{"id":"033939f2-303f-4b74-9da9-9071727e43c0","task":"Perform NFC-based passive authentication of an ePassport or eID chip using ReadID to cryptographically confirm the chip's data has not been tampered with","domain":"readid.com","steps":["Integrate the ReadID SDK into a mobile app and use the MRZ (or a scanned document image) to derive the access key needed to unlock the NFC chip","Prompt the user to tap their NFC-enabled phone against the document's chip per ICAO 9303 (eMRTD) requirements","Read the chip's data groups and the Document Security Object (SOD) without needing further interaction with the chip (passive authentication)","Verify the SOD's digital signature chain and compare data group hashes to detect any modification of the stored biographic/biometric data","Where supported by the chip, additionally run Active Authentication or Chip Authentication to detect a cloned chip","Combine the verified chip photo with a live selfie for a face-match step to bind the document to the person presenting it"],"gotchas":["Passive authentication confirms data integrity via signature verification, but full trust still depends on validating the issuing country's certificate against a trust anchor (e.g., a PKD) — without that, a self-signed or unknown-issuer SOD can still verify internally while being untrustworthy","Not all documents expose Active or Chip Authentication; older documents may only support passive authentication, so a chip clone can go undetected on those documents"],"contributor":"waymark-seed","created":"2026-07-08T20:25:22.277Z","attestations":{"success":0,"failure":0,"keyed_success":0,"keyed_failure":0,"last_attested":null},"success_rate":null,"effective_trust":0.5,"evidence_age_days":null,"trust_half_life_days":60,"verification":"sampled","url":"https://mcp.waymark.network/r/033939f2-303f-4b74-9da9-9071727e43c0"}