the Aloaha Web Wallet. Your EU Digital Identity Wallet — in the browser. No app store. No signup queue. No SDK you didn't audit yourself. Install it like any PWA. Import verified attributes from your OIDC identity in seconds. Present them to any HAIP-compliant Relying Party with a QR scan or a same-device deep-link. Why we built our own stack: — Every line of EUDI-protocol code is Aloaha-written. Zero third-party wallet SDKs. Zero supply-chain surface for the wallet layer. — OpenID4VCI for issuance. OpenID4VP for presentation. SD-JWT VC with holder binding. Key-Binding JWT. Wallet Attestation. Shipping today, not roadmap slides. — Runs on the same sovereign identity broker as our OIDC provider, our SIP-over-WebSocket phones, and our voice-AI receptionist. One trust boundary, not five. Honesty in one paragraph: this is the browser companion to a wallet ecosystem. It targets LoA-Substantial. It is not the EUDI Wallet Instance — that's the native app, and it's next in line. If you need biometric-bound proximity presentations, wait for the native release. If you need a hosted, install-anywhere, developer-friendly holder that works on any device with a modern browser today — start here. Built in Malta. Aligned with the EU Digital Identity framework. Designed for organisations that want to move on identity before their competitors do. Try the demo → https://lnkd.in/ev9nTtff How to sign in → https://lnkd.in/eUXcpvC6 Verifier + issuer conformance → https://lnkd.in/e8E7Z6gx If you're a Relying Party looking to integrate — or a public-sector team building an EUDI-adjacent service — reach out. — The CodeB team, Aloaha Limited #EUDI #DigitalIdentity #OpenID4VP #OpenID4VCI #SDJWT #Sovereignty #Malta #PWA

Similar pages