The shape of a DID
An OpenPayload DID looks like this:did:<platform>:<Base58Address>. The platform is 1–32 lowercase ASCII letters or digits. The Base58 address is 16–96 characters using the Bitcoin Base58 alphabet.
openpayload is the default platform name, but compatible operators may choose another valid platform name. Preserve the complete identifier exactly when storing, comparing, signing, or sending it to an API.
When a DID appears inside a URL path, URL-encode it:
What a DID and its related records can contain
Directory reads associated with a DID can return:- Public verification keys used to check signatures
- Key-agreement keys used by clients when encrypting messages
- Service endpoints, such as compatible Relay, Cache, or Archive nodes
- Public aliases that are easier for people to recognize
- Registered devices and their lifecycle state
- Delivery constraints and an optional DID-scoped policy through their dedicated endpoints
- Version and update information
- Whether the identity has been deactivated
See a complete messaging DID document
Follow every relationship between verification keys, encryption keys, Relay discovery, and Cache authorization in one example.
Common uses
You might resolve a DID before you:- Encrypt a message for its recipient.
- Verify that a signed message came from the claimed sender.
- Find a compatible Relay, Cache, or Archive service.
- Check whether a device is active.
- Display a public alias.
- Decide whether the identity is still active.
DID URLs and key identifiers
A public key inside a DID document usually has an identifier formed by adding a fragment:# identifies a component inside the DID document. The complete value is called a DID URL. Do not remove the DID portion when passing a key identifier to an authorization endpoint.
What a Directory does
A Directory is a public gateway to OpenPayload identity data. It reads public state and accepts properly authorized updates. It does not need your private key and should never ask for it.Complete DID document
See a messaging-ready document with Relay, Cache, and Archive services.
Resolve a DID
Read a complete public record step by step.
Understand authorization
Learn how nonces, payloads, and signatures work.

