eIDAS 2.0 came into effect on 20 May 2024, when the revised regulation was published in the Official Journal of the European Union. Member States have until 2026 to make European Digital Identity (EUDI) Wallets available to their citizens, residents, and businesses. For most organizations, this means the window to prepare is already open and the clock is ticking.

The regulation does not just update a few technical rules. It fundamentally reshapes how digital identity works across Europe, who is responsible for it, and which sectors must accept it. This article walks through the most important questions organizations are asking right now.

What has changed since the original eIDAS regulation?

The original eIDAS regulation, in force since 2016, created a framework that allowed EU Member States to notify and recognize each other’s national electronic ID systems. Since 2018, any notified scheme had to be accepted across the EU. However, participation was voluntary. There was no obligation for every country to create an eID, and no requirement for private sector organizations to accept them. The result was a fragmented landscape with significant differences between Member States.

eIDAS 2.0 addresses these gaps directly. The key changes include:

  • Universal availability: Every Member State must now provide a European Digital Identity Wallet to all citizens, residents, and businesses who want one.
  • Private sector inclusion: For the first time, the regulation extends to private organizations. Large online platforms and service providers in certain sectors are required to accept the EUDI Wallet.
  • User control and privacy: Wallet users decide exactly what data they share and with whom. Only the minimum necessary information is disclosed, reducing the risk of personal profiling.
  • Expanded trust services: New qualified trust services have been added, including electronic archiving, electronic ledgers, and remote signing, broadening the scope of what falls under the regulation.
  • Interoperability by design: The Architecture and Reference Framework (ARF) sets common technical standards so wallets work across borders and sectors without additional integration work.

In short, eIDAS 2.0 moves from a voluntary, government-focused framework to a mandatory, cross-sector digital identity infrastructure. The EUDI Wallet is the most visible expression of this shift.

What are the key eIDAS 2.0 implementation deadlines?

The eIDAS 2.0 implementation timeline runs in stages. The regulation entered into force on 20 May 2024. Member States then have 24 months, meaning a deadline of mid-2026, to issue EUDI Wallets to their citizens and businesses. Certain implementing regulations and technical specifications are being finalized in parallel, with large-scale pilot projects running until 2025 to test real-world readiness.

The most important dates to keep in mind are:

  1. 20 May 2024: eIDAS 2.0 entered into force following publication in the Official Journal of the EU.
  2. 2025: Large-scale pilot projects concluded, providing feedback on wallet functionality, interoperability, and security across more than 350 participating entities from 26 Member States.
  3. Mid-2026: Member States must make EUDI Wallets available to all citizens, residents, and businesses. This is the primary compliance deadline organizations are preparing for in 2026.
  4. Ongoing: Implementing regulations covering specific technical and procedural requirements continue to be adopted. Organizations need to monitor these as they are published.

For organizations in regulated sectors, mid-2026 is not a distant horizon. It is the current year’s most pressing compliance milestone, and many of the technical and operational preparations need to be in place before wallets go live at scale.

Which sectors are affected first by eIDAS 2.0?

eIDAS 2.0 affects all sectors that rely on digital identity verification, but some face earlier and more direct obligations than others. Financial services, government, healthcare, and telecommunications are among the first sectors required to accept EUDI Wallets for identity verification and authentication. Very large online platforms designated under the Digital Services Act also fall within scope.

The large-scale pilot projects tested the wallet across eleven real-world scenarios, giving a clear picture of which sectors are on the front line:

  • Financial services and banking: Opening bank accounts, strong customer authentication, and KYC processes are all covered. Banks and payment providers need to be wallet-ready for onboarding and authentication flows.
  • Government services: Applying for passports, driver’s licenses, accessing social security, and filing taxes are among the use cases tested. Public sector organizations have both an obligation to issue wallets and to accept them.
  • Healthcare: Patient identification, prescription verification, and cross-border health data exchange are key use cases. healthcare organizations face specific requirements around sensitive data handling.
  • Telecommunications: SIM registration and identity verification for mobile contracts are explicitly within scope, reducing fraud and administrative burden for operators.
  • Education and social security: Academic credentials, professional qualifications, and social benefits are being tested as wallet-stored documents that can be shared securely across borders.

If your organization operates in financial services or any other sector that currently relies on identity verification as part of its customer journey, eIDAS 2.0 is directly relevant to your operations.

What do organizations need to do before the 2026 deadline?

Organizations need to assess their current identity infrastructure, understand where EUDI Wallet acceptance is required, and begin integrating the technical and compliance changes before wallets are issued at scale. Waiting until wallets are live is too late. The preparation work spans technology, compliance, and governance.

Practically, this means working through several areas in parallel. On the technical side, organizations need to evaluate whether their current onboarding and authentication systems can accept wallet-based credentials. The EUDI Wallet uses verifiable credentials and standardized protocols defined in the Architecture and Reference Framework. Systems that were not designed with these standards in mind will need updating.

On the compliance side, organizations should map which of their existing processes are affected. KYC, AML, strong customer authentication, and age verification are all areas where wallet-based identity can replace or supplement current methods. Understanding which implementing regulations apply to your sector is an essential first step.

From a governance perspective, organizations should assign clear ownership for eIDAS 2.0 readiness. This is not purely an IT project. Compliance teams, legal counsel, digital transformation leads, and business owners all need to be involved. The right implementation approach combines technical accuracy with practical business alignment.

Key actions before the 2026 deadline include reviewing current identity verification workflows, identifying gaps against eIDAS 2.0 requirements, engaging with wallet pilots or reference implementations where possible, and ensuring data minimization principles are built into any new or updated processes.

What happens if an organization misses the eIDAS 2.0 compliance deadline?

Missing the eIDAS 2.0 compliance deadline carries real regulatory and business risk. Organizations that are required to accept EUDI Wallets but fail to do so may face enforcement action from national supervisory authorities, who are responsible for overseeing compliance within their Member States. Beyond formal penalties, non-compliant organizations risk being unable to serve customers who choose to use their wallet as their primary means of identification.

The business consequences extend further than regulatory fines. As EUDI Wallets become the standard way for citizens to prove their identity online, organizations that cannot accept them will create friction in their customer journeys. Competitors who are wallet-ready will offer faster, simpler onboarding. In sectors like banking and financial services, where customer experience and conversion rates are closely tied to identity verification speed, falling behind on eIDAS 2.0 readiness has a direct commercial cost.

There is also a reputational dimension. eIDAS 2.0 places user privacy and data control at its core. Organizations that are seen as slow to adopt privacy-respecting identity methods may face scrutiny from customers and regulators alike, particularly as awareness of digital identity rights grows among consumers.

The honest picture is that the organizations facing the greatest risk are those that are still treating eIDAS 2.0 as a future concern rather than a current priority. The deadline is 2026. That is now.

How TrustTech helps with eIDAS 2.0 readiness

TrustTech is purpose-built to help organizations navigate exactly the kind of transition that eIDAS 2.0 represents. Whether you are in financial services, government, healthcare, or another regulated sector, TrustTech provides the infrastructure and expertise to move from where you are today to where the regulation requires you to be.

Specifically, TrustTech helps organizations with:

  • Secure digital onboarding that is ready for EUDI Wallet credentials from day one
  • Reusable compliance checks so customers verify once and that verification is trusted everywhere
  • Qualified digital signatures with identity linked to every signature and a complete audit trail
  • Cross-organization interoperability built on European digital identity standards
  • Faster time to production, with a proven track record of going live in under five months

TrustTech sits between the parties that need to interact, connecting identification, qualification, and signing into one trusted platform without owning any of the parties involved. This makes it practical for organizations to replace fragmented, repeated identity checks with a single, scalable process that meets eIDAS 2.0 requirements. Explore the TrustTech platform to see how it fits your context, or get in touch to discuss your eIDAS 2.0 readiness today.