QSCD | Giesecke+Devrient Mobile Security GmbH | STARCOS 3.7 eIDAS C1




Type of certificationQSCD | Certification of qualified signature and seal creation devices
SRC certificate registration numberSRC.00037.QSCD.03.2021
Valid from23 March 2021
Valid until31 December 2027
Certificate holderGiesecke+Devrient Mobile Security GmbH
Certified productSTARCOS 3.7 eIDAS C1
Test methodAccording to article 30 (3) a) of Regulation (EU) No. 910/2014, the certification was done on basis of a Common Criteria Evaluation against the Protection Profile CEN EN 419211-2:2013, which is listed in the Commission Implementing Decision (EU) 2016/650 of 25 April 2016.
The audit includes
  • the Common Criteria Evaluation of the product “STARCOS 3.7 eIDAS C1” according to the following Protection Profiles with Evaluation Assurance Level (EAL) 4+ (EAL 4 with the augmentation package AVA_VAN.5):
    • “Protection profiles for secure signature creation device, Part 2: Device with key generation” (EN 419211-2:2013) and
  • the certification of the product according to article 30 (3) a) of Regulation (EU) No. 910 / 2014 by the certification body of SRC notified by the Federal Network Agency to the EU Commission.
DescriptionThe product “STARCOS 3.7 eIDAS C1” is a qualified signature / seal creation device (QSCD). The card is a pure contact based smart card.

The product consists (among other things) of the semiconductor SLC52GDA448 from Infineon, the card operating system STARCOS 3.7 COS GKV C2 and an application for the generation of qualified signatures and seals.

SRC confirms that the product “STARCOS 3.7 eIDAS C1” of Giesecke + Devrient Mobile Security GmbH fulfills the requirements of annex II of Regulation (EU) No. 910/2014 (eIDAS-Regulation) for qualified signature / seal creation devices.