Self-Sovereign Identity Using WalletConnect for Issuing, Verifying, and Revoking Academic Credentials

Authors

  • Ardi Birawinata Universitas Bina Darma
  • Siti Sauda

DOI:

10.33395/sinkron.v10i4.16777

Keywords:

Blockchain, Decentralized Identifier, Passwordless Authentication, Self-Sovereign Identity, Verifiable Credentials, WalletConnect

Abstract

Student data at vocational high schools is managed solely by the schools, so external parties must contact the school to confirm a record, while account access still relies on passwords vulnerable to credential theft. This study implements a Self-Sovereign Identity system for student academic data at SMK Bina Sriwijaya Indonesia Palembang that combines passwordless WalletConnect authentication with credential issuance, verification, and revocation anchored on a public blockchain. Following the Design Science Research Methodology, the artefact was built as a web prototype using React.js, Express.js, and PostgreSQL, connected to MetaMask and to a CredentialRegistry smart contract on Ethereum Sepolia. Users authenticate through an EIP-191 challenge-response signature, student identity is expressed as a did:ethr Decentralized Identifier, and academic data is issued as W3C Verifiable Credentials whose canonicalised Keccak-256 hash and status are recorded on chain, while the complete record remains off chain. Evaluation covered four levels: eighteen black-box functional cases, thirty smart contract unit tests, seventeen backend tests, and fourteen security cases at the authentication and verification boundary, plus gas measurement of every state-changing function on Sepolia. All seventy-nine cases produced the expected output, which demonstrates functional conformance and correct access control rather than a general guarantee of security, since independent penetration testing and a formal contract audit were not performed. Within these limits, a verifier can check authenticity, issuer, and validity independently, without confirmation from the school and without exposing personal data on a public blockchain.

GS Cited Analysis

Downloads

Download data is not yet available.

References

Ardiansyah, Risnita, & M.Syahran Jailani. (2023). Teknik pengumpulan data dan instrumen penelitian ilmiah pendidikan pada pendekatan kualitatif dan kuantitatif. IHSAN: Jurnal Pendidikan Islam, 1(2), 1–9. https://doi.org/10.61104/ihsan.v1i2.57

Butincu, C. N., & Alexandrescu, A. (2024). Design Aspects of Decentralized Identifiers and Self-Sovereign Identity Systems. IEEE Access, 12, 60928–60942. https://doi.org/10.1109/ACCESS.2024.3394537

Chan, W., Gai, K., Yu, J., & Zhu, L. (2025). Blockchain-Assisted Self-Sovereign Identities on Education: A Survey. Blockchains, 3(1), 3. https://doi.org/10.3390/blockchains3010003

Chotikakamthorn, N., Mi San, A., & Sathitwiriyawong, C. (2024). On-Chain Verifiable Credential with Applications in Education. ECTI Transactions on Computer and Information Technology, 18(3), 342–355. https://doi.org/10.37936/ecti-cit.2024183.256091

Čučko, Š., & Turkanović, M. (2021). Decentralized and Self-Sovereign Identity: Systematic Mapping Study. IEEE Access, 9, 139009–139027. https://doi.org/10.1109/ACCESS.2021.3117588

Dasmen, R. N., Rasmila, R., Widodo, T. L., Kundari, K., & Farizky, M. T. (2023). PENGUJIAN PENETRASI PADA WEBSITE ELEARNING2.BINADARMA.AC.ID DENGAN METODE PTES (PENETRATION TESTING EXECUTION STANDARD). Jurnal Komputer Dan Informatika, 11(1), 91–95. https://doi.org/10.35508/jicon.v11i1.9809

Fartitchou, M., Lamaakal, I., Makkaoui, K. El, Allali, Z. El, & Maleh, Y. (2025). BlockMEDC: Blockchain Smart Contracts System for Securing Moroccan Higher Education Digital Certificates. IEEE Access, 13, 39152–39175. https://doi.org/10.1109/ACCESS.2025.3546177

Flamini, A., Sciarretta, G., Scuro, M., Sharif, A., Tomasi, A., & Ranise, S. (2024). On cryptographic mechanisms for the selective disclosure of verifiable credentials. Journal of Information Security and Applications, 83. https://doi.org/10.1016/j.jisa.2024.103789

Grech, A., Sood, I., & Ariño, L. (2021). Blockchain, Self-Sovereign Identity and Digital Credentials: Promise Versus Praxis in Education. Frontiers in Blockchain, 4. https://doi.org/10.3389/fbloc.2021.616779

Hoops, F., Muhle, A., Matthes, F., & Meinel, C. (2023). A Taxonomy of Decentralized Identifier Methods for Practitioners. Proceedings - 2023 IEEE International Conference on Decentralized Applications and Infrastructures, DAPPS 2023, 57–65. Institute of Electrical and Electronics Engineers Inc. https://doi.org/10.1109/DAPPS57946.2023.00017

Kersic, V., Vidovic, U., Vrecko, A., Domajnko, M., & Turkanovic, M. (2023). Orchestrating Digital Wallets for On- and Off-Chain Decentralized Identity Management. IEEE Access, 11, 78135–78151. https://doi.org/10.1109/ACCESS.2023.3299047

Mazzocca, C., Acar, A., Uluagac, S., Montanari, R., Bellavista, P., & Conti, M. (2025). A Survey on Decentralized Identifiers and Verifiable Credentials. IEEE Communications Surveys and Tutorials, 27(6), 3641–3671. https://doi.org/10.1109/COMST.2025.3543197

Peffers, K., Tuunanen, T., Rothenberger, M. A., & Chatterjee, S. (2007). A design science research methodology for information systems research. Journal of Management Information Systems, 24(3), 45–77. https://doi.org/https://doi.org/10.2753/MIS0742-1222240302

Petcu, A., Pahontu, B., Frunzete, M., & Stoichescu, D. A. (2023). A Secure and Decentralized Authentication Mechanism Based on Web 3.0 and Ethereum Blockchain Technology. Applied Sciences (Switzerland), 13(4). https://doi.org/10.3390/app13042231

Robles-Carrillo, M. (2024). Digital identity: an approach to its nature, concept, and functionalities. International Journal of Law and Information Technology, 32, 19. https://doi.org/https://doi.org/10.1093/ijlit/eaae019

Román-García, F., Hernández-Serrano, J., & Esparza, O. (2024). DA2Wa: A secure pairing protocol between a DApp and a wallet for the blockchain scenario. Computer Communications, 224, 1–15. https://doi.org/10.1016/j.comcom.2024.05.019

Sarwar, M. I., Maghrabi, L. A., Khan, I., Naith, Q. H., & Nisar, K. (2023). Blockchain: A Crypto-Intensive Technology - A Comprehensive Review. IEEE Access, 11, 141926–141955. https://doi.org/10.1109/ACCESS.2023.3342079

Sauda, S., & Barokah, M. (2022). PENERAPAN NODEJS DAN POSTGRESQL SEBAGAI BACKEND PADA APLIKASI ECOMMERCE LOCALLA. Retrieved from https://ejournal.unma.ac.id/index.php/infotech/article/view/2944

Schardong, F., & Custódio, R. (2022, August 1). Self-Sovereign Identity: A Systematic Review, Mapping and Taxonomy. Sensors, Vol. 22. MDPI. https://doi.org/10.3390/s22155641

Silaghi, D. L., Artenie, A. C., & Popescu, D. E. (2025). Optimizing Teacher Portfolio Integrity with a Cost-Effective Smart Contract for School-Issued Teacher Documents. Computers, 14(9). https://doi.org/10.3390/computers14090395

Sporny, M., Longley, D., Chadwick, D., & Herman, I. (2025). Verifiable Credentials Data Model v2.0. Retrieved from https://www.w3.org/TR/2025/REC-vc-data-model-2.0-20250515/

Sporny, M., Longley, D., Sabadello, M., Reed, D., Steele, O., & Allen, C. (2022). Decentralized Identifiers (DIDs) v1.0: Core Architecture, Data Model, and Representations. Retrieved from https://www.w3.org/TR/2022/REC-did-core-20220719/

Sultana, S. A., Rupa, C., Malleswari, R. P., & Gadekallu, T. R. (2023). IPFS-Blockchain Smart Contracts Based Conceptual Framework to Reduce Certificate Frauds in the Academic Field. Information (Switzerland), 14(8). https://doi.org/10.3390/info14080446

Tuunanen, T., Winter, R., & vom Brocke, J. (2024). DEALING WITH COMPLEXITY IN DESIGN SCIENCE RESEARCH: A METHODOLOGY USING DESIGN ECHELONS1. MIS Quarterly: Management Information Systems, 48(2), 427–458. https://doi.org/10.25300/MISQ/2023/16700

Downloads


Crossmark Updates

How to Cite

Birawinata, A., & Sauda, S. (2026). Self-Sovereign Identity Using WalletConnect for Issuing, Verifying, and Revoking Academic Credentials. Sinkron : Jurnal Dan Penelitian Teknik Informatika, 10(4), 2185-2197. https://doi.org/10.33395/sinkron.v10i4.16777