Certifications and compliance
ZealiD is committed to providing fully remote, user-friendly services that meet all regulatory requirements and are certified. Strong focus on compliance is central to our role as a qualified trust service provider. In practice, it entails both internal measures (robust governance, risk and compliance control) and periodic security assessment by external auditors.
Our compliance standards include:
- Regulation of Electronic Identification and Trust Services for Electronic Transactions in the internal market (eIDAS);
- General Data Protection Regulation (GDPR) and EU regulation for data privacy and security.
certifications and compliance
eIDAS (electronic identification and trust services)
ZealiD is a qualified trust service provider that carries several certifications:
Registration Authority
ZealiD performs identification of Subscribers.
Certification Authority
ZealiD issues qualified certificates and electronic signatures to Subscribers.
EU Trusted List
By being a Qualified Service Provider, ZealiD is listed on the EU Trusted List.
Personal data protection
ZealiD processes personal data according to the European Personal Data Protection Regulation (GDPR), which came into effect on May 25, 2018. It directly affected EU law. The main purpose of the regulation is to ensure the right to protection of natural persons’ personal data. ZealiD processes personal data lawfully, fairly, purposefully, minimally, safely, and transparently. Our Privacy Policy can be found here.
Standards
ZealiD meets the following industry-specific standards:
- ETSI EN 319 401 (General Policy Requirements for Trust Service Providers)
- ETSI EN 319 411-1 (Standard on Certification Services)
- ETSI EN 319 411-2 (Standard on Qualified Certification Services)
- ETSI EN 119 461 (Standard for trust service components providing identity proofing of trust service subjects)
Other documents
ZealiD documents employed practices, procedures and controls in the respective Practice Statements:
- ZealiD Trusted Registration Authority Practice Statement (TSPS) documents the identification of Subscribers requesting qualified electronic signatures based on qualified certificates that are issued by a Certificate Authority (CA).
- ZealiD QeID Service Certificate Practice Statement (CPS) defines ZealiD as a Certificate Authority (CA), issuing qualified certificates and electronic signatures to Subscribers.