QRCertificates
Verifiable CredentialsDigital CredentialsVerification

What Are Verifiable Credentials?

A digital credential with a verification checkmark
Key takeaway

Verifiable credentials are tamper-evident digital claims anyone can check. Here is what they are and how they work in plain language.

The phrase verifiable credential gets used a lot in conversations about digital certificates, badges, and identity, but it is rarely explained simply. At its heart it is a small but powerful idea: a digital claim that anyone can check is genuine, without having to phone the organisation that issued it.

The plain-English definition

A verifiable credential is a digital statement about someone, issued by an organisation, that comes with built-in proof of authenticity. The statement might be she completed this course, he holds this licence, or this person attended this event. What makes it verifiable is that the proof travels with the credential, so a third party can confirm it is real and unaltered on their own.

The three players involved

Every verifiable credential involves the same three roles:

  • The issuer: the organisation that makes the claim, such as a university, training provider, or professional body.
  • The holder: the person the credential is about, who receives it and shares it when needed.
  • The verifier: anyone who needs to confirm the credential is genuine, such as an employer or admissions officer.

The magic is that the verifier can trust the credential without contacting the issuer, because the proof of authenticity is part of the credential itself.

What makes a credential verifiable

The key ingredient is a digital signature. When the issuer creates the credential, they sign its data using a private key that only they hold. The matching public key is available to everyone. A verifier checks the signature against the data: if it matches, the credential is authentic and unchanged; if anything has been edited, the check fails. This is why a verifiable credential is described as tamper-evident, you cannot quietly alter it without breaking the proof.

Why this is better than the old way

Traditionally, confirming a qualification meant emailing or calling the issuer and waiting, sometimes for days, for a human to dig through records. That is slow, expensive, and easy to fake in the meantime with a doctored PDF. Verifiable credentials flip the model: the check is instant, automated, and impossible to spoof, because it relies on cryptography rather than someone's say-so.

Where you will see them

Verifiable credentials show up across education and work. A bootcamp issues them for completed programmes. A professional association uses them for memberships and continuing education. An employer uses them for internal training records. Event organisers use them for attendance and CPD. Anywhere a claim about a person needs to be both shareable and trustworthy, verifiable credentials fit.

Standards and interoperability

Because verifiable credentials are meant to travel between systems, there is ongoing work to standardise their format so that any verifier can read any issuer's credential. The practical takeaway for an issuer is to choose a system built on proven cryptography and open verification, so your recipients are never locked out and your credentials remain checkable for the long term.

Issuing verifiable credentials with QRCertificates

QRCertificates makes it straightforward to issue verifiable credentials at any scale. Each one is cryptographically signed with Ed25519 over its canonical data fields, so the proof of authenticity is baked into the credential and any change breaks verification. Holders can share a QR code or a short human-readable code, and verifiers confirm authenticity in one click on any device, with no login, no app, and no fee. You can issue from a single record or bulk-issue tens of thousands from a CSV, deliver by email, and revoke when needed, all without a blockchain.

FAQ

Frequently asked

How is a verifiable credential different from a normal PDF certificate?

A plain PDF can be edited and only proves it exists. A verifiable credential carries a cryptographic signature over its data, so anyone can confirm it is genuine and unaltered without contacting the issuer.

Do I need to contact the issuer to verify a credential?

No. That is the whole point. The proof of authenticity travels with the credential, so a verifier confirms it independently, usually by scanning a QR code or entering a short verification code.

Are verifiable credentials only for universities?

No. They are used by training providers, professional bodies, employers, bootcamps, and event organisers, anywhere a claim about a person needs to be both shareable and trustworthy.

Issue your first credential in minutes

Start free — no credit card. Design a certificate, issue a verifiable copy, and watch it verify on a public page. Scale to thousands when you are ready.