it_broken_credimi_qeaa_trust_registry_infra - Version 1 ⚠ Broken
QEAA ProvidersETSI TS 119 612XML / XAdES-B-B
This is the latest version. It is also served at the stable URLs
/lists/it_broken_credimi_qeaa_trust_registry_infra/latest/trusted-list.xml and
/lists/it_broken_credimi_qeaa_trust_registry_infra/latest/trusted-list.sha2.
⚠ Intentionally broken test fixture.
This version was generated with 1 deliberate defect: broken_xades_signature.
A failing Trust Inspector verdict below is the expected outcome, not a
publication error.
Negative fixture
| Fixture mode | intentionally-broken |
| Standard | TS 119 612 |
| Format | XML / XAdES-B-B |
| Mutation stages | after signing |
| Expected Inspector failures | signature.cryptographic_verification_result |
| Actual Inspector failures | signature.cryptographic_verification_result: XMLDSig cryptographic verification failed with xmlsec1. |
| Matched | signature.cryptographic_verification_result |
| Expected but not reported | none |
| Additional failures | none |
| Expected local failures | local.xades.signature |
| Actual local failures | local.xades.signature |
| Expected locally but not reported | none |
Mutations
| Defect | Stage | Status | Detail |
|---|
broken_xades_signature | after signing | applied | Edited the signed SchemeName text, so the document reference digest no longer matches. |
Cascading failures are expected: one mutation can trip
several rules. Additional failures are listed rather than hidden so a drifting
Inspector rule set stays visible. An Inspector result that is unavailable,
not applicable or empty is never counted as a pass.
Trust not evaluated. Signatures are verified cryptographically but signer trust is not evaluated by this tool.
List Information
| Trusted List | it_broken_credimi_qeaa_trust_registry_infra |
| TSL sequence number | 1 |
| TSL version identifier | 6 |
| TSL type | http://uri.etsi.org/TrstSvc/TrustedList/TSLType/EUgeneric |
| Status determination | http://uri.etsi.org/TrstSvc/TrustedList/StatusDetn/EUappropriate |
| Scheme operator | Broken Credimi QEAA Trust Registry Infrastructure |
| Scheme name | IT:BROKEN CREDIMI - QEAA Providers (tampered after signing) |
| Scheme territory | IT |
| Historical information period | 65535 |
| Issued | 2026-08-05T10:39:24Z |
| Next update | 2027-02-05T10:39:24Z |
Signature & Validation
| Signature valid | ❌ No |
| ETSI schema valid | ✅ Yes |
| Signer trust | not_evaluated — this publisher builds no certification path and makes no trust decision |
| Signature | invalid: The document digest does not match: the document changed after it was signed. |
| Signature algorithm | http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256 |
| Signing time | 2026-08-05T10:39:24Z |
| Freshness | NextUpdate is later than the issue time and has not passed |
Signing Certificate
| Subject | C=IT, O=Broken Credimi QEAA Trust Registry Infrastructure, CN=Broken Credimi QEAA Trust Registry Infrastructure Trusted List S |
| Issuer | C=IT, O=Broken Credimi QEAA Trust Registry Infrastructure, CN=Broken Credimi QEAA Trust Registry Infrastructure Trusted List S |
| Valid from | Aug 5 10:38:36 2026 GMT |
| Valid to | Aug 5 10:38:36 2027 GMT |
| Certificate SHA-256 | de35e2c35c2cd7707cf85d8023aedcf057161e48408fbee2bfc361f51ce54fc1 |
| Certificate profile | meets the TS 119 612 Scheme Operator profile |
Trust Inspector
Fail
| Standard assessed | TS 119 612 |
| Detected artifact | ts119612_xml_tsl |
| TS 119 612 applicability | applicable |
| Conformance level | non_conformant |
| Service types | http://uri.etsi.org/TrstSvc/Svctype/EAA/Q |
| Checks | 120 pass, 1 fail, 2 warn, 11 n/a, 7 not checked |
| Evaluated | 2026-08-05T10:39:24.375Z |
| Inspector | https://trust-inspector.credimi.io |
- signature.cryptographic_verification_result: XMLDSig cryptographic verification failed with xmlsec1.
Entities & Services
| Trust Service Provider Name (TSPName) | Services |
| Broken Fixture Provider |
- Broken Fixture Provider Issuance
ServiceType: http://uri.etsi.org/TrstSvc/Svctype/EAA/Q
|
1 trusted service provider(s), 1 service(s). Allowed profiles: qeaa-providers
Downloads
XML
SHA-256 digest
Inspector report
The XML is served as application/vnd.etsi.tsl+xml; its XAdES-B-B
signature is inside the document. The .sha2 file is the SHA-256
of the exact published XML bytes. Publication
manifest.
Artifact Hashes
| XML SHA-256 | 7e875cb3fdadd0339ebc6a62d05394ecb174f274e5f5ad4b1e6b1e606dddf459 |
| .sha2 published | 7e875cb3fdadd0339ebc6a62d05394ecb174f274e5f5ad4b1e6b1e606dddf459 — matches the XML |