Status Lists
Revocation status lists of the issuers (IETF Token Status List) — public, no authentication, no personal data.
- Hosted issuer status lists (real network)
https://status.tamga.network- Identity attestation status lists (real network)
https://id.tamga.network/status- Sandbox (test network)
https://status.sandbox.tamga.network- Authentication
- None — public
- Definition
- OpenAPI 3.1 file · Guide
Every credential carries a status claim with a list address (uri) and an index (idx). The verifier downloads the list at that address and reads the two bits at the index: 0 valid, 1 revoked, 2 suspended. The list is a signed JWT (typ: statuslist+jwt, ES256, issuer's X.509 chain in x5c) with bits: 2 and a compressed bitstring; it is republished at a fixed interval (default 1 hour) even when nothing changed, so a download reveals nothing about any person. Each publication is recorded in the trust list anchor log (kind: status_list) with its content digest.
The list address is opaque — it does not encode the institution or a cohort. Take it from the credential; the base address of each issuer is status_list_base in the national trust list. @tamga-network/verifier does all of this for you (step D of the verification pipeline). The full profile is in SPEC-CRED-0003.
Endpoints
| Endpoint | Description |
|---|---|
GET /{list_id} | Get a status list token |
Authentication
No authentication: every endpoint is public.
Status lists
Download a status list token.
Get a status list token
/{list_id}Returns the latest signed Status List Token for the list. Check the signature against the issuer's certificate chain, that sub equals the address you requested, and exp (iat + 50 hours); then read the bits at the credential's index.
Authentication None — public
Parameters
| Name | In | Type | Description |
|---|---|---|---|
list_id required | path | string | Opaque list identifier — the last part of the status.status_list.uri in the credential. |
Accept | header | string | Always application/statuslist+jwt |
Responses
| Status | Description |
|---|---|
| 200 | Signed Status List Token (JWT); the payload is StatusListToken. |
| 404 | not_found — unknown list. |
Example
curl "https://status.tamga.network/88565603be702c85"eyJhbGciOiJFUzI1NiIsInR5cCI6InN0YXR1c2xpc3Qrand0IiwieDVjIjpbIuKApiJdfQ.eyJzdWIiOiLigKYifQ.…Objects
StatusListToken
Payload of the Status List Token (IETF Token Status List, Tamga profile).
| Field | Type | Description |
|---|---|---|
sub | string (uri) | The list address — exactly the uri in the credential. |
iss | string (uri) | The issuer. |
iat | integer | |
exp | integer | iat + 50 hours. |
ttl | integer | Seconds until the next publication. |
status_list | object | |
status_list.bits | integer | Always 2 |
status_list.lst | string | Compressed bitstring (base64url). |
Import the machine-readable definition into any OpenAPI tool to generate a client or send test requests: status-lists.openapi.yaml.