General provisions
Article 3
Regarding the protocols and interfaces referred to in Articles 4 and 5, wallet providers shall ensure that wallet units: (1) authenticate and validate the wallet-relying party access certificates where interacting with wallet-relying parties; (2) authenticate and validate the wallet unit attestations of other wallet units where interacting with other wallet units; (3) authenticate and validate requests made using wallet-relying party access certificates or wallet unit attestations from other wallet units, where applicable; (4) authenticate and validate the wallet-relying party registration certificate, where applicable; (5) display to wallet users information contained in the wallet-relying party access certificates or in the wallet unit attestations; (6) display to wallet users, where applicable, the attributes that wallet users are requested to present; (7) display to wallet users, where applicable, information contained in the wallet-relying party registration certificate; (8) present wallet unit attestations of the wallet unit to wallet-relying parties or wallet units that request it; (9) do not present any requested attributes to wallet-relying parties or wallet units until the following requirements are met: (a) verify the wallet secure cryptographic application has authenticated the identity of the wallet user; (b) verify embedded disclosure policies have been processed within the wallet unit in accordance with Article 11 of Implementing Regulation (EU) 2024/2979, where applicable; (c) verify wallet users have partially or in full approved the presentation. (10) enable privacy preserving techniques which ensure unlinkability where the electronic attestations of attributes do not require the identification of the wallet user, when presenting attestations or person identification data across different wallet-relying parties.