Identity: The Kill Switch For API-Driven Digital Sovereignty

A talk given by Curity's identity specialist Daniel Lindau at the 2025 Platform Summit in Stockholm, Sweden.

As more digital services are built API-first, powering everything from healthcare to finance to public sector systems, APIs have become the connective tissue of digital sovereignty. These APIs are only as secure and sovereign as the identity systems that govern them.

This talk explores how identity acts as a kill switch in API-driven systems: whoever controls access controls everything. As geopolitical tensions rise, reliance on third-party API gateways, identity providers, or cloud-hosted IAM services introduces new jurisdictional and systemic risk.

We’ll look at:

  • Why centralized API identities and opaque access flows expose national or sector-specific digital systems to external coercion.
  • The role of open standards and wallet-based identities in restoring control.
  • How owning your identity layer and the API authorization architecture around it is key to achieving digital autonomy.

Call for speakers for Platform Summit 2026 open - apply now: https://nordicapis.com/call-speakers/ Check the Nordic APIs website and blog: https://nordicapis.com/

More Live presentations videos

Ghosts, Zombies, and Robots: Handing Off Control to the Non-Humans
How to Design Secure MCP Deployments
MCP Client — Just Another OAuth Client?
Panel Discussion: API Security in the Age of AI
How to Build a Fortress with the Security of a Tent
Who Needs That FAPI Thing, Anyway?
Panel Discussion: API Authorization
The Swedish Chef Would Be Proud: Cooking up a Secure API in Minutes – Instructions Included
OAuth Well Played – Mods and Combos for the Cloud Native API Security Game
Show Me Your Wallet to Tell Me Who You Are - Using Verifiable Credentials with OAuth
Ditch the Browser, Native API-Driven App Authentication with Passkeys
Military-Grade Security for APIs
Decentralized Identities Changes Everything, Even Your APIs
Addressing Top API Security Risks
Browserless OAuth Flows in Mobile Apps Using a Hypermedia API
OAuth and OpenID Connect - What's next?
Curity on ProgrammableWeb's Developers Rock Podcast
OAuth Tokens As Your Identity API
OAuth Claims Ontology: Using Claims in OAuth and How They Relate to Scopes
Jacob Has a Horse, Says Travis – a Tale of Truths In a Microservice Architecture
Scalable API Security Using OAuth
Financial Grade APIs Using OAuth and OpenID Connect
Security Is a Concern, Let’s Make It an Enabler
Securing APIs in a Cloud Native Environment Using OAuth
Securing APIs and Microservices with OAuth and OpenID Connect
OAuth and OpenID Connect for PSD2 and Third-Party Access