Privacy-Preserving PayString Service

PayString is an initiative to make payment identifiers global and human-readable, facilitating the exchange of payment information. However, the reference implementation lacks privacy and security features, making it possible for anyone to access the payment information as long as the PayString identifier is known. We propose an innovative solution, named PayStringSecure, for this issue by integrating a privacy layer based on Self-Sovereign Identity (SSI), Decentralized Identifier (DID) and Verifiable Credential (VC) to the PayString protocol. A working prototype has been developed to enrich the protocol with the new features.

[1]  Johan A. Pouwelse,et al.  Deployment of a Blockchain-Based Self-Sovereign Identity , 2018, 2018 IEEE International Conference on Internet of Things (iThings) and IEEE Green Computing and Communications (GreenCom) and IEEE Cyber, Physical and Social Computing (CPSCom) and IEEE Smart Data (SmartData).

[2]  Fan Zhang,et al.  CanDID: Can-Do Decentralized Identity with Legacy Compatibility, Sybil-Resistance, and Accountability , 2021, 2021 IEEE Symposium on Security and Privacy (SP).

[3]  Rico Hageman,et al.  Self-Sovereign Identity Solutions: The Necessity of Blockchain Technology , 2019, ArXiv.