Deployment & Use Cases
The iSHARE Trust Framework allows flexibility in how the Authorisation Registry is implemented and operated. Depending on governance requirements, operational scale, and the structure of a data space, different deployment models can be adopted. This section describes a general overview of those models and illustrates how the AR is applied in practice across real data spaces.
Deployment models
The iSHARE framework does not prescribe a single deployment model for Authorisation Registries. Several patterns are used in practice, each suited to different governance and operational contexts:
Single AR as a shared service in a data space
A single AR serves all participants in a given data space. This is the simplest model and the easiest to govern collectively. It works well for tightly scoped data spaces with a defined membership and a shared governance body.

Figure 14: AR as a single shared service under governance authority
Distributed or federated AR
Multiple ARs operate within the same data space, each serving different participants or capability areas. Service Providers discover the applicable AR per capability. This model scales better for large or heterogeneous data spaces and allows specialised governance for different types of delegations.

Figure 15: Distributed or federated AR under the governance authority
Use Cases
The following examples illustrate how the Authorisation Registry is applied across real data spaces — what role it plays, and what value it provides to participants. See more use cases here.
1. DVU (Datastelsel Verduurzaming Utiliteit - Data System for Sustainability in Utility Buildings)
DVU enables trusted data sharing to support sustainability and energy optimisation of non-residential buildings, involving building owners, energy service providers, technology providers, and public authorities.
Role of the Authorisation Registry:
Stores and enforces delegation policies that govern which parties may access building and energy consumption data on behalf of data owners
Issues delegation evidence to Energy Companies, confirming that a Consumer has been authorised by the relevant Building Owner
Enables building owners to set, update, and revoke access rights at any time, maintaining control over sensitive energy data throughout the data sharing lifecycle
Value:
Allows building owners to share sensitive consumption data with confidence, knowing that access is governed and revocable
Removes the need for bilateral access agreements between every pair of participants
Supports scalable data sharing for energy optimisation, digital twin development, and CO2 reduction reporting
2. DMI (Dutch Metropolitan Innovations)
DMI develops and manages data infrastructure for smart, sustainable urbanisation and mobility, bringing together public authorities, infrastructure operators, and private organisations in a governed, federated data space.
Role of the Authorisation Registry:
Governs access control at every point in the DMI data flow, ensuring that only authorised parties can request and receive data
Stores delegation policies on behalf of Entitled Parties, enabling data owners to define access rights per participant, capability, or context
Works alongside AMdEX and the iSHARE governance layer to enforce compliance before any transaction is processed
Value:
Supports trusted collaboration across public and private stakeholders with fundamentally different mandates and risk profiles
Enables data owners ,including municipalities, to share data transparently and with full auditability
Reduces onboarding friction for new participants by providing a shared authorisation infrastructure rather than requiring per-relationship setup
Last updated