ARCFORM
API SERVICES
Sovereign infrastructure documentation — every layer explained by its architectural purpose
Sovereign Transportier™ — Canonical definition
A Sovereign Transportier™ is a neutral, sealed, zero-retention transport layer that carries identity, credentials, proofs, governance signals, and attestations between independent trust ecosystems, while providing deterministic audit evidence without becoming the identity provider, credential issuer, wallet, verifier, or trust authority.
Arcform is the first Sovereign Transportier™. The platform abstracts DID creation, activation, key management, and envelope construction into a walletless, developer-first model powered by Arcform's internal company wallet. Developers interact with a single Sovereign Proxy endpoint; Arcform orchestrates the entire identity and messaging lifecycle behind the scenes. For every DIDComm action, Arcform — not the developer — is the cryptographic actor of record.
SOVEREIGN PROXY CONTRACT: Clients never pass raw DIDs or keys. They use aliases; Arcform resolves them internally. All compliance burden rests with Arcform's infrastructure.
Read full Proxy ContractCategory
Sovereign Transportier™
Model
Walletless DID
Protocol
DIDComm v2
Flagship
Arcform MPC
Generates, activates, and publishes decentralised identifiers for each API key using Arcform's internal sovereign wallet.
Constructs DIDComm envelopes, encrypts payloads, signs with Ed25519 keys, and minimises metadata before routing.
Routes encrypted envelopes through sovereign hops with zero metadata leakage, ensuring delivery integrity.
A single endpoint through which all DIDComm operations are performed by Arcform's internal company wallet, never by the client. For every DIDComm action, Arcform — not the developer — is the cryptographic actor of record.
Multi-layer proof-of-transit verification combining integrity checks, identity verdict resolution, and governance signer set validation. Five-boundary caching architecture for industrial-scale throughput.
Control plane for decentralised identity governance. Typed governance signals (proposal, vote, attestation, instruction), M-of-N threshold signing via SignerSet entities, and conditional XRPL anchoring.
Real-time event-driven alert pipeline. Entity automations detect governance changes and route structured Slack alerts to four domain-specific channels within seconds of the triggering event.
Chrome extension providing local-first verification, offline audit trails via IndexedDB, and live governance alerts via chrome.alarms polling — a companion for developers consuming the API.
Developer-facing interface for API key management, usage monitoring, and plan selection.
End-to-end sequence executed on API key creation
API Key Created
System generates api_key_id
Generate Keypair
Ed25519 signing + X25519 encryption keys created, stored encrypted
Generate DID
DID string + DID Document template + key references constructed
Activate DID
Sovereign wallet registers and anchors DID on-chain
Publish DID Document
Public keys, service endpoints, and routing metadata published
Map API Key → DID
api_key_id → did → keypair_id mapping stored
Return to Developer
Developer sees API key and usage counter — no DIDs, no keys, nothing cryptographic