Add Product ListingAdd Product Listing

Products provides a central location for providers to describe available tools that support IDTrust. Users are invited to share experiences using the "add new comment" link that appears at the bottom of each listing.

This directory is provided as a community resource and is not the result of any certification program or compliance testing. Authors are solely responsible for the accuracy of their entries. OASIS encourages readers to evaluate this information independently.

Product Features

CROSS X CHECK, INC. - Controlled Access Systems

Cross X Check and its Founder and Inventors have received three U.S. Patents for the invention of a biometric identifcation system that uses the curvature of the skull to positively identify someone without physical contact utilizing extemely high frequency low power mm-waves. The system allows positive identification even if the person is wearing a hat, scarf, turbin, veil, or burka. The system works in lowlight or no light conditions.

Read more


CSRTool is a free and open-source utility to help you get more out of your Public Key Infrastructure (PKI). It is a GUI tool that helps you perform some mundane activities with ease. We know you have command-line interface (CLI) tools to do the same job, but sometimes even the best of us cannot remember all the options to openssl, certutil or keytool.


Read more


EJBCA is a fully functional Certificate Authority. Based on J2EE technology it constitutes a robust, high performance and component based CA. Both flexible and platform independent, EJBCA can be used standalone or integrated in any J2EE application.

EJBCA is an enterprise class PKI, meaning that you can use EJBCA to build a complete PKI infrastructure for your organisation. EJBCA is suitable for small to very large organization and can integrate with the organizations work-flow and legace systems using many different interfaces.


Read more

Lockstep: Stepwise

Lockstep Technologies’ Stepwise radically enhances privacy, security and safety for consumers transacting on the Internet. Stepwise uses smartcards and similar intelligent personal security devices to de-identify highly sensitive transactions, such as e-health record entries, payment instructions, e-voting ballots and so on.


Read more

Sirius signing server

The Sirius Suite is a signing and verification software suite with it's focus on high throughput and easy integration into an existinig landscape.

The implementation of the DSS standard is one of the new features of the current release. Full support for the DSS core is planned for the next version.

A ready-to-run package can be found at .

Read more

SoftXpath - JavaScript library for querying complex XML documents using powerful Xpath expressions

SoftXPath is small cross browser JavaScript library written for web developers who deals with XML parsing on client side. With the help of SoftXPath you will be able to query complex XML documents using powerful Xpath expressions.
Now you can focus on building effective Xpath expressions instead of wasting time on compatibility issues.

Read more

Stepwise Card-Not-Present fraud solution

"Safety in Numbers"

Stepwise is a specially formatted digital certificate that, when loaded onto a Chip-and-PIN smart credit card, turns it into the best available defence against CNP fraud and ID theft in general.

The benefits of Stepwise in Card Not Present transactions include:

Read more


StrongKey is an open source software product that implements a Symmetric Key Management System (SKMS). StrongKey creates an infrastructure that manages the encryption keys of sensitive company data. Designed for the enterprise and compatible with many databases, operating systems, and application programming languages, Strongkey can be deployed in any sector. Strongkey is an essential component of your Enterprise Key Management Infrastructure (EKMI).

What does StrongKey do?

Read more

Symlabs: Symlabs Federated Identity Suite

Symlabs Federated Identity Suite delivers the flexibility to create an identity management solution with Single Sign-On and Single Log-Out for nearly any environment. It is fully compliant with SAML (1.0, 1.1, & 2.0 including GSA profile) plus open Liberty Alliance standards (ID-WSF 2.0 & ID-FF 1.2), and also provides support for WS-Federation 1.0.

Read more

ZXID Identity Management toolkit implements standalone SAML 2.0
and Liberty ID-WSF 2.0 stacks. It is a C implementation with minimal
external dependencies - OpenSSL, CURL, and zlib - ensuring easy
deployment (no DLLhell). Due to its small footprint and efficient and
accurate schema driven implementation, it is suitable for embedded and
high volume applications. Language bindings to all popular highlevel
languages such as PHP, Perl, and Java, are provided via SWIG. ZXID
implements, as of July 07, SP, WSC, and WSP roles.

Read more Focus Areas: BPEL | DITA | ebXML | IDtrust | OpenDocument | SAML | UBL | UDDI
OASIS sites: OASIS | Cover Pages | | AMQP | CGM Open | eGov | Emergency | IDtrust | LegalXML | Open CSA | OSLC | WS-I