Self-Sovereign Identity | Book Review
Your driver's license already does selective disclosure badly.
Self-Sovereign Identity shows what it looks like done right.
In episode 25 of the Bitlemmas book review series, Watson, b sovereign, and Jose dig into Self-Sovereign Identity by Alex Preukschat and Drummond Reed, a guide to decentralized digital identity and verifiable credentials, often shortened to SSI. The book's starting point: most of what gets called digital identity online is really just an identifier controlled inside someone else's database, whether that's a siloed account and password or a federated login through a large identity provider like Google. In both cases, the practical control point sits outside the person.
The hosts trace the book's path from face to face trust, to institution issued identifiers, to account based logins, to federated single sign on, and finally to peer controlled digital relationships built on decentralized identifiers, or DIDs, and verifiable credentials held in a personal wallet. Along the way they work through the book's four counterintuitive truths: identity is not your account, the less you disclose the more useful identity becomes, decentralization is a relationship model, and cryptography is necessary but governance is what actually lets trust scale.
The episode spends real time on selective disclosure (proving you're over 21 without handing over your home address), the difference between an identifier and an identity, pairwise DIDs and how they stop platforms from correlating your activity across relationships, and why a governance framework, not just a cryptographic signature, is what lets a verifier trust an issuer they've never met. The back half runs a choke point to exit analysis for builders: the account landlord, the shared password, issuer by issuer trust, the custodial recovery trap, and the governance framework itself as a potential gatekeeper, each with the exit pattern SSI proposes. The hosts close with a set of practical questions for anyone building identity products: does the user know which relationship they're acting in, can they prove only what's needed, and can they leave a provider without losing their identity.
Visit bitlemmas.com for more and to leave feedback in the comments.