
PKI Middleware and eIDAS Digital Trust Platform for Identity, Authentication and Signing
Founded in Arnhem, the Netherlands, in 1998, the company builds digital trust software for organisations that must prove who is on the other end of a transaction. Its work centres on public key infrastructure and electronic identity, and it sells into government, defence, healthcare, finance and large enterprise, sectors where credentials are issued centrally and their use is regulated. Offices in Porto and Cadempino, Switzerland, support a market reached largely through a global partner and integrator network.
Three components make up the ConsentID platform and can be deployed separately or together. SafeSign IC is endpoint middleware that lets desktop operating systems and applications talk to smart cards and tokens holding a user's certificates, supplying strong authentication and qualified signing locally. BlueX handles the lifecycle behind those credentials, using a low-code workflow engine to run issuance, renewal and revocation against existing processes. ConsentID itself moves the credential to a phone, backing authentication over OIDC, SAML and RADIUS, single sign-on, and eIDAS signing through a remote QSCD.
Longevity and certification are the main claims here rather than novelty. BlueX is audited as a trustworthy system under CEN/TS 419261:2015, and the wider stack carries Common Criteria EAL4+ alongside ISO 27001:2022 and ISO 9001:2015, which matters to buyers procuring under eIDAS. Deployment references skew public sector and healthcare: the Dutch ZORG-ID programme reports 45,000 users, roughly 80 percent of the country's healthcare professionals, and 30 million document signatures. Post-quantum cryptography is listed among ConsentID's capabilities.



