eeID: Secure and Simple Identity Verification

eeID is a digital identity verification service developed by the Estonian Internet Foundation. It helps users prove who they are online quickly, securely, and conveniently.

With eeID, users can verify their identity using trusted methods such as ID-card, Mobile-ID, Smart-ID, and passkeys. eeID makes strong identity verification easier to use for organizations of all sizes in Estonia and internationally.

eeID benefits

eeID helps online services confirm that the person logging in or using a service is really who they claim to be.

This is useful whenever it is important to know who is behind a user account. For example when accessing an e-service, signing in to a portal, placing an order, or completing another important action online.

For end users, eeID means:

  • stronger security

  • easier sign-in

  • a smoother user experience

eeID is built on the principles of strong and secure digital identity verification and is inspired by Estonia’s public-sector authentication service TARA.

User identification with eeID

Using eeID is simple and is based on the principles of similar services.

1. Choose a verification method. When a service uses eeID, users are shown the available identity verification options, such as ID-card, Mobile-ID, Smart-ID, or passkey. The exact methods depend on the service provider.

2. Confirm your identity. Users follow the steps on screen. Depending on the method, this may include entering a PIN, confirming with biometrics, or completing another secure action.

3. Review your details. After successful verification, eeID displays the identified user data for confirmation. If something is incorrect, the process can be cancelled.

Users can stop the verification process at any time.

Authentication with eeID

eeID can also be used to support user authentication in online services.

After the first successful identity check for registering for a user, the service provider may allow the user to create a passkey for future logins. This makes returning to the service faster and easier, while maintaining a high level of security.

The result is a login experience that is more secure, simple and does not require passwords where supported.

Why eeID service?

  • Passwordless convenience. eeID supports passwordless authentication methods, reducing the need to create, remember, and manage passwords.
  • Trusted security. Strong identity verification helps protect user data and lowers the risk of misuse, fraud, and identity theft.
  • Familiar user methods. Users can sign in with well-known solutions such as ID-card, Mobile-ID, Smart-ID, and more.
  • International reach. eeID can support both local and international identity verification methods, making it suitable for services with users across different markets.

Passwordless authentication with passkeys

eeID supports passkey technology, enabling passwordless authentication where the service provider has made it available.

After the initial identity check, a passkey can be created and linked to the user’s device, for example through biometrics. Future logins can then be completed quickly and securely without entering a password.

For users, this means that there is no need to create and remember passwords, as well as change them on a regular basis. It also helps to lower phishing risk and gives faster access to services.

Passkeys offer a secure and convenient alternative to traditional passwords. Because of this, passkeys have been gaining popularity.

How is personal data used?

eeID processes personal data to verify identity, enable secure authentication, ensure service functionality, and help prevent fraud and misuse.

What data may be processed?

Depending on the service and the verification method used, eeID may process:

  • personal identification code

  • first and last name

  • date of birth

  • country

  • document used for identification and its validity period

  • authentication certificate data

eeID may also process data generated during authentication, such as:

  • authentication method used

  • date and time

  • authentication result

Where necessary, service providers may also collect contact details based on their own service terms. To get an overview of their terms and conditions, please refer to the specific service provider.

Why is this data processed?

Personal data is used to:

  • verify identity

  • enable secure authentication

  • resolve technical issues

  • prevent and investigate fraud, identity theft, and security incidents

  • ensure the service works as intended

Data is processed only to the extent necessary for the service to function.

Who may receive the data?

Data is shared only to the minimum extent necessary. Depending on the authentication method, user data may also be processed by third-party identity and authentication providers, such as ID-card, Mobile-ID, Smart-ID, or video identification service providers.

eeID provides the technical interface and facilitates the exchange of data between the relevant parties. Third-party providers process personal data according to their own terms.

How long is data retained?

Personal data is retained only for as long as necessary to provide the service, ensure security, and meet legal obligations.

Users have the right to:

  • receive information about how their data is processed

  • access their personal data

  • request deletion

  • restrict processing

  • object to processing

To exercise these rights, please contact info@internet.ee.

Additional Documents

eeID Terms of Use
pdf, 240 kb
eeID Data Protection Terms
pdf, 210 kb
eeID Privacy Principles for Data Subjects
pdf, 96 kb