DEMONSTRATION LEGAL DATA · Licence XXX-YYY is demonstration data and must be replaced with official evidence before production publication.
Mobile-ID · Digital Trust Platform
ISO/IEC 27001:2022Security policyService policyService status
SECURITY CENTER

User Security Center

Guidance for official domains, applications, Passkeys, devices and phishing.

USER SECURITY CENTER

Protect your account and transactions

Verify the official domain, application and authentication session before responding.

DOMAIN

Verify the domain

Use only domains published by Mobile-ID.

  • HTTPS
  • Do not enter credentials on unknown pages
APP

Verify the application

Check App ID, package name and publisher.

  • No untrusted APKs
  • Keep the app updated
PASSKEY

Protect credentials

Never share a Passkey, authentication code or session.

  • Screen lock
  • Device revocation
PHISHING

Prevent phishing

Do not trust email content until verified in the App or Portal.

  • Verify sender
  • Report suspicious messages
SESSION

Manage sessions

Review devices and sign-in history.

  • Sign out all sessions
  • Anomaly alerts
EVIDENCE

Verify evidence

Inspect hashes, timestamps and verification state.

  • Do not rely on screenshots
  • Use Evidence Verifier
TRUSTED DELIVERY

When a device is lost

Follow the sequence below to limit unauthorized access.

  1. 1

    Open Client Portal from a trusted device

    Use the official URL.

  2. 2

    Revoke the lost device

    Disable the device and related sessions.

  3. 3

    Sign out all sessions

    End uncontrolled sessions.

  4. 4

    Register a replacement device

    Complete authentication under policy.

  5. 5

    Review history

    Inspect recent sign-ins and responses.

  6. 6

    Report an incident

    Contact support if any activity is suspicious.