Service decision and evidence guide

EUDAMED XML envelope: distinguish actor code, Party ID and service token

The acquired message documentation distinguishes actor-on-behalf-of identity, requester Party ID, service ID/operation and the service access token. These fields identify different parts of the exchange; base64 encoding of the payload is not encryption or proof of authorization.

Evidence retrieved 2026-10-07. Source versions and topic-specific limits are listed below.

Sourced criteria · EU · EUDAMED

What changes the service scope?

Decision or taskWhat the source describesWhat to prepare
message-exchange / HTML p [6]The entire XML message must be base64 encoded. The payload element contains the encoded message. The highlighted line shows the encoded message. [1]Apply this source context to the specific tasks below; retain missing facts and review current target-environment compatibility.
message-exchange / HTML li [20]serviceID : A unique identifier of a service in EUDAMED [2]Apply this source context to the specific tasks below; retain missing facts and review current target-environment compatibility.
message-exchange / HTML li [22]serviceOperation : Supported by the service (e.g. download, upload, update, etc.) [3]Apply this source context to the specific tasks below; retain missing facts and review current target-environment compatibility.
message-exchange / HTML li [24]serviceAccessToken : Bearer security authentication token (security key) to gain access permission to the requested data by the requester as EUDAMED actor or third party (acting on behalf of the actor mentioned in nodeCode) [4]Apply this source context to the specific tasks below; retain missing facts and review current target-environment compatibility.
message-exchange / HTML li [26]serviceVersion : In case of multi-versioned compatible service, it allows to specify what version of the current service is invoked. [5]Apply this source context to the specific tasks below; retain missing facts and review current target-environment compatibility.
message-exchange / HTML li [30]nodeCode : Contains the EUDAMED code (e.g. SRN , CA identifier, NB code etc.) of the party that performs the call of service. In case of multi-profile endpoint (e.g. third-party companies), it contains the actor code on behalf of the request that is performed. [6]Apply this source context to the specific tasks below; retain missing facts and review current target-environment compatibility.
message-exchange / HTML li [32]nodeID : Identify the requester (actor/third-party integrators) of the message eDelivery endpoint, it contains the partyID of the requester. [7]Apply this source context to the specific tasks below; retain missing facts and review current target-environment compatibility.

Dated technical/help evidence, not a complete legal duty set or live EUDAMED response. Current target-environment release, business rules, permissions and actual buyer records remain unresolved. Blank dictionary flags are unknown; occurrence and update notes keep their stated conditions. No credentials, registration deadline or completed production exchange is inferred.

Prepare the EUDAMED XML envelope work package

Use this checklist to gather your business or product details before speaking with a specialist. The items below explain what to record and suggest useful supporting documents. You can add your own answers in the editable project brief.

  1. Map requester and represented actor

    Record which organisation owns the AP and which actor the request is on behalf of; map their distinct identifiers.

    Useful evidence: A requester/represented-actor identity and delegation matrix.

  2. Map service and operation

    Specify the exact supported module service and operation with its token reference and compatible version.

    Useful evidence: An envelope field map with private token references and source-version locators.

  3. Verify payload handling

    Ask the integrator to show encoding, transport security and application validation separately.

    Useful evidence: A redacted end-to-end trace demonstrating the envelope and decoded payload structure.

Work packages and dependencies

Questions for providers

Sources and data dates

Read the official document in context. The audit details identify the precise locators and preserved versions used for this page.

European Commission / Swissmedic — published reference ↗

Thu, 27 Aug 2026 11:33:34 GMT · retrieved 2026-10-07

Audit details: precise locators and snapshot identifiers

Source key D07 · snapshot 5420e18f9e2445c3c87141642e4ff83bb217808f93c3b5549bbb18f5f5f2b9c6

  • [1] HTML p [6] · record c2d696019075296f816cf04564c4122955ef26a1e82d26a6cbb024aec735c13f
  • [2] HTML li [20] · record a10a99ee07b8b85c56f1a5cc0c9dd97f190e4d99feff5aba0b82da89726ba1c1
  • [3] HTML li [22] · record 05f405b2f52aed39ff84c923ea86ea79869f3ff17ad59ae3cd580cc12a37efaf
  • [4] HTML li [24] · record aed9a649cca83ae81b3a23921798ddfe6a9e78f4114e906f3d263866a6af8be3
  • [5] HTML li [26] · record 264d1df916dcfe77d15a513a0da94c55e321f74355a498e56ea2d8bdf64090f1
  • [6] HTML li [30] · record c1a03f8ed3251991cc15edbf887baec16ea75090f223bbbe2f96887e7fad8a6a
  • [7] HTML li [32] · record 729fe78dcc27d19e49248e9f226acfc69a7aa99f64923bad9df7e63812b95200

Prepare an editable project brief

Confirm the facts, scope and contact preference before sharing your project. Preparing this page sends no provider outreach.

Choose work packages to discuss

Compare EUDAMED M2M Integration