About Profile Sentinel
About Profile Sentinel
Profile Sentinel is the eSIM profile design and qualification platform from IDEMIA Secure Transactions. It decodes, checks and compares SAIP profiles against the published standards, and keeps the profile, the evidence and the reasoning connected — from first design to expert review.
This page describes what the platform does, how conformance is assessed and expressed, and how access and data are protected. The platform itself is available to authorised users only; if you need an account, use the request-access page.
What you can do
The platform is organised around six working areas:
- Profile Design Studio — design, edit, validate and generate a profile, from a blank canvas or an imported baseline.
- Profile Cockpit — analyse one profile in depth: the decoded file system, applications, services and security attributes.
- Profile Compliance — check a profile against the clause-anchored conformance catalogue and export the findings as a report.
- Profile Delta — compare two profiles and see precisely what changed.
- Knowledge Base — browse and search curated standards knowledge: documents, topics, files and the checks that cite them.
- Clause — ask the built-in assistant about findings, decoded objects and standards clauses, grounded in your analysis context. Voice input works through your operating system's dictation into the question field; Profile Sentinel has no in-app microphone and never records audio.
How conformance is assessed
Every check in the conformance catalogue is anchored to a specific clause of a published standard. A finding always names the clause it was assessed against — the platform reports that a profile conforms or does not conform to clause X of standard Y, never a bare pass or fail.
Each check resolves to one of five outcomes:
- Conforms — the profile satisfies the cited clause.
- Does not conform — the profile contradicts the cited clause; the finding carries the evidence and the clause reference.
- Not applicable — the cited clause does not apply to this profile.
- Not evaluated — the check could not be assessed for this profile; the reason is stated.
- Observation — a point worth expert attention that is not a conformance failure.
The catalogue currently carries 262 checks anchored to clauses across 17 standards documents (TCA, 3GPP, ETSI, GlobalPlatform, ISO/IEC and related bodies). It grows through a governed authoring process with independent expert review.
Diagnostic analysis — not an official certification.
Security and access
Access to Profile Sentinel is granted by an authorised IDEMIA administrator, and the same protections apply to every account:
- Authorised users only — access is limited to approved Profile Sentinel accounts, each tied to a named individual.
- Protected sessions — sign-in and session controls help protect customer and profile data.
- Full traceability — Security-relevant access activity is recorded for audit purposes.
The detailed security configuration is maintained as an internal engineering record and is deliberately not published on this page.
Data protection
- Your uploads stay yours. An expert sees their own uploaded profiles and analyses; platform administrators hold a wider operational view for support and supervision.
- Validated intake. Uploaded files are checked before analysis — accepted format, size and filename — and a rejected upload is never analysed.
- Guarded values. Values decoded from a profile are visible only to signed-in, authorised users — scoped to the profile's owner and platform administrators — and never appear on public pages or in error messages.
- Traceable analyses. Every analysis records the exact version of the conformance catalogue that produced it, so a report can be re-read and challenged months later.
- Recorded activity. Administrative, governance and security-relevant actions are recorded in the platform's audit trail.
Roles and governance
The platform uses three roles — internal ids user,
supervisor and admin:
- User — sign in, upload profiles, run analyses, read findings and reports, and submit improvement suggestions.
- Supervisor — everything a User can do, plus review of submitted improvement suggestions. Supervisors do not access the admin console.
- Admin — full platform administration through the Admin console: user records, role assignments, invitations and licence management.
Suggestions from users are reviewed by supervisors; changes to the conformance catalogue itself ship only through a governed authoring process with independent expert review. Every administrative and governance action is recorded in the platform's audit trail.
Scope and boundaries
- Accepted input. SAIP profile content as
text — ASN.1 value notation or hex-encoded profile packages
(
.asn,.asn1,.txt,.hex). Binary files are not accepted. - Authorised material only. Upload only profiles you are authorised to analyse.
- Read-only analysis. The platform never modifies an uploaded profile; analysis is read-only, and generated artefacts are always new files.