A relying party that requests wallet data should keep evidence for registration, request scope, user display, wallet authenticity checks, PID and EAA validation, and pseudonym handling. The record should show what was registered for each intended use, what was requested from the wallet, why the service needed it, and what the user approved.
Commission Implementing Regulation (EU) 2025/848 supplies the harmonised national-register, access-certificate, registration-certificate, suspension, and record-keeping rules, but it applies from 24 December 2026. Until the applicable Member State process is operating, record the available national route and do not claim that a draft registration pack or test certificate is an accepted registration.
For attestations, keep separate records for Person Identification Data, qualified electronic attestations of attributes, public-body authentic-source attestations, and non-qualified electronic attestations of attributes because the validation and legal-effect evidence is not the same.