There is a lot of talk right now about uncertainty around digital ID card verification, but it doesn't have to be that way. Trust is good, but control is better. By implementing our GrandID API, organizations and companies secure their systems, e-services and apps for checking the digital ID card.
The service from Swedish e-identity for BankID digital ID cards is based on various parameters that are initially started when a physical scan of the digital ID card is performed. There, we then send attributes to be able to confirm the authenticity of the person's private digital ID card with BankID. The customer is responsible for scanning the QR code. Via our service, you can then integrate the service into your cash register system, membership register or similar to be able to quickly and easily retrieve information from the ID card.
The service can be integrated via GrandID API, SAML 2.0 or OpenID Connect.

Examples of different uses
Age verification for purchases with age restrictions
A physical store who sell age-restricted goods where it is important to be able to verify that customers are of legal age to shop. The customer's digital ID card QR code is scanned and through our service the age is checked and that it is a valid ID card from BankID is confirmed in the process.
Registration of person when purchasing in systems or registers
A physical store that, for example, has a customer club for all members and wants the customer to be able to collect points when making purchases. The customer's digital ID cards The QR code is scanned. The customer's social security number is then displayed directly in the system, which is registered with the user, since the social security number is the unique identifier in the system.
Checking or registering a person depending on the need
A customer reception that registers customer visits.
It works the same way as the previous example.
Where you can decide for yourself how the information you receive back in the service is handled.
Some security aspects that confirm that it is the right person
- The digital ID card from BankID issued by the existing security procedures, directly through BankID.
- A authentication always takes place before the holder can present their digital ID card, which is valid for a limited time.
- With the QR code you can check whether the ID card is valid via GrandID API
For more advanced control
When the QR code is scanned via the service, you will receive an identity certificate. It is a more advanced control for proven and reliable identification which meets the following requirements:
– The trust framework Swedish e-identification, confidence level 3.
– eIDAS regulation notified eID systems for trust level "essential".
– The requirements for Strong Customer Authentication (SCA) according to PSD2.
The QR code technical standard is ISO/IEC18004:2015 model 2, version 4.








