Skip to content

ISO/IEC 18013-7:2025 - ISO-compliant driving licence — Part 7: Mobile driving licence (mDL) add-on functions #1

Description

@skounis

Formal name

ISO/IEC 18013-7:2025 - ISO-compliant driving licence - Part 7: Mobile driving licence (mDL) add-on functions

Overview

This document augments the capabilities of the mobile driving licence (mDL) standardized in ISO/IEC 18013-5 with the following additional functionality of presentation of a mobile driving licence to a reader over the internet.

This document specifies a REST API over which Wallet Instances and Relying Parties can request and present attestations in the mdoc format specified in ISO/IEC 18013-5. As such it is an alternative to the OpenID4VP protocol.

Furthermore, this document specifies an interoperable profile for OpenID4VP, with the aim of using the OpenID4VP protocol to request and present attestations in the mdoc format. Some of the choices made in this profile could conceivably also be used to create a similar profile for requesting and presenting attestations in SD-JWT VC-compliant format.
This standard references draft20 of openid4vp. Technically, it cannot use the same version of openid4vp to do mdocs and sd-jwt.

ISO/IEC 18013-7 Annex B specifies a profile for OpenID4VP. This profile is mdoc-specific, meaning that it only applies if the attestations that are requested and released are in ISO-compliant format. However, this profile is based on draft 18 of OpenID4VP, whereas the latest available version of OpenID4VP is version 1.0. As a final version of OpenID4VP has been published, and if the EC decides that OpenID4VP can be used for requesting and presenting ISO-compliant attestations in the EUDI Wallet ecosystem, this profile needs to be revisited.

Work Plan

Current Version

EC Assessment Status

  • n/a.

Forthcoming Version

  • ISO/IEC 18013-7:2025 - ISO-compliant driving licence - Part 7: Mobile driving licence (mDL) add-on functions - third edition.
  • Objectives:
    • The second edition contains a “digital credential API retrieval” protocol that also can run over a (browser) API.) WG10 decided to add support for an OpenID4VP and HAIP solution running over a (browser) API, to a next (third or later) edition, after WG10 will confirm that it meets the requirements previously shared with the OIDF.
    • The agreement between OIDF and ISO WGs has been that ISO defines a profile of OpenID4VP for mdocs, so a profile of mdocs has been removed from OpenID4VP.
    • Revisit ISO/IEC 18013-7 Annex B.
  • Planned publication date: 2026-12-21.

Testing & Conformance

  • Work plan: The EC is developing test specification for this STS. The current target date is not available yet.
  • Test Specification: (link pending)
  • Relevant information: Functional Conformance Assessment Framework
  • Notes:
    • The test specification for ISO/IEC 18013-7, will include Annex A and Annex C of the standard.
    • Links to the test specifications and target dates will be updated in Q2-2026.
    • The test specification will refer to ISO/IEC 18013-7:2024 (second edition).

Updates

  • 2026-06-04: ISO/IEC updated that the EPD is 2026-12.
  • 2026-04-21: The EC expects that the third edition will be published by the end of Q3 2026. The target date was updated to 2026-09-30.
  • 2025-11-28: The EC expects that the third edition will be published not later than April 2026/ Q2 2026.
  • 2025-10-09: The EC expects that the third edition will be published not later than 2026-03.
  • 2025-08-31: A stable version of ISO/IEC 18013-7 third edition is expected by the end of 2025 (that is, anticipate consensus on the content). Final publication is expected to follow in 2026.
  • 2025-05-29: ISO/IEC published the second edition.

Alerts

There are no open alerts.

References

None.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Art 5a(23) P&IProtocols & Interfaces to be supported by the EUDI FrameworkCIR (EU) 2024/2982Protocols and interfaces - https://data.europa.eu/eli/reg_impl/2024/2982/ojCIR (EU) 2026/1731Amending CIR (EU) 2024/2977, (EU) 2024/2979, (EU) 2024/2980 and (EU) 2024/2982Cat: Protocols & InteroperabilityFunctional requirements defining common standards ensuring seamless cross-border interoperability.Cat: Relying PartiesFunctional requirements for relying parties on registration, auth, data requests, and handling.Cat: Wallet ProvidersFunctional requirements on core functions, security, UI, and lifecycle, managed by EUDIW Providers.Domain: WalletCovers STSs specific to ARF and wallet operations such as credential formats, protocols, and APIsEssentialEssential to guarantee interoperability, issuance, presentation, and verification of a credentialFn: PresentationFunctional: Presentation of attestation and attributes to a Relying PartyyFnRAn STS that specifies Functional RequirementsRegulationStandards referenced or mandated in the Implementing Acts (IA/CIR); binding for implementation.gapThis ticket is about a gap identified in our analysis and needs to be schedulednpaThe standard is not publicly availablests: needs follow upThe standard needs follow up due to a forthcoming updated versionsts: readyThe standard has a stable version publishedsts: tentative etaThe standard needs more work. Final further away. The target date is tentative and needs reviewtest specificationSTS entry has linked functional conformance testing activities.

    Type

    No type

    Projects

    Status
    🏗 In progress

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions