Secure access to eServices with ID-A on ID-One Cosmo
Our ID-A on ID-One Cosmo is an eServices applet designed to enable secure digital identity usage based on a physical ID card. It allows citizens to prove their identity and access online services using strong authentication and digital signatures, across multiple environments such as PCs, smartphones, or dedicated terminals.
Built for the identity ecosystem, our solution supports secure document usage throughout its lifecycle and benefits from the robustness of the ID-One Cosmo platform, ensuring trust, continuity, and future readiness for government and institutional services.
ID-A on ID-One Cosmo is also suitable for the logical access control needs of corporate cards.

Highest level of security certification
Our ID-A applet has been certified by Common Criteria, the most recognized certification standard, at an EAL5+ high-security level. It also meets the requirements for electronic signatures, enabling trusted digital transactions for sensitive eGovernment and institutional use cases.
State-of-the-art biometrics and cryptography
Our solution leverages the advanced cryptographic capabilities and biometric technologies of ID-One Cosmo. It supports strong authentication using face, fingerprint, and iris, ensuring a high level of security for digital access and identity verification.
Long-lasting and upgradable solution
Our ID-A applet is designed to remain secure and compliant over time. Thanks to IN Groupe’s JPatch remote upgrade mechanism, applets can be securely updated in the field without impacting user data, supporting long-term deployments and evolving regulatory requirements.
European Compliance
EU Cybersecurity Certification Scheme on Common Criteria (EUCC)
The European Commission has adopted the Commission Implementing Regulation establishing the EU Cybersecurity Certification Scheme on Common Criteria (EUCC).
The EUCC is the European Union cybersecurity certification scheme for ICT products. It defines harmonized security requirements based on the internationally recognized Common Criteria framework, helping to increase trust in digital products across the EU market. Certificates issued under the EUCC scheme are valid in all EU Member States.
EUCC certification within IN Groupe’s portfolio
IN Groupe’s portfolio includes products certified under the EUCC scheme. Certificates for these products are referenced on the ENISA website, in accordance with EU cybersecurity certification requirements.
For ID-A v1.1 on Cosmo X and Cosmo XE, the support period as described in Article 55 of the regulation (EU) 2019/881 is 5 years from the first Common Criteria certificate of the product. Disclosed vulnerabilities can be consult there: https://euvd.enisa.europa.eu/.
Product guides
Product secured configuration:
For each product, the secured configuration is the one covered by the Common Criteria certificates of the product. If the product is no more covered by a Common Criteria certificates, please contact IN Groupe to get more details about the product secured configuration.
Installation and deployment:
For installation, the following operation will be available to personalize the product, and make it ready for deployment : File management; Object management; Configuration of internal attributes; Configuration of the ADF for the access control policy; Other configuration of the ADF; PACE Personalisation; Audit of the applet Retrieve the Biometric Global Parameter data; PIN Sharing.
Operation:
In operational phase, the product will allow the owner to interface the product with its system for identification, authentication, and digital signature. Each password (such as PIN) shall respect complexity rules and remains known only by the user. The administrator will have to securely connect to the product in compliance with the administrator policy. All operation shall be done in compliancy with the cryptographic recommendation of the national organisations.
Maintenance:
The maintenance of the product will be managed as written in contract.











