Skip to content

Status Lists ​

Revocation status lists of the issuers (IETF Token Status List) — public, no authentication, no personal data.

Hosted issuer status lists (real network)
https://status.tamga.network
Identity attestation status lists (real network)
https://id.tamga.network/status
Sandbox (test network)
https://status.sandbox.tamga.network
Authentication
None — public
Definition
OpenAPI 3.1 file · Guide

Every credential carries a status claim with a list address (uri) and an index (idx). The verifier downloads the list at that address and reads the two bits at the index: 0 valid, 1 revoked, 2 suspended. The list is a signed JWT (typ: statuslist+jwt, ES256, issuer's X.509 chain in x5c) with bits: 2 and a compressed bitstring; it is republished at a fixed interval (default 1 hour) even when nothing changed, so a download reveals nothing about any person. Each publication is recorded in the trust list anchor log (kind: status_list) with its content digest.

The list address is opaque — it does not encode the institution or a cohort. Take it from the credential; the base address of each issuer is status_list_base in the national trust list. @tamga-network/verifier does all of this for you (step D of the verification pipeline). The full profile is in SPEC-CRED-0003.

Endpoints ​

EndpointDescription
GET /{list_id}Get a status list token

Authentication ​

No authentication: every endpoint is public.

Status lists ​

Download a status list token.

Get a status list token ​

GET/{list_id}

Returns the latest signed Status List Token for the list. Check the signature against the issuer's certificate chain, that sub equals the address you requested, and exp (iat + 50 hours); then read the bits at the credential's index.

Authentication None — public

Parameters ​

NameInTypeDescription
list_id requiredpathstringOpaque list identifier — the last part of the status.status_list.uri in the credential.
AcceptheaderstringAlways application/statuslist+jwt

Responses ​

StatusDescription
200Signed Status List Token (JWT); the payload is StatusListToken.
404not_found — unknown list.

Example ​

bash
curl "https://status.tamga.network/88565603be702c85"
text
eyJhbGciOiJFUzI1NiIsInR5cCI6InN0YXR1c2xpc3Qrand0IiwieDVjIjpbIuKApiJdfQ.eyJzdWIiOiLigKYifQ.…

Objects ​

StatusListToken ​

Payload of the Status List Token (IETF Token Status List, Tamga profile).

FieldTypeDescription
substring (uri)The list address — exactly the uri in the credential.
issstring (uri)The issuer.
iatinteger
expintegeriat + 50 hours.
ttlintegerSeconds until the next publication.
status_listobject
status_list.bitsintegerAlways 2
status_list.lststringCompressed bitstring (base64url).

Import the machine-readable definition into any OpenAPI tool to generate a client or send test requests: status-lists.openapi.yaml.