5-MINUTE DIAGNOSTIC

Identity Infrastructure
Sovereignty Assessment

The legal jurisdiction of your identity infrastructure may conflict with the laws governing your operations. This diagnostic evaluates your actual sovereignty posture across five critical dimensions and quantifies your regulatory readiness under NIS2 and DORA.

Your responses are processed entirely in your browser. No data is stored or transmitted.

What this measures

Five dimensions that determine whether your identity infrastructure is genuinely sovereign, or merely marketed as such.

01

Jurisdictional Alignment

Legal exposure to foreign data demands

02

Technical Sovereignty

Cryptographic control over credential data

03

Application Coverage

Governance across your full application estate

04

Operational Independence

Resilience independent of foreign infrastructure

05

Regulatory Architecture

NIS2, DORA, and GDPR compliance readiness

GREEN · 45–54

Sovereignty-ready. Infrastructure meets jurisdictional, technical, and operational requirements.

AMBER · 30–44

Action required. Gaps exist that need remediation planning within a defined timeline.

RED · 0–29

Critical risk. Structural exposure that cannot be remediated without a change of provider.

A score of zero on any critical-failure question automatically triggers RED status, regardless of total score.