This app is part of Credimi Extras. Automate all your EUDI testing with Credimi

it_broken_credimi_qeaa_trust_registry_infra - Version 1 ⚠ Broken

QEAA ProvidersETSI TS 119 612XML / XAdES-B-B

This is the latest version. It is also served at the stable URLs /lists/it_broken_credimi_qeaa_trust_registry_infra/latest/trusted-list.xml and /lists/it_broken_credimi_qeaa_trust_registry_infra/latest/trusted-list.sha2.

⚠ Intentionally broken test fixture. This version was generated with 1 deliberate defect: broken_xades_signature. A failing Trust Inspector verdict below is the expected outcome, not a publication error.

Negative fixture

Fixture modeintentionally-broken
StandardTS 119 612
FormatXML / XAdES-B-B
Mutation stagesafter signing
Expected Inspector failuressignature.cryptographic_verification_result
Actual Inspector failuressignature.cryptographic_verification_result: XMLDSig cryptographic verification failed with xmlsec1.
Matchedsignature.cryptographic_verification_result
Expected but not reportednone
Additional failuresnone
Expected local failureslocal.xades.signature
Actual local failureslocal.xades.signature
Expected locally but not reportednone

Mutations

DefectStageStatusDetail
broken_xades_signatureafter signingappliedEdited the signed SchemeName text, so the document reference digest no longer matches.

Cascading failures are expected: one mutation can trip several rules. Additional failures are listed rather than hidden so a drifting Inspector rule set stays visible. An Inspector result that is unavailable, not applicable or empty is never counted as a pass.

Trust not evaluated. Signatures are verified cryptographically but signer trust is not evaluated by this tool.

List Information

Trusted Listit_broken_credimi_qeaa_trust_registry_infra
TSL sequence number1
TSL version identifier6
TSL typehttp://uri.etsi.org/TrstSvc/TrustedList/TSLType/EUgeneric
Status determinationhttp://uri.etsi.org/TrstSvc/TrustedList/StatusDetn/EUappropriate
Scheme operatorBroken Credimi QEAA Trust Registry Infrastructure
Scheme nameIT:BROKEN CREDIMI - QEAA Providers (tampered after signing)
Scheme territoryIT
Historical information period65535
Issued2026-08-05T10:39:24Z
Next update2027-02-05T10:39:24Z

Signature & Validation

Signature valid❌ No
ETSI schema valid✅ Yes
Signer trustnot_evaluated — this publisher builds no certification path and makes no trust decision
Signatureinvalid: The document digest does not match: the document changed after it was signed.
Signature algorithmhttp://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256
Signing time2026-08-05T10:39:24Z
FreshnessNextUpdate is later than the issue time and has not passed

Signing Certificate

SubjectC=IT, O=Broken Credimi QEAA Trust Registry Infrastructure, CN=Broken Credimi QEAA Trust Registry Infrastructure Trusted List S
IssuerC=IT, O=Broken Credimi QEAA Trust Registry Infrastructure, CN=Broken Credimi QEAA Trust Registry Infrastructure Trusted List S
Valid fromAug 5 10:38:36 2026 GMT
Valid toAug 5 10:38:36 2027 GMT
Certificate SHA-256de35e2c35c2cd7707cf85d8023aedcf057161e48408fbee2bfc361f51ce54fc1
Certificate profilemeets the TS 119 612 Scheme Operator profile

Trust Inspector

Fail

Standard assessedTS 119 612
Detected artifactts119612_xml_tsl
TS 119 612 applicabilityapplicable
Conformance levelnon_conformant
Service typeshttp://uri.etsi.org/TrstSvc/Svctype/EAA/Q
Checks120 pass, 1 fail, 2 warn, 11 n/a, 7 not checked
Evaluated2026-08-05T10:39:24.375Z
Inspectorhttps://trust-inspector.credimi.io
  • signature.cryptographic_verification_result: XMLDSig cryptographic verification failed with xmlsec1.

Entities & Services

Trust Service Provider Name (TSPName)Services
Broken Fixture Provider
  • Broken Fixture Provider Issuance
    ServiceType: http://uri.etsi.org/TrstSvc/Svctype/EAA/Q

1 trusted service provider(s), 1 service(s). Allowed profiles: qeaa-providers

Downloads

XML SHA-256 digest Inspector report

The XML is served as application/vnd.etsi.tsl+xml; its XAdES-B-B signature is inside the document. The .sha2 file is the SHA-256 of the exact published XML bytes. Publication manifest.

Artifact Hashes

XML SHA-2567e875cb3fdadd0339ebc6a62d05394ecb174f274e5f5ad4b1e6b1e606dddf459
.sha2 published7e875cb3fdadd0339ebc6a62d05394ecb174f274e5f5ad4b1e6b1e606dddf459 — matches the XML