INDEPENDENT GUIDANCE EU regulation · Product data · Enterprise procurement

Prepare / Practical guide

Digital Product Passport architecture

A practical DPP architecture connects product identity to a carrier, resolution or access service, governed data and permitted users. Keep identity, source data and presentation separable so systems and providers can change without breaking access to existing products.

The product-to-information chain

Permissions apply at the service and data layers, rather than relying on a hidden link. This is an illustrative architecture; the applicable regulation and technical specifications determine implementation constraints.

Source systems and the publication boundary

SystemUseful roleDesign issue
ERPProduct master, operator and transaction contextSKU changes and identity reconciliation.
PLMEngineering composition and technical recordsReleased versions versus work in progress.
PIMApproved product descriptions and languageMarketing content versus evidence-backed fields.
MESProduction batches and item identityLatency, serialisation and physical label joins.
Supplier systemsExternal records and evidenceOwnership, validation and correction.
Traceability systemsEvents across production and lifecycleEvent semantics and relationship to passport identity.

Use an integration layer to validate and normalise records before publication. Do not make the public service depend on unrestricted access to live ERP or engineering databases. Preserve provenance and approval state.

Centralise operations without confusing the registry

You can use a shared platform to operate many passports while source evidence remains distributed. Alternatively, multiple services can publish governed records. The choice depends on scale, ownership, continuity and integration needs—not an assumption that “decentralised” requires blockchain.

The Commission describes the registry as infrastructure for identifiers and associated metadata while product data remains decentralised. A registry is not a replacement for your hosting, access or quality controls. Read the July 2026 launch notice.

Identity and resolution must survive migration

Choose identifier rules before generating labels. Define collision prevention, model-to-batch-to-item relationships and who can retire or replace a reference. Keep a stable access address where your design allows it and make the resolver route independent of a provider-specific front-end URL.

Document redirects, authenticated API routes, failure responses and export formats. Test a migration using an existing carrier: it should still reach the correct record. A successful CSV download does not by itself demonstrate continuity.

Security and interoperability are testable

  • Authenticate restricted users and authorise each requested field or operation.
  • Separate public content from protected records and control write permissions.
  • Maintain audit history for changes, approvals and access-policy updates.
  • Document schemas, units, codes and version negotiation for machine users.
  • Test exchanges with an independently implemented consumer.
  • Test backup restore, provider exit and incident procedures.

CEN-CENELEC’s 2026 publications address system topics such as identifiers, carriers, protocols and persistence. Verify the applicable standard and version, and relevant Official Journal references; do not treat a generic standard claim as proof of product compliance. Standards overview.

Standards that have reached the Official Journal

ReferenceSystem topic
EN 18216:2026Data exchange protocols
EN 18219:2026Unique identifiers
EN 18220:2026Data carriers
EN 18221:2026Storage, archiving and persistence
EN 18222:2026Lifecycle management and search APIs
EN 18223:2026System interoperability

Decision (EU) 2026/1736 publishes these six references. Conformity supports a presumption of conformity only for the ESPR requirements covered by the standards. It does not establish the product’s mandatory field list or certify an entire vendor platform.

Keep a standards register with reference, version, covered requirement, implementation evidence and test result. Access-rights/security and authentication/integrity are also part of the wider JTC 24 work; verify their current publication and citation status separately.

Make the design review a procurement input

Provide vendors with the identity model, source map, data volumes, access matrix and continuity expectations. Ask them to demonstrate the hardest integration and a portable export with history. Record which responsibilities stay with your team and which are delivered by the provider. Review the software capability guide.

Sources for this guide

Reviewed 4 October 2026. Check the current legal text and applicable product measures before acting.