Published on 26 May 2026
FAQ on the interaction between AGOV and the e-ID – for authorities (agov.ch/abc)
No, AGOV remains the authentication service for the Swiss authorities, i.e. the login system for Swiss e-government. This is because the e-ID alone cannot be used to log in; it requires the login broker system AGOV. Put simply, the e-ID is a digital identity card on your smartphone.
The e-ID can be used directly in AGOV as a login factor.
The process works as follows: open the government application, start the AGOV login process, present the e-ID, and you are logged in.
Presenting the e-ID specifically means scanning the e-ID QR code displayed on the AGOV page with the wallet app on the smartphone (where the e-ID is stored). The wallet app is called swiyu. A brief explanation of using the e-ID with AGOV.
The existing AGOV login factors, namely the AGOV access App and FIDO security keys, continue to function. End users remain free to choose and can even alternate between these login factors while using the same AGOV account.
Using the e-ID in AGOV has a highly desirable effect: the corresponding AGOV account is then automatically considered to have undergone substantial identity verification. This status can also be achieved without ever using the e-ID as an AGOV login factor, by registering it once on agov.ch/me.
If AGOV end users wish to obtain substantial identity verification in AGOV without using the e-ID, online identity verification with a physical identity document remains available in AGOV. The transaction costs are borne either by the authority or by the end users themselves (if online self-payment has been enabled by the authority in AGOV).
No, e-government users will continue to log in to government applications using AGOV and remain free to choose whether or not they want to use the e-ID for this purpose, i.e. present it as a direct login factor in AGOV. Please also refer to FAQ A.2.
Yes, the e-ID can be used in all cases to log in to AGOV, including cases that do not require identity verification.
Regarding login factors, AGOV users have a free choice between the AGOV access app, a FIDO security key, and the Swiss e-ID, and can use these login factors interchangeably with the same AGOV account. Thus, the political principle of voluntariness for the e-ID has been technically implemented.
At the configuration level, it is fundamentally possible for AGOV to exclusively accept the Swiss e-ID as the AGOV login factor for logging into certain applications. However, account must be taken of the legal basis for such configurations and the implementation of the political principle of voluntariness for the e-ID - in this case, outside of AGOV.
No, an AGOV login always remains an original AGOV login for the target applications, even when the e-ID is used as a login factor.
If you recommend using the e-ID, this can bring the advantage for your authority that no identity verification costs are incurred (provided that your applications require AGOV identity verifications). However, the political principle of voluntariness for the e-ID must be respected.
Since it is very user-friendly to log into applications directly via AGOV using the e-ID, AGOV generally makes the e-ID attractive as a login factor. The use of the e-ID can be visually emphasized by presenting the e-ID login factor as the primary option. However, this is currently not being done because the use of the AGOV access App as the primary option is already widespread throughout Switzerland.
In the area of identity verification within AGOV, end users are encouraged to use the e-ID rather than the cost-generating alternatives.
If the e-ID is used for identity verification instead of the cost-generating private-sector identity verification methods in AGOV, no costs are incurred by the authorities. See FAQ A.2 and FAQ A.8, last paragraph in each case.
There will be many digital credentials in the Swiss e-ID ecosystem. These may include identity cards, residence permits, high school diplomas, driver’s licenses, matriculation cards, membership cards, and many more. AGOV is capable of transmitting all digital credentials from the Swiss e-ID ecosystem to target applications as attributes in the OIDC or SAML context. Target applications must inform AGOV which digital credentials need to be collected during login and whether this collection is optional or mandatory.
Neither the e-ID nor AGOV are electronic signatures, triggers for digital signatures, or signature services. If an authority wants documents to be electronically signed, the AGOV login is not involved in the signature process itself, but possibly in the login to the data room where the relevant document is stored or to which it is to be uploaded.
User-friendliness increases when digital signatures are not required for declaration of intent and the actual AGOV login itself is sufficient. Authorities have already introduced and legally established the validity of high-assurance AGOV logins as expressions of intent (see Declaration of intent work with and without QES in the AGOV / e-ID context).
The Swiss e-ID itself does not distinguish between private, business or other contexts in which a person acts. It represents the natural person.
AGOV, by contrast, can represent different account contexts. From 2027, an AGOV account can be declared as a Business Account (agov.ch/biz). A private AGOV account is recommended for private use.
A Business Account also remains the account of a natural person. It is linked to a business email address and permanently to its email domain. The Business Account attribute can be passed to the target application during login.
However, AGOV does not thereby confirm organisational affiliation, employment, a role, powers of representation or signing authority. The legal and functional significance of the context in which the person is acting continues to be determined by the respective target application.
A person may have several AGOV accounts and link the same Swiss e-ID as a login factor to several of these accounts.
For legal entities, natural persons act on their behalf, and these individuals use AGOV with or without the use of the e-ID. See also FAQ A.14.
AGOV can hold certain declarative contextual information and pass it on to the target application. From 2027, this includes in particular whether the AGOV account being used has been declared as a Business Account and, where provided for, whether Shared Use has been declared.
However, this must not be equated with a legally or functionally verified role.
In particular, AGOV does not confirm employment, organisational affiliation, a function, a deputy role, powers of representation or signing authority. Whether a person is authorised to act for an organisation in a specific transaction is determined and verified by the respective target application or its authorisation system.
Additional digital credentials from the Swiss e-ID ecosystem may provide further information where required by the target application.
AGOV is not a general Issuer of domain-specific credentials issued by other authorities or organisations. A certificate of residence, for example, continues to be issued by the competent authority.
However, AGOV can itself act as an Issuer of Verifiable Credentials where the credential concerns a fact that AGOV itself establishes and is responsible for.
A specific example is the Mail Domain ID (MDID). Via agov.ch/me, AGOV can issue a Verifiable Credential confirming the email domain under which, and the time at which, receipt of an email was most recently verified for the person concerned.
In addition, AGOV can accept digital credentials from other Issuers in the Swiss e-ID ecosystem and convey their information to target applications as part of an authentication process.
Physical identity documents do not contain an email address or residential address because such data changes too frequently. The same consideration applies to the Swiss e-ID. AGOV always supplements the results of login processes in which the e-ID is used directly with this information so that target applications always receive a complete, originally structured AGOV authentication token. Exception: if authorities explicitly disable this data enrichment for certain target applications (to date, there is no such case and no plausible use case).
AGOV does not provide machine identities. In cases of automation, the natural person must first log in and then start the automation, for example the AI agent.
When you connect your applications to AGOV, a separate e-ID connection is no longer required, as AGOV conveys the e-ID to your applications. Please complete the appropriate form at agov.ch/contact.
No. As a general rule, the e-ID can only be used with an e-ID-compatible smartphone. This applies both to the use of the e-ID in AGOV and elsewhere. However, you can use AGOV without an e-ID: AGOV can be used without an e-ID and without a smartphone by using a FIDO security key (agov.ch/fido). You can also store the e-ID in AGOV by using it as an identity verification method via https://rio.agov.ch, and then use AGOV without e-ID.
Schematic comparison:
AGOV LOGIN WITH e-ID:
e-ID in the swiyu app → AGOV account → log in → target applicationAGOV LOGIN WITHOUT e-ID:
AGOV access App → AGOV account → log in → target application
FIDO security key → AGOV account → log in → target application
Further information
- Back to the Information for authorities.
- To the general Questions & answers.
- To the AGOV videos for authorities.