diff --git a/index.html b/index.html index b9fc5c31..fb2e5126 100644 --- a/index.html +++ b/index.html @@ -4810,54 +4810,64 @@

Verification Method Revocation

DID Recovery

- Recovery is a reactive security measure, whereby a controller is able - to regain the ability to perform DID operations. +Recovery is a reactive security measure whereby a controller that has +lost the ability to perform DID operations, such as through the loss of a +device, is able to regain the ability to perform DID operations.

-

- Recovery is advised when a controller or services trusted to act on - their behalf no longer have the exclusive ability to perform DID - operations as described in . +

+The following considerations might be of use when contemplating the use of +DID recovery:

-

- It is considered a best practice to never reuse a verification method - or key material associated with recovery for any other purposes. -

+ -

- Performing recovery proactively on an infrequent but regular basis, - can help to ensure that control has not been lost. -