A family of mechanisms that attempts to limit duplicate participation in a defined system. It can provide evidence under stated assumptions; it does not prove unique human identity, eliminate Sybil attacks, or guarantee privacy, inclusion, or fair distribution.
Supports: NIST provides risk- and privacy-aware requirements for identity proofing, authentication, and federation; it does not treat a credential as universal proof of personhood.
Supports: NIST requires privacy and fraud controls for identity proofing and, when biometrics are used remotely, presentation-attack detection and demographic performance testing.
Supports: NIST notes that biometrics are sensitive, create privacy concerns, require additional trust in capture and processing, and should have a non-biometric alternative.
PoP attempts to limit duplicate participation under a documented threat model; it does not prove a unique human or eliminate Sybil attacks.
A credential is not automatic entitlement to funds, governance power, or access, and it cannot by itself make a distribution fair.
Methods can include biometrics, social attestations, devices, or credentials, each with different fraud, privacy, and exclusion risks.
Identity and biometric data need explicit consent, minimisation, retention, deletion, revocation, breach response, and alternative-access controls.
A community considers one-person voting. Before relying on a credential, it publishes what the enrollment check establishes, error rates, operator and retention policy, appeals, non-biometric alternative, and whether a credential can be linked across applications. The vote remains subject to its own eligibility and governance rules.
A hardware-backed isolated execution environment that can protect specified code and data under an explicit platform threat model. Its assurance depends on the implementation, attestation policy, measured software, key release, configuration, and remaining hardware and software attack surface.
A cryptographic proof that a defined statement or computation satisfies a protocol without disclosing the witness beyond what that protocol reveals. It is not, by itself, a privacy or performance guarantee for an application.
An organization or governance arrangement that uses blockchain-based rules, proposals, membership, and treasury controls to coordinate decisions or actions. Its voting, execution, transparency, and legal structure vary by design.
Secret key material used to create signatures that authorize transactions for a particular blockchain account or output. It is not itself a password, a public address, or proof of legal ownership, and wallet recovery depends on the wallet's key-management design.
Explore all our strategic guides about Blockchain to take your operations to the next level.
View all articles