Building Trust and Protection for Essential Digital Services: From Standards to Deployment
This discussion, moderated by Joelle Rizk, focused on the Digital Emblem Project led by the International Committee of the Red Cross (ICRC), which aims to translate the protective signalling function of physical emblems such as the Red Cross into the digital domain . The project addresses a critical gap: whilst medical services and humanitarian organisations have used distinctive emblems for over 150 years to signal their protected status under international humanitarian law (IHL), no equivalent mechanism exists to identify and protect their digital infrastructure during armed conflict .
From a legal perspective, Samit D'Cunha explained that the obligation to respect and protect medical services dates back to the first Geneva Convention of 1864, and that this protection has never been limited to the physical domain . He noted that a 2024 resolution adopted at the International Conference of the Red Cross and Red Crescent, involving 196 states party to the Geneva Conventions, explicitly affirmed that this obligation applies to the use of ICTs . Crucially, no new legal protection needs to be created, as existing IHL obligations already cover interference through cyberspace .
On the technical side, Mauro Vignati described a prototype called ADEM, developed with ETH Zurich, which uses existing technologies such as the Domain Name System (DNS) to distribute and verify the emblem . The prototype's code is publicly available on GitHub, and testing has already begun with national societies including the British Red Cross and Australian Red Cross . Tommy Jensen emphasised that standardisation through bodies such as the IETF is essential for interoperability, security, and for enabling industry to develop accessible, out-of-the-box deployment solutions .
Emma Cunliffe of Blue Shield International highlighted a parallel effort to apply a digital emblem to protected cultural heritage, noting that UNESCO member states recently approved guidelines recommending its use . She cautioned that significant challenges remain, including insufficient national legislation, under-resourcing of the heritage sector, and low technical capacity in many countries .
An audience question raised concerns about unequal technical capacity across countries, particularly in developing nations . Panellists agreed that the solution must function in severely constrained network environments and that a cascading model of capacity-building through national societies and international partners would be essential . The discussion concluded that the Digital Emblem Project, whilst technically and legally complex, serves the straightforward purpose of making IHL protections visible, detectable, and verifiable in cyber operations during armed conflict .
Overall Purpose
- The discussion centres on the ICRC's Digital Emblem Project, which aims to translate the long-established physical protective emblems of international humanitarian law (the Red Cross, Red Crescent, and Red Crystal) into the digital domain. The session brings together legal, technical, and operational experts to explain the project's rationale, its current prototype stage, and the steps needed to achieve practical, global deployment.
- --
Major Discussion Points
- The legal basis and necessity of a digital emblem: International humanitarian law, dating back to the first Geneva Convention of 1864, obliges warring parties to respect and protect medical services and humanitarian operations. As conflict increasingly involves cyber operations, and as medical and humanitarian organisations depend on digital infrastructure, there is currently no recognised means of signalling these protections in the digital domain. A 2024 International Conference resolution (Resolution 2, Operative Paragraphs 6 and 7) confirmed that the obligation to respect and protect applies to the use of ICTs, providing a clear legal foundation for the project without requiring the creation of new categories of protection.
- Technical standards and the prototype (ADEM): The digital emblem relies on existing, widely adopted internet technologies - notably the Domain Name System (DNS) and WebPKI - rather than reinventing infrastructure. Standardisation is essential so that all actors, regardless of origin, speak the same technological language and can interoperate reliably. The current prototype, called ADEM, was developed with ETH Zurich, is publicly available on GitHub, and is already being tested by national societies including the British Red Cross and Australian Red Cross. Standardisation work is ongoing at both the IETF and the ITU. - The role of industry and the importance of marketing the solution as a product: Technical standards alone are insufficient if deployment requires specialist expertise. Industry's critical role is to translate standardised protocols into accessible, out-of-the-box solutions that can be used by medical personnel or heritage professionals without requiring deep technical knowledge. This is particularly important given that many potential users - especially in the cultural heritage sector - operate with limited resources and outdated technology. - Parallel experience from the Blue Shield and cultural heritage protection: The Blue Shield emblem, established under the 1954 Hague Convention, offers a parallel case study in extending physical protective emblems to the digital domain. Digital cultural heritage - including records of destroyed sites such as Palmyra - now requires the same protections as physical artefacts. However, the Blue Shield faces significant challenges: fewer than 10 countries have enacted legislation on the emblem, awareness remains low, and the heritage sector is severely under-resourced technologically. A major step forward was achieved when UNESCO member states approved guidelines recommending the use and implementation of the digital emblem. - Capacity building and inclusivity across diverse contexts: A recurring concern raised both by panellists and an audience member is ensuring the digital emblem works in highly constrained environments, such as areas limited to 2G connectivity. Testing must reflect the full diversity of national societies across all regions, not only well-resourced ones. A cascading model is envisaged, whereby major actors assist others in deployment, supported by national societies acting as regional champions, international bodies such as UNESCO, and heritage funding organisations.
- --
Overall Tone
- The overall tone of the discussion is constructive, collaborative, and cautiously optimistic. Speakers consistently frame the project as a shared endeavour involving legal experts, technologists, civil society, and states, with a clear humanitarian purpose. There is a sense of measured excitement, particularly around the launch of Phase 2, and the ADEM prototype was demonstrated the previous day. When the audience question raises concerns about capacity gaps in developing countries, the tone becomes more sober and reflective, with panellists openly acknowledging the challenges of inclusivity and under-resourcing. However, the discussion closes on a hopeful note, with the moderator reaffirming the life-or-death stakes of the project and the panel expressing confidence that the combination of legal norms and technical standards can ultimately deliver meaningful protection.
Digital Emblem: Building Trust and Protection for Essential Services - Expanded Summary
#
Session Overview and Context
The session, moderated by Joelle Rizk, brought together legal, technical, and operational experts to discuss the Digital Emblem Project led by the International Committee of the Red Cross (ICRC) . The panel comprised Samit D'Cunha, legal and policy lead on the Digital Emblem Project at the ICRC; Mauro Vignati, the ICRC's technology advisor and technical lead on the project, joining online; Emma Cunliffe, Head of Operations at Blue Shield International; and Tommy Jensen, a product manager at Cloudflare and former inaugural chair of the Digital Emblem Working Group at the IETF . The session took place one day after a significant milestone: the launch of Phase 2 of the Digital Emblem Project at CERN, where a prototype was demonstrated to ICRC colleagues, industry stakeholders, and others . Phase 2 represents a transition from conceptual development and stakeholder consultation to prototype testing and technical demonstration .
#
The Legal and Historical Basis for a Digital Emblem
D'Cunha opened the substantive discussion by tracing the origins of the physical emblem system to the first Geneva Convention of 1864, which established specific protections for medical services in armed conflict and created the obligation to "respect and protect" those services . He explained that even then, it was understood that these protections required a means of identification in complex security environments, which led to the creation of the Red Cross emblem and, subsequently, the Red Crescent and Red Crystal . Over time, the use of the emblem evolved from armbands to vehicles and hospital rooftops, reflecting the changing nature of conflict and humanitarian operations .
A crucial historical precedent was established in the 1970s, when it was recognised that visual confirmation of an emblem was no longer sufficient . Working through the International Telecommunication Union (ITU) and the International Civil Aviation Organization (ICAO), electromagnetic and light frequency signals were standardised as additional means of identifying protected entities in armed conflict . These standards were directly incorporated into international humanitarian law (IHL) through Annex I of Additional Protocol I to the Geneva Conventions . This precedent is significant because it demonstrates that the international community has already successfully translated physical emblems into technological signals once before, lending the Digital Emblem Project both legal legitimacy and historical continuity.
D'Cunha then explained the contemporary gap that the project seeks to address: cyber operations are now a reality of armed conflict, and medical services and humanitarian organisations such as the ICRC depend on digital infrastructure, yet there is currently no recognised means of signalling their legal protection in the digital domain . Joelle Rizk reinforced this framing, noting that conflict is no longer waged solely with airstrikes and artillery but also through digital means, raising the question of how the protective signalling function of physical emblems can be translated to the digital domain .
#
Navigating Legal Uncertainty: Existing Protections and Broad Consensus
A particularly important exchange addressed the apparent tension between the Digital Emblem Project and the broader lack of consensus among states on how IHL applies to cyberspace. Joelle Rizk asked how the project could proceed when there is still no broad agreement on questions such as the definition of a "cyber attack" or whether data constitutes an "object" under IHL . D'Cunha acknowledged this diversity of views but argued that it does not undermine the project's legal foundation . He pointed out that the specific obligation to respect and protect medical services is a settled area of IHL, and that a party to a conflict which deletes patient data or interferes with medical equipment through a cyber operation is clearly in violation of that obligation, regardless of contested definitional questions .
D'Cunha cited substantial evidence of broad state consensus on this specific point: over a dozen individual state positions, the common European Union position, and the common African position all affirm the obligation to respect and protect medical services and humanitarian personnel in the context of ICTs . Most significantly, Resolution 2 was adopted at the 2024 International Conference of the Red Cross and Red Crescent, which brings together all 196 states party to the Geneva Conventions as well as 193 components of the Red Cross and Red Crescent movement - comprising the ICRC, the International Federation, and 191 national societies - and explicitly affirmed in Operative Paragraphs 6 and 7 that this obligation applies to the use of ICTs, for both medical services and humanitarian personnel respectively . This broad consensus provides a solid legal foundation for the project without requiring the creation of new legal categories or protections .
D'Cunha was equally clear that no new legal protection needs to be created, because the existing obligation is already broad and unqualified, covering all domains - physical, aerial, maritime, outer space, and cyberspace . The Digital Emblem's purpose is therefore not legal innovation but rather making existing protections visible, detectable, and verifiable in the digital domain .
#
Technical Architecture: Building on Existing Infrastructure
Mauro Vignati addressed the technical dimensions of the project, emphasising that the digital emblem is not reinventing the wheel but rather reusing technologies already widely adopted on the internet, including WebPKI and the Domain Name System (DNS) . He explained that standardisation is essential because all actors, regardless of their region or country, must speak the same technological language to enable consistent and reliable interaction with the digital emblem . The DNS was selected as the first protocol for distributing the emblem because it is universally used for everyday internet activities such as email and web browsing, making it a natural and accessible foundation .
Vignati described the current prototype, called ADEM (Authenticated Digital EMblem), developed in collaboration with ETH Zurich . Rizk clarified for those attending online or reading the transcript that ADEM is the name of the prototype, and offered to have Vignati share both the GitHub repository link and the verification tool link in the session chat . Vignati confirmed he would share these links, noting that the prototype's code is publicly available on GitHub for inspection and use by anyone, and that a public verification tool has been deployed online . Vignati clarified that ADEM is not the final version of the digital emblem, as standardisation work is still ongoing at both the IETF and the ITU . The prototype has been submitted to these bodies, and testing is already underway with national societies, with the British Red Cross and Australian Red Cross having successfully implemented the emblem on their domains . D'Cunha noted that eight national societies are currently involved in testing the digital emblem . Vignati outlined the next steps as finalising standardisation, reaching broad agreement on the technology, and then deploying the emblem to authorised entities .
#
The Role of Technical Standardisation and Industry
Tommy Jensen provided a broader perspective on why standardisation through bodies such as the IETF is indispensable. He described the Digital Emblem as "probably the best example I've ever seen of a need for interoperability," arguing that without standardised protocols, parties on different sides of a conflict would need to manually invent bespoke signalling arrangements - a practically unworkable requirement . Standards eliminate this problem by providing a single, universally recognised solution that all parties can rely upon . He also noted that the Tallinn Manual states that parties need to signal protections to each other, which might seem like a solved problem, but that in practice this is far more difficult to achieve than simply stating the requirement .
Jensen further argued that standardisation enables private industry to develop product-type solutions that can be deployed out of the box, with predictable patterns and good documentation, making the emblem accessible to all . Crucially, bringing the standard to expert bodies like the IETF allows specialists across fields to identify and address flaws before deployment, improving the robustness and security of the system . He expressed confidence in the prototype while noting that expert scrutiny would refine it further in ways that would benefit everyone for the decades to come .
On the question of industry's role, Jensen offered a vivid operational illustration: if medical personnel must become experts in computer networking in order to remove a digital emblem from an asset as ground is being surrendered to an incoming force, the problem has not been operationally solved . Industry's critical contribution is therefore to translate standardised protocols into accessible, out-of-the-box solutions that non-technical users can deploy and manage without specialist knowledge . This point about making solutions accessible and deployable without specialist knowledge was echoed by Cunliffe from the heritage sector perspective, connecting the technical and operational dimensions of the project.
#
The Blue Shield and Cultural Heritage: A Parallel Framework
Emma Cunliffe of Blue Shield International introduced a parallel dimension to the discussion, explaining that the Blue Shield emblem was established under the 1954 Hague Convention for the Protection of Cultural Property in the Event of Armed Conflict, which specifies a blue and white shield to be placed on cultural items of great importance to signal their protection . She noted that the cultural sector has advanced significantly in its use of digital technologies, and that some cultural heritage - including records of destroyed sites such as Palmyra and the Berlin Wall - now exists only in digital form, requiring the same protections as physical artefacts .
Cunliffe described a significant recent policy milestone: UNESCO member states approved guidelines that include recommendations for the use and implementation of the digital emblem for cultural heritage protection . She also noted that Blue Shield International had produced a substantial report, to be launched shortly, examining the use and practice of Blue Shields in detail, including digital heritage and recommendations to promote the digital emblem. However, she cautioned that significant challenges remain. Despite nearly 140 states having signed the Hague Convention, the Blue Shield emblem is poorly understood and inconsistently implemented, with fewer than 10 countries found to have legislated it in spot checks, and only around 40 to 50 states actually placing Blue Shields on monuments . The study also found a number of cases of misuse of the emblem, which Cunliffe noted appeared to be unintentional, underscoring the need for clear national legislation and reporting mechanisms. She argued that national legislation is essential to define digital heritage, formally recognise the emblem, establish systems for reporting misuse, and build the trust necessary for the emblem to function effectively . She contrasted this with the Red Cross emblem, which is legislated in almost every country in the world .
Cunliffe also highlighted a structural barrier to deployment in the heritage sector: it is severely under-resourced, often relies on outdated technology, and has very low technical know-how outside major institutions . She expressed enthusiasm for standardised, out-of-the-box solutions that could help people who would not otherwise understand how to apply technical protections , independently arriving at the same conclusion as Jensen from a very different institutional perspective. She noted that the timing of the digital emblem's development is opportune, framing it as an opportunity rather than a burden: the emblem can be implemented in parallel with the physical emblem, allowing both to be introduced together rather than sequentially .
#
Capacity Building, Inclusivity, and the Digital Divide
An audience member, Janine, raised a pointed challenge about the unequal capacity of different countries to implement the proposed solutions, noting that even in developed countries the capacity is not uniform, and that the situation is considerably worse in developing countries and conflict zones . This question prompted the most substantive and candid responses of the session.
D'Cunha acknowledged the challenge and noted that the first Geneva Convention was itself a predominantly European instrument, signed by only 12 states, most of them European . He emphasised that over 160 years, the Geneva Conventions have achieved universal ratification, and that the same commitment to universality must inform the Digital Emblem Project . He referenced Paragraph 12 of Resolution 2 of the 2024 International Conference, which calls on states to provide capacity building to those that need it, and identified national societies as essential partners in building state capacity . He also acknowledged that current testing is concentrated among well-resourced societies and stressed the need to expand it to societies in Asia, Africa, and South America .
Jensen addressed the technical design implications directly, citing a presentation at the IETF noting that infrastructure in Palestine was at one point limited to 2G cellular connectivity . He argued unequivocally that designing for better connectivity and thereby excluding parties is a non-starter, and that the emblem must be readily deployable anywhere by anyone . This introduced a firm technical design requirement - performance under severely constrained networking conditions - that had not been explicitly articulated earlier in the session. Vignati described a cascading knowledge-sharing model, whereby major actors such as the British and Australian Red Cross help others implement the emblem, spreading technical capability across the movement . Cunliffe described a multi-partner approach involving civil society, NGOs, governments, international agencies such as UNESCO, and major heritage funding bodies as the only way to achieve the necessary scale . She illustrated the severity of the connectivity challenge in the heritage sector with a concrete example: a national committee president having to drive two hours simply to download a file, underscoring how acute the digital divide remains for many heritage institutions.
#
Unresolved Issues and the Path Forward
Despite the broadly optimistic tone of the discussion, several significant challenges remain unresolved. The diversity of state views on how IHL applies to cyber operations more broadly - including contested definitions of "attack" and whether data constitutes an "object" - creates an uncertain legal environment surrounding the digital emblem, even if the specific protection of medical services is broadly agreed . The question of equitable implementation across countries with vastly different digital infrastructure capacities was acknowledged but not fully resolved, with the cascading model representing an important approach that will require further development . The Blue Shield emblem's absence from national legislation in most countries, and the lack of a shared definition of digital cultural heritage, leave significant gaps in the legal foundation needed to prevent misuse . The heritage sector's severe under-resourcing and reliance on outdated technology present a practical barrier that will require coordinated multi-partner efforts to address .
#
Closing Remarks
Joelle Rizk closed the session by underscoring the life-or-death stakes of the project: a cyberattack on a medical service during armed conflict could cost civilian lives, and an attack on a humanitarian organisation's database could obstruct critical protection services such as tracing missing persons . She characterised the Digital Emblem Project as technically and legally complex but serving a straightforward purpose - making IHL protections visible, detectable, and verifiable in cyber operations during armed conflict - and as an ambitious endeavour that combines legal norms with technical standards . The session as a whole demonstrated that the project enjoys broad cross-sectoral support, with legal, technical, cultural heritage, and industry perspectives converging on the same core principles, even as significant practical and operational challenges remain to be addressed on the path to global deployment.
Historical foundation of physical emblems under IHL - The Red Cross, Red Crescent, and Red Crystal emblems were created following the first Geneva Convention of 1864 to identify and signal protection for medical services and humanitarian operations in armed conflict
Arg. 1The first Geneva Convention of 1864 established specific protections for medical services in armed conflict, and it was recognised from the outset that a visible emblem was necessary to identify protected entities in complex security environments. This led to the creation of the Red Cross emblem, which later evolved to include the Red Crescent and Red Crystal. These emblems signal to warring parties that the bearer has a medical or humanitarian function and is therefore not a legitimate military target.
Samit D'Cunha traced the origin of the emblem system to the signing of the first Geneva Convention in 1864, which created specific protections for medical services and established the need for a means of identification in armed conflict . He noted that the emblem evolved from a Red Cross on a white armband to use on vehicles and hospital rooftops as conflict and medical services developed .
Evolution of identification signals - Beyond visual emblems, the 1970s saw the development of electromagnetic and light frequency signals standardised through the ITU and ICAO, which were incorporated directly into international humanitarian law via Additional Protocol I
Arg. 2By the 1970s, it was recognised that visual confirmation of an emblem was no longer sufficient, prompting the development of electromagnetic and light frequency signals standardised through the ITU and the International Civil Aviation Organization. These technical standards were directly incorporated into international humanitarian law through Annex I of Additional Protocol I to the Geneva Conventions. This precedent demonstrates that technical standards bodies have historically played a role in shaping IHL identification mechanisms.
Samit D'Cunha explained that in the 1970s, working through the ITU and ICAO, electromagnetic radio frequencies and light frequencies were standardised as the Distinctive Signal for identifying specific protections in armed conflict . He confirmed that these standards were incorporated directly into Annex I of Additional Protocol I to the Geneva Conventions, making them part of international humanitarian law .
on: Technical standardisation is essential for the digital emblem to function reliably and securely across all parties
Gap in digital protection - Cyber operations are now a reality of armed conflict, yet there is currently no standardised means of identifying and signalling the legal protection of medical and humanitarian digital infrastructure
Arg. 3Medical services and humanitarian organisations such as the ICRC now depend heavily on digital infrastructure, yet there is no established mechanism to signal their legal protection when that infrastructure is targeted through cyber operations. This creates a significant gap between the existing legal protections under IHL and the practical ability to identify and enforce those protections in the digital domain. The Digital Emblem Project was conceived to address this gap.
Samit D'Cunha noted that cyber operations are a reality of armed conflict and that medical and humanitarian operations depend on digital infrastructure, but that no means currently exists to identify that protection in the digital domain .
on: The digital emblem is necessary to bridge the gap between existing IHL protections and the digital domain
Existing broad agreement on protecting medical services in cyberspace - Despite divergent state views on how IHL applies to cyber operations generally, there is broad consensus that the obligation to respect and protect medical services applies to cyber activities, as affirmed in Resolution 2 of the 2024 International Conference of the Red Cross and Red Crescent
Arg. 4While states hold divergent views on many aspects of how IHL applies to cyberspace — such as the definition of 'attack' or whether data constitutes an 'object' — there is clear and broad agreement that the obligation to respect and protect medical services extends to cyber activities. This consensus is reflected in individual state positions, the common European Union and African positions, and most significantly in Resolution 2 adopted at the 2024 International Conference of the Red Cross and Red Crescent. The resolution, adopted by 196 states party to the Geneva Conventions, explicitly affirms that this obligation applies to the use of ICTs.
Samit D'Cunha cited over a dozen individual state positions that affirm the obligation to respect and protect medical services in cyberspace , as well as the common EU and African positions . He highlighted Resolution 2 adopted at the 2024 International Conference of the Red Cross and Red Crescent, attended by 196 states party to the Geneva Conventions, which in Operative Paragraphs 6 and 7 explicitly states that the obligation to respect and protect applies to the use of ICTs with respect to medical services and humanitarian personnel respectively .
No new legal protections needed - The existing IHL protections are already broad and unqualified, covering all domains including cyberspace; the digital emblem is about making those existing protections visible and identifiable, not creating new ones
Arg. 5The existing obligation under IHL to respect and protect medical services is broad and unqualified, meaning it applies regardless of the domain — physical, aerial, maritime, outer space, or cyberspace. There is therefore no need to create new legal protections; the challenge is solely one of identification and signalling. The digital emblem is the mechanism by which those pre-existing protections are made visible in the digital domain.
Samit D'Cunha stated that the protection already exists and is broad and unqualified, meaning a party to a conflict cannot unduly interfere with a hospital whether through physical, cyber, or any other means .
on: No new legal protections are needed; the digital emblem's purpose is to make existing IHL protections visible and identifiable in the digital domain
on: Whether existing legal frameworks are sufficient or whether national legislation is additionally required for effective protection
Legal capacity building is integral to the project - Resolution 2 of the 2024 International Conference calls on states to provide capacity building to those that need it, and national societies are identified as essential partners in building state capacity to implement IHL protections
Arg. 6The Digital Emblem Project recognises that legal and technical capacity varies significantly across states, and that capacity building is an essential component of ensuring the emblem can be universally implemented. Resolution 2 of the 2024 International Conference explicitly calls on states to provide capacity building to those that need it. National Red Cross and Red Crescent societies are identified as key partners in this process, given their established role in supporting national IHL implementation.
Samit D'Cunha referenced Paragraph 12 of Resolution 2 from the 2024 International Conference, which encourages the ICRC's work on the digital emblem and calls on states to provide capacity building to states that need it, as well as to national societies . He also noted that national societies have historically been essential in building state capacity to implement IHL .
on: A multi-stakeholder approach involving legal, technical, governmental, civil society, and industry actors is essential for the digital emblem to succeed
Diversity in testing must reflect global needs - Testing of the digital emblem must extend beyond well-resourced national societies such as the British and Australian Red Cross to include societies in Asia, Africa, and South America, so that the solution works for all
Arg. 7While the British Red Cross and Australian Red Cross have been the first to implement the ADEM prototype on their infrastructure, Samit D'Cunha stressed that the testing group must be broadened to reflect the full diversity of national societies globally. This is essential to ensure that the digital emblem functions effectively in a wide range of technical and operational environments, not just those of well-resourced societies. He noted that the current testing group already includes societies from Asia, Africa, Europe, and South America.
Samit D'Cunha noted that eight national societies are currently part of the testing group, with the British Red Cross and Australian Red Cross being the first to implement the emblem on their infrastructure . He emphasised the need to ensure that testing represents the diversity of national societies across all regions, including Asia, Africa, and South America, and that early adopters should become champions to help others .
on: Capacity building and inclusivity must be central to the project to ensure the digital emblem works for all states and organisations, not just well-resourced ones
on: Whether the digital emblem can realistically achieve equitable implementation across countries with vastly different digital capacities
Reuse of existing internet technologies - The digital emblem builds on widely adopted technologies such as WebPKI and the Domain Name System (DNS), rather than reinventing the wheel, ensuring compatibility with existing internet infrastructure
Arg. 1Rather than developing entirely new technologies, the digital emblem leverages existing, widely adopted internet technologies such as WebPKI and the Domain Name System (DNS). DNS was selected as the first protocol for serving the emblem because it is already universally used for everyday internet activities such as email and web browsing. This approach ensures compatibility with existing infrastructure and reduces the complexity of deployment.
Mauro Vignati explained that the digital emblem reuses technologies already widely adopted on the internet, specifically mentioning WebPKI and DNS . He noted that DNS was chosen as the first protocol for serving the emblem because it is the protocol used daily for retrieving emails and surfing the web .
on: The digital emblem is necessary to bridge the gap between existing IHL protections and the digital domain
Standardisation as a prerequisite for interoperability - A common technological language is essential so that entities from different regions and countries can interact with the digital emblem in a consistent and reliable way
Arg. 2Standardisation of the digital emblem's underlying technology is essential because all parties — regardless of region or country — must be able to communicate using the same technological language. Without a common standard, the emblem cannot function reliably across different systems and jurisdictions. Mauro Vignati emphasised that while some of the component technologies are already standardised, they must be packaged and agreed upon in a specific way for the digital emblem.
Mauro Vignati stated that standardisation is very important because everyone must talk the same technological language to enable consistent interaction from different regions and countries . He noted that existing standardised technologies must be packaged in specific ways and that agreement must be reached on exactly which technology supports the digital emblem .
on: Technical standardisation is essential for the digital emblem to function reliably and securely across all parties
Current prototype status - The ADEM prototype, developed with ETH Zurich, is publicly available on GitHub and is already being tested with national societies including the British Red Cross and Australian Red Cross, with a public verification tool available online
Arg. 3The ADEM prototype, developed in collaboration with ETH Zurich, represents the current state of the digital emblem project and is publicly available for inspection and use. It is being tested with national societies, with the British Red Cross and Australian Red Cross having already deployed it on their domains. A public verification tool is also available online, allowing anyone to test the presence and correct display of the emblem on those domains.
Mauro Vignati confirmed that the ADEM prototype was developed with ETH Zurich and is hosted on a public GitHub repository where anyone can download, inspect, and use the code . He noted that the British Red Cross and Australian Red Cross have already deployed the emblem on their domains, and that a public verification tool is available online to test the presence of the emblem .
on: The degree to which the digital emblem is technically ready for broad deployment versus requiring significant further development
Cascading knowledge-sharing model - Early adopters such as major national societies can help others implement the emblem, creating a cascading effect that spreads technical capability across the movement
Arg. 4Mauro Vignati proposed that the deployment of the digital emblem can be scaled through a cascading model, whereby major national societies that implement the emblem first assist others in doing so. This approach is intended to spread technical knowledge and capability progressively across the Red Cross and Red Crescent movement and beyond. The model relies on early adopters acting as hubs of expertise and support.
Mauro Vignati described how the British and Australian Red Cross were helped to implement and deploy the emblem, and expressed hope that in the future major actors will help others in a cascading effect, spreading knowledge and capability on how to deploy the solution .
on: Capacity building and inclusivity must be central to the project to ensure the digital emblem works for all states and organisations, not just well-resourced ones
on: Whether the digital emblem can realistically achieve equitable implementation across countries with vastly different digital capacities
Next steps towards deployment - The immediate priorities are finalising standardisation at the ITU and IETF, reaching broad agreement on the technology, and then deploying the emblem to entities authorised to display it
Arg. 5The next phase of the Digital Emblem Project involves completing the standardisation process at the ITU and IETF, building on the ADEM prototype that has already been submitted to both bodies. Once a common technological agreement is reached, the emblem will be deployed to entities that are authorised to display it under IHL. The prototype and its code are already publicly available to support transparency and community engagement during this process.
Mauro Vignati outlined that the project is currently in the process of standardising the technology at the ITU and IETF, with the ADEM prototype already submitted to both bodies . He stated that the next steps are to finalise standardisation, reach common agreement on the technology, and then deploy the emblem to authorised entities .
on: A multi-stakeholder approach involving legal, technical, governmental, civil society, and industry actors is essential for the digital emblem to succeed
Interoperability as the core technical requirement - Standardised protocols prevent aggressors and protected entities from having to manually negotiate bespoke signalling arrangements, making the system practically deployable across all parties to a conflict
Arg. 1Tommy Jensen argued that the need to signal the existence of IHL protections on a digital asset is perhaps the clearest example of a requirement for interoperability he has encountered. Without standardised protocols, parties on different sides of a conflict would need to manually invent or negotiate bespoke signalling arrangements, which is practically unworkable even if legally required. Standards bodies such as the IETF exist precisely to solve this kind of problem by enabling computers to communicate across the internet without each party having to invent its own solution.
Tommy Jensen noted that the Tallinn Manual requires parties to negotiate signalling arrangements, but observed that in practice this is far more difficult than simply stating it as a requirement . He referenced the role of organisations like the IETF in standardising protocols that allow computers to communicate across the internet, without which the modern web and email would not exist .
on: Technical standardisation is essential for the digital emblem to function reliably and securely across all parties
Security benefits of open standardisation - Bringing the digital emblem to expert bodies like the IETF allows specialists across fields to identify and address flaws before deployment, improving the robustness and trustworthiness of the standard
Arg. 2Open standardisation through bodies such as the IETF brings together experts from diverse fields who can scrutinise the digital emblem's design and identify vulnerabilities before it is deployed at scale. This peer review process strengthens the security and reliability of the standard in ways that cannot be fully predicted in advance. Tommy Jensen argued that this expert refinement will benefit the emblem for the decades it needs to function.
Tommy Jensen stated that when a standard is brought to the IETF, experts across fields can tear it apart and find flaws before deployment, allowing the standard to be refined . He argued that having experts across areas refine the prototype will make it even better in ways that cannot be predicted, benefiting everyone for the decades to come .
on: Technical standardisation is essential for the digital emblem to function reliably and securely across all parties
on: The degree to which the digital emblem is technically ready for broad deployment versus requiring significant further development
Productising the standard for operational use - Technical standards alone are insufficient; industry must translate them into out-of-the-box solutions so that non-technical users, such as medical personnel, can deploy and manage emblems without requiring expertise in computer networking
Arg. 3Tommy Jensen argued that solving the digital emblem problem as a purely technical or academic exercise is insufficient if the resulting system cannot be operationally used by non-technical personnel. If medical staff are required to become computer networking experts in order to, for example, remove an emblem from an asset as territory changes hands, the problem has not been practically solved. The role of industry is to productise the standard — creating out-of-the-box solutions that make deployment and management accessible to those who need it.
Tommy Jensen gave the example of medical personnel needing to remove an emblem from an asset as ground is surrendered to an incoming force, arguing that if this requires expertise in computer networking, the problem has not been operationally solved . He identified the role of industry as making the emblem easy to deploy through out-of-the-box solutions that do not require users to be technical experts .
on: A multi-stakeholder approach involving legal, technical, governmental, civil society, and industry actors is essential for the digital emblem to succeed
Technical design must accommodate severely constrained environments - The digital emblem must function in very poor networking conditions, including 2G cellular connectivity, as excluding parties due to infrastructure limitations is not acceptable
Arg. 4Tommy Jensen stressed that the digital emblem must be designed to function in severely constrained networking environments, including areas with only 2G cellular connectivity. Designing for better connectivity and thereby excluding parties in conflict zones with poor infrastructure is not acceptable, as it would undermine the universality of the protection. The requirement for the emblem to perform in very poor networking conditions must therefore be built into the technical design from the outset.
Tommy Jensen referenced a research group presentation at the IETF where a presenter noted that within Palestine, infrastructure was at one point limited to 2G cellular connectivity . He argued that modern protocol design cannot take for granted better network connectivity, as doing so would exclude parties, which is a non-starter, and that the emblem must be readily deployable anywhere by anyone .
on: Capacity building and inclusivity must be central to the project to ensure the digital emblem works for all states and organisations, not just well-resourced ones
on: Whether the digital emblem can realistically achieve equitable implementation across countries with vastly different digital capacities
Parallel legal framework for cultural heritage - The 1954 Hague Convention established the Blue Shield emblem to protect cultural property in armed conflict, and this framework faces the same challenge of extending protection to digital cultural heritage
Arg. 1The Blue Shield emblem was established under the 1954 Hague Convention for the Protection of Cultural Property in the Event of Armed Conflict, providing a parallel framework to the Red Cross system for protecting cultural property. Like the Red Cross emblem, the Blue Shield faces the challenge of extending its protective function to the digital domain, where significant cultural heritage now exists. Emma Cunliffe described the Blue Shield's engagement with the ICRC's Digital Emblem Project as an opportunity to address this shared challenge.
Emma Cunliffe explained that the 1954 Hague Convention and its two protocols specify a blue and white shield to be placed on cultural items of great importance to signal their protection during conflicts . She noted that cultural information, archives, and museum collections are now stored digitally, and that some cultural heritage - such as records of destroyed sites like Palmyra or the Berlin Wall - exists only in digital form .
on: The digital emblem is necessary to bridge the gap between existing IHL protections and the digital domain
Digital cultural heritage requires the same protection as physical heritage - Archives, museum collections, and records of destroyed sites such as Palmyra now exist only in digital form and are equally deserving of IHL protection as physical cultural property
Arg. 2Emma Cunliffe argued that digital cultural heritage — including digitised archives, museum collections, and records of sites that no longer physically exist — deserves the same IHL protections as physical cultural property. The cultural sector has advanced significantly in its use of digital technologies, and the records of a people's history and identity held in digital form are as important as any physical monument. The digital emblem offers a means of signalling this protection in the digital domain.
Emma Cunliffe cited the examples of digital records of destroyed sites such as Palmyra and the Berlin Wall, which no longer exist physically and are preserved only in digital form, as examples of digital cultural heritage deserving protection . She argued that a museum holding the history and identity of a people has records that are protected and deserve the same protections as more physical heritage .
Low awareness and implementation of the Blue Shield - Despite nearly 140 states having signed the Hague Convention, the Blue Shield emblem remains poorly understood and inconsistently implemented, with fewer than 10 countries found to have legislated it
Arg. 3Despite the Hague Convention having been signed by nearly 140 states, the Blue Shield emblem suffers from very low public awareness and inconsistent implementation. Many people do not recognise the emblem or understand its significance. Spot checks of national legislation found fewer than 10 countries that have formally legislated the emblem, and the number of Blue Shields placed on monuments varies enormously across signatory states.
Emma Cunliffe noted that many people still do not know what the Blue Shield is when they see it . She reported that of the 140 states that have signed the Hague Convention, only about 40 to 50 actually place Blue Shields on monuments, with numbers ranging from five to about 40,000, and that spot checks found fewer than 10 countries that legislate the emblem .
Recent policy milestone - UNESCO member states approved guidelines that include recommendations for the use of the digital emblem for cultural heritage protection, representing a significant step forward in gaining governmental buy-in
Arg. 4A significant policy milestone was achieved when UNESCO member states approved guidelines for the Blue Shield that include recommendations for the use and implementation of the digital emblem. This governmental endorsement represents an important step in building the legitimacy and political support needed to advance the digital emblem for cultural heritage protection. Emma Cunliffe described this as an enormously important step forward.
Emma Cunliffe reported that the UNESCO team supporting the Hague Convention presented guidelines to member states, which were approved and include recommendations for the use and implementation of the digital emblem .
Need for national legislation to prevent misuse - Legislating both the definition of digital heritage and the use of the Blue Shield emblem is essential to build trust, prevent misuse, and ensure that IHL protections are formally recognised at the national level
Arg. 5Emma Cunliffe argued that national legislation is a critical step in advancing the Blue Shield's protective function, both for physical and digital heritage. Legislation is needed to define what constitutes digital heritage, to formally recognise the emblem and the places where it is applied, and to establish systems for reporting and managing misuse. Without such legislation, the emblem lacks the legal grounding needed to build trust and prevent abuse.
Emma Cunliffe stated that Blue Shield emblems are not legislated in most countries and that this needs to change to prevent misuse, contrasting this with the Red Cross which is legislated in almost every country . She noted that countries need to identify what they class as digital heritage and that civil society and government institutions are moving faster than government policy and legislation in this area . She also referenced cases of misuse found in Blue Shield's study, noting the need for better systems to manage and support compliance .
on: Whether existing legal frameworks are sufficient or whether national legislation is additionally required for effective protection
Under-resourcing in the heritage sector is a significant barrier - The cultural heritage sector is severely under-resourced and often relies on outdated technology and low technical know-how, making out-of-the-box standardised solutions and multi-partner approaches essential
Arg. 6Emma Cunliffe highlighted that the cultural heritage sector is fundamentally under-resourced, running largely on passion rather than adequate funding, and that its digital infrastructure is often outdated. Technical know-how is very low outside major institutions, making it unrealistic to expect heritage organisations to implement complex technical solutions without significant support. She therefore welcomed the prospect of standardised, out-of-the-box solutions and emphasised the need for a multi-partner approach involving civil society, governments, international agencies, and funders.
Emma Cunliffe described the heritage sector as one that really runs on love and interest, with technology that is often very old and technical know-how that is very low outside major institutions . She expressed enthusiasm for out-of-the-box standardised solutions that can help people who would not otherwise understand how to apply technical protections . She also described the need for a multi-partner approach involving civil society, NGOs, governments, UNESCO, and funders as the only way to make this work .
on: Capacity building and inclusivity must be central to the project to ensure the digital emblem works for all states and organisations, not just well-resourced ones
on: The degree to which the digital emblem is technically ready for broad deployment versus requiring significant further development
Multi-stakeholder approach is essential - Successful deployment requires collaboration among civil society, NGOs, governments, international agencies such as UNESCO, and funders, as no single actor can achieve the necessary scale alone
Arg. 7Emma Cunliffe argued that deploying the digital emblem for cultural heritage protection at the necessary scale requires a genuinely multi-stakeholder approach, bringing together civil society, NGOs, governments, international agencies such as UNESCO, and major funding bodies. No single actor has the reach, resources, or authority to achieve this alone. She expressed optimism that the level of interest and desire across these communities makes such collaboration achievable.
Emma Cunliffe described a vision in which major funding bodies that fund heritage preservation in crisis areas - which already do significant digitisation work - could become key advocates for the digital emblem and help connect heritage organisations with their governments . She concluded that a multi-partner approach of civil society, NGOs, governments, UNESCO, and funders is the only way to make this work, but expressed hope given the strong interest and desire she observed .
on: A multi-stakeholder approach involving legal, technical, governmental, civil society, and industry actors is essential for the digital emblem to succeed
Session framing and context - The digital emblem project has moved from Phase 1 discussions to Phase 2 prototype testing, with a demo held at CERN, representing a significant milestone in translating IHL protections into the digital domain
Arg. 1Joelle Rizk provided the framing context for the session, explaining that the Digital Emblem Project has progressed from Phase 1 — which involved discussions around formulation, elaboration, and development — to Phase 2, which involves prototype testing and demonstration. A significant milestone was the demo held at CERN the day before the session, attended by ICRC colleagues, industry stakeholders, and others. This transition marks a concrete step towards translating IHL protections into the digital domain.
Joelle Rizk described attending the CERN event the previous day to launch Phase 2 of the digital emblem project, which involved a prototype demonstration . She explained that Phase 2 represents a move from discussions around formulation and elaboration to actual testing and demonstration of technical solutions .
Real-world consequences of unprotected digital infrastructure - Cyberattacks on medical services or humanitarian databases during armed conflict can result in loss of life or obstruction of protection services, such as tracing missing persons, underscoring the urgency of the project
Arg. 2Joelle Rizk closed the session by emphasising the real-world stakes of the Digital Emblem Project, noting that cyberattacks on medical services during armed conflict can have life-or-death consequences for civilians. Similarly, attacks on humanitarian databases can obstruct the delivery of protection services, including the tracing of missing persons. These consequences underscore the urgency and importance of developing a reliable digital emblem.
Joelle Rizk stated that an attack against a medical service in cyberspace during armed conflict could mean life and death to civilians . She also noted that an attack against a humanitarian organisation's database could hinder the delivery of protection services, including finding people who have gone missing .
on: The digital emblem is necessary to bridge the gap between existing IHL protections and the digital domain
The project's core purpose is simple despite its complexity - The digital emblem aims to make IHL protections visible, detectable, and verifiable in cyber operations during armed conflict, combining legal norms with technical standards
Arg. 3Joelle Rizk summarised the Digital Emblem Project's core purpose as making existing IHL protections visible, detectable, and verifiable in the context of cyber operations during armed conflict. While the project is technically and legally complex — requiring the combination of legal norms with technical standards — its fundamental aim is straightforward. She characterised it as an ambitious yet complex project with a simple underlying purpose.
Joelle Rizk stated that the project's purpose is to make international humanitarian law protections visible, detectable, and verifiable in cyber operations during armed conflict . She described it as a very ambitious yet very complex project that combines legal norms and technical standards .
on: A multi-stakeholder approach involving legal, technical, governmental, civil society, and industry actors is essential for the digital emblem to succeed
Concern about unequal digital capacity across countries - Even in developed countries, digital infrastructure capacity varies significantly, and the situation is considerably worse in developing countries and conflict zones, raising questions about equitable implementation
Arg. 1The audience member raised a concern about the unequal capacity of different countries to implement the digital emblem, noting that even in developed countries the technical capacity to implement such solutions is not uniform. The situation is considerably worse in developing countries and in countries currently experiencing armed conflict, where the need for protection is most acute. She questioned how the project addresses these disparities from both a legal and technical perspective.
The audience member noted that while health infrastructure is legally protected in many countries, this has not translated into digital protection in most of them . She observed that even in developed countries, the capacity to implement the proposed solutions is not uniform, and that the impact is even worse in developing countries and conflict zones .
on: Capacity building and inclusivity must be central to the project to ensure the digital emblem works for all states and organisations, not just well-resourced ones
on: Whether the digital emblem can realistically achieve equitable implementation across countries with vastly different digital capacities
Session Knowledge Graph
Speakers · Topics · Arguments · Relationships
All speakers converge on the view that cyber operations are now a reality of armed conflict and that medical, humanitarian, and cultural heritage organisations depend on digital infrastructure that currently lacks a means of signalling its legal protection . Joelle Rizk framed the session around this gap , Samit D'Cunha provided the legal basis , Mauro Vignati described the technical response , Tommy Jensen explained the interoperability imperative , Emma Cunliffe confirmed the same challenge exists for cultural heritage , and Joelle Rizk underscored the life-or-death stakes .
Gap in digital protection - Cyber operations are now a reality of armed conflict, yet there is currently no standardised means of identifying and signalling the legal protection of medical and humanitarian digital infrastructure
Reuse of existing internet technologies - The digital emblem builds on widely adopted technologies such as WebPKI and the Domain Name System (DNS), rather than reinventing the wheel, ensuring compatibility with existing internet infrastructure
Interoperability as the core technical requirement - Standardised protocols prevent aggressors and protected entities from having to manually negotiate bespoke signalling arrangements, making the system practically deployable across all parties to a conflict
Parallel legal framework for cultural heritage - The 1954 Hague Convention established the Blue Shield emblem to protect cultural property in armed conflict, and this framework faces the same challenge of extending protection to digital cultural heritage
Real-world consequences of unprotected digital infrastructure - Cyberattacks on medical services or humanitarian databases during armed conflict can result in loss of life or obstruction of protection services, such as tracing missing persons, underscoring the urgency of the project
Mauro Vignati stressed that standardisation is very important because everyone must talk the same technological language to enable consistent interaction from different regions and countries . Tommy Jensen reinforced this by noting that without standardised protocols, parties on different sides of a conflict would need to manually invent bespoke signalling arrangements, which is practically unworkable , and that open standardisation through the IETF allows experts to identify flaws before deployment . Samit D'Cunha provided historical precedent, noting that ITU and ICAO standards were directly incorporated into IHL via Annex I of Additional Protocol I , demonstrating that technical standardisation and legal frameworks have been successfully integrated before.
Standardisation as a prerequisite for interoperability - A common technological language is essential so that entities from different regions and countries can interact with the digital emblem in a consistent and reliable way
Interoperability as the core technical requirement - Standardised protocols prevent aggressors and protected entities from having to manually negotiate bespoke signalling arrangements, making the system practically deployable across all parties to a conflict
Security benefits of open standardisation - Bringing the digital emblem to expert bodies like the IETF allows specialists across fields to identify and address flaws before deployment, improving the robustness and trustworthiness of the standard
Evolution of identification signals - Beyond visual emblems, the 1970s saw the development of electromagnetic and light frequency signals standardised through the ITU and ICAO, which were incorporated directly into international humanitarian law via Additional Protocol I
Samit D'Cunha explicitly stated that no new protection needs to be created because the existing protection is already broad and unqualified, covering all domains including cyberspace . Joelle Rizk echoed this in her closing remarks, summarising the project's purpose as making IHL protections visible, detectable, and verifiable in cyber operations during armed conflict , and framing it as a project that combines legal norms with technical standards rather than creating new legal categories .
No new legal protections needed - The existing IHL protections are already broad and unqualified, covering all domains including cyberspace; the digital emblem is about making those existing protections visible and identifiable, not creating new ones
The project's core purpose is simple despite its complexity - The digital emblem aims to make IHL protections visible, detectable, and verifiable in cyber operations during armed conflict, combining legal norms with technical standards
Tommy Jensen argued that if medical personnel must become computer networking experts to manage an emblem, the problem has not been operationally solved, and identified industry's role as making deployment accessible through out-of-the-box solutions . Emma Cunliffe independently arrived at the same conclusion from the cultural heritage perspective, noting that the sector runs on love and interest with very old technology and low technical know-how outside major institutions , and expressed enthusiasm for standardised solutions that can help people who would not otherwise understand how to apply technical protections . Mauro Vignati described a cascading model whereby early adopters help others, spreading knowledge and capability .
Productising the standard for operational use - Technical standards alone are insufficient; industry must translate them into out-of-the-box solutions so that non-technical users, such as medical personnel, can deploy and manage emblems without requiring expertise in computer networking
Under-resourcing in the heritage sector is a significant barrier - The cultural heritage sector is severely under-resourced and often relies on outdated technology and low technical know-how, making out-of-the-box standardised solutions and multi-partner approaches essential
Cascading knowledge-sharing model - Early adopters such as major national societies can help others implement the emblem, creating a cascading effect that spreads technical capability across the movement
The audience member raised the concern that even in developed countries, capacity to implement digital solutions is unequal, and the situation is considerably worse in developing countries and conflict zones . All panellists responded affirmatively. Samit D'Cunha referenced Resolution 2 of the 2024 International Conference, which calls on states to provide capacity building , and stressed the need for testing to reflect global diversity . Tommy Jensen argued that the technical design must accommodate 2G cellular connectivity as a minimum, since excluding parties is a non-starter . Mauro Vignati described a cascading model for spreading implementation knowledge . Emma Cunliffe highlighted the severe under-resourcing of the heritage sector and the need for multi-partner approaches .
Legal capacity building is integral to the project - Resolution 2 of the 2024 International Conference calls on states to provide capacity building to those that need it, and national societies are identified as essential partners in building state capacity to implement IHL protections
Diversity in testing must reflect global needs - Testing of the digital emblem must extend beyond well-resourced national societies such as the British and Australian Red Cross to include societies in Asia, Africa, and South America, so that the solution works for all
Technical design must accommodate severely constrained environments - The digital emblem must function in very poor networking conditions, including 2G cellular connectivity, as excluding parties due to infrastructure limitations is not acceptable
Cascading knowledge-sharing model - Early adopters such as major national societies can help others implement the emblem, creating a cascading effect that spreads technical capability across the movement
Under-resourcing in the heritage sector is a significant barrier - The cultural heritage sector is severely under-resourced and often relies on outdated technology and low technical know-how, making out-of-the-box standardised solutions and multi-partner approaches essential
Concern about unequal digital capacity across countries - Even in developed countries, digital infrastructure capacity varies significantly, and the situation is considerably worse in developing countries and conflict zones, raising questions about equitable implementation
The session as a whole demonstrated consensus that no single actor or domain can deliver the digital emblem alone. Samit D'Cunha noted that the ICRC has been working with states, industry actors, technical experts, and national societies , and that Resolution 2 calls on states to support capacity building . Tommy Jensen identified industry's specific role in productising the standard . Emma Cunliffe described a multi-partner approach of civil society, NGOs, governments, UNESCO, and funders as the only way to make this work . Mauro Vignati outlined the role of standardisation bodies such as the ITU and IETF . Joelle Rizk framed the project as one that combines legal norms and technical standards .
Legal capacity building is integral to the project - Resolution 2 of the 2024 International Conference calls on states to provide capacity building to those that need it, and national societies are identified as essential partners in building state capacity to implement IHL protections
Productising the standard for operational use - Technical standards alone are insufficient; industry must translate them into out-of-the-box solutions so that non-technical users, such as medical personnel, can deploy and manage emblems without requiring expertise in computer networking
Multi-stakeholder approach is essential - Successful deployment requires collaboration among civil society, NGOs, governments, international agencies such as UNESCO, and funders, as no single actor can achieve the necessary scale alone
Next steps towards deployment - The immediate priorities are finalising standardisation at the ITU and IETF, reaching broad agreement on the technology, and then deploying the emblem to entities authorised to display it
The project's core purpose is simple despite its complexity - The digital emblem aims to make IHL protections visible, detectable, and verifiable in cyber operations during armed conflict, combining legal norms with technical standards
Both Mauro Vignati and Tommy Jensen independently emphasised that the digital emblem should build on existing, widely adopted internet technologies rather than requiring a wholesale reinvention of internet infrastructure. Mauro Vignati stated that the project is not completely reinventing the wheel and is reusing technologies already widely adopted on the internet, specifically mentioning WebPKI and DNS . Tommy Jensen echoed this, noting that the selection of technology is such that there does not have to be a huge reinvention of how internet routing works to accomplish it . Both saw this approach as essential for practical deployability and broad adoption. Both Samit D'Cunha and Emma Cunliffe drew on the historical development of physical emblems under IHL to contextualise the need for a digital emblem. Samit D'Cunha traced the Red Cross emblem to the 1864 Geneva Convention and its evolution through to the 1970s Distinctive Signal . Emma Cunliffe described the parallel development of the Blue Shield under the 1954 Hague Convention . Both also acknowledged that the physical emblem systems, while well-established in law, face implementation challenges that the digital emblem must learn from — Samit D'Cunha noting the gap in digital identification and Emma Cunliffe noting that fewer than 10 countries legislate the Blue Shield despite 140 signatories . Tommy Jensen and Emma Cunliffe converged strongly on the need for out-of-the-box solutions that do not require end users to be technical experts. Tommy Jensen argued from an operational perspective that if medical personnel must become computer networking experts to manage an emblem, the problem has not been solved . Emma Cunliffe arrived at the same conclusion from the cultural heritage sector's perspective, noting that technical know-how is very low outside major institutions and that she was excited to hear of solutions that can be a bit more out of the box . Both identified this as a critical condition for practical deployment. Both Samit D'Cunha and Emma Cunliffe stressed the importance of national legislation as a foundation for the effective implementation and trust-building of emblem systems. Samit D'Cunha noted that national societies have historically been essential in building state capacity to implement IHL, and that Resolution 2 calls on states to provide capacity building . Emma Cunliffe argued that Blue Shield emblems are not legislated in most countries and that this needs to change to prevent misuse, contrasting this with the Red Cross which is legislated in almost every country . Both saw national legislation as a prerequisite for credibility and enforcement. Both Mauro Vignati and Samit D'Cunha described a model in which early adopters of the digital emblem — particularly well-resourced national societies such as the British Red Cross and Australian Red Cross — act as champions to help others implement the emblem. Mauro Vignati described this as a cascading effect where major actors help others, spreading knowledge and capability . Samit D'Cunha similarly noted that early adopters should become champions in their region to help others use the digital emblem, and stressed the need for testing to represent the full diversity of national societies across all regions .
It might not have been anticipated that the cultural heritage sector, represented by Emma Cunliffe of Blue Shield International, would so closely mirror the challenges and solutions identified by the ICRC's legal and technical leads. Emma Cunliffe confirmed that the cultural sector has advanced significantly in its use of digital technologies and that some cultural heritage - such as records of destroyed sites like Palmyra - exists only in digital form , presenting the same identification gap as medical and humanitarian infrastructure . Tommy Jensen's argument about productising the standard for non-technical users was immediately recognised by Emma Cunliffe as directly applicable to the heritage sector . This convergence across two distinct IHL frameworks - the Geneva Conventions and the Hague Convention - was a notable area of unexpected consensus, suggesting the digital emblem could serve as a common solution across multiple protective regimes.
Given the well-known divergence among states on how IHL applies to cyberspace - including contested questions about the definition of 'attack' and whether data constitutes an 'object' - it might have been expected that legal uncertainty would pose a significant obstacle to the digital emblem project. However, Samit D'Cunha and Joelle Rizk converged on the unexpected finding that there is already sufficient legal consensus to proceed. Samit D'Cunha noted that while there is diversity of views on many cyber-IHL questions , the specific obligation to respect and protect medical services is clearly agreed upon, as evidenced by over a dozen individual state positions , common EU and African positions , and Resolution 2 of the 2024 International Conference adopted by 196 states . Joelle Rizk reinforced this by framing the project not as one requiring new law but as one making existing protections visible . This consensus was unexpected given the broader legal uncertainty in the cyber-IHL space.
It was somewhat unexpected that the technical community, represented by Tommy Jensen and Mauro Vignati, so readily and explicitly accepted the requirement to design for severely constrained environments such as 2G cellular connectivity, without treating this as an aspirational or secondary goal. Tommy Jensen stated unequivocally that designing for better connectivity and thereby excluding parties is a non-starter , and that the emblem must be readily deployable anywhere by anyone . This was reinforced by Mauro Vignati's choice of DNS as the first protocol precisely because of its universal adoption , and by Samit D'Cunha's insistence that testing must reflect the full diversity of national societies globally . The consensus that inclusivity is a hard technical requirement - not merely a desirable feature - was a notably strong and unified position.
The discussion revealed a remarkably high level of consensus across all speakers on the core purpose, legal basis, technical approach, and deployment challenges of the Digital Emblem Project. All speakers agreed that: (1) existing IHL protections for medical and humanitarian services are broad and unqualified but lack a digital signalling mechanism ; (2) technical standardisation through bodies such as the IETF and ITU is essential for interoperability and security ; (3) the project should build on existing internet technologies rather than reinventing infrastructure ; (4) out-of-the-box solutions are needed for non-technical users ; (5) capacity building and inclusivity - including design for severely constrained networking environments - are non-negotiable requirements ; and (6) a multi-stakeholder approach involving legal, technical, governmental, civil society, and industry actors is essential . The cultural heritage dimension, represented by Emma Cunliffe, added an unexpected but strongly convergent parallel framework, suggesting the digital emblem could serve multiple protective regimes under IHL simultaneously.
Samit D'Cunha argued that no new legal protections are needed because the existing IHL obligation to respect and protect medical services is already broad and unqualified, covering all domains including cyberspace . Emma Cunliffe, by contrast, emphasised that national legislation is a critical prerequisite for effective protection, noting that Blue Shield emblems are not legislated in most countries and that fewer than 10 countries were found to have legislated the emblem in spot checks . She argued that legislation is needed to define digital heritage, formally recognise the emblem, and establish systems for reporting misuse . While both speakers support the digital emblem, they differ on whether the existing international legal framework is sufficient or whether domestic legislative action is an essential additional step.
No new legal protections needed - The existing IHL protections are already broad and unqualified, covering all domains including cyberspace; the digital emblem is about making those existing protections visible and identifiable, not creating new ones
Need for national legislation to prevent misuse - Legislating both the definition of digital heritage and the use of the Blue Shield emblem is essential to build trust, prevent misuse, and ensure that IHL protections are formally recognised at the national level
Mauro Vignati presented the ADEM prototype as already functional, publicly available on GitHub, and being actively tested with national societies including the British Red Cross and Australian Red Cross . He outlined a clear path to deployment through finalising standardisation at the ITU and IETF . Tommy Jensen, while supportive, implicitly cautioned that the prototype still needs expert scrutiny through bodies like the IETF to identify flaws before deployment, suggesting it is not yet fully refined . Emma Cunliffe introduced a more sobering perspective, highlighting that the heritage sector runs on outdated technology and very low technical know-how outside major institutions, and that the technological investment needed is currently lagging behind . This creates a tension between the technical team's optimism about the prototype's readiness and the practical deployment realities faced by intended users.
Current prototype status - The ADEM prototype, developed with ETH Zurich, is publicly available on GitHub and is already being tested with national societies including the British Red Cross and Australian Red Cross, with a public verification tool available online
Security benefits of open standardisation - Bringing the digital emblem to expert bodies like the IETF allows specialists across fields to identify and address flaws before deployment, improving the robustness and trustworthiness of the standard
Under-resourcing in the heritage sector is a significant barrier - The cultural heritage sector is severely under-resourced and often relies on outdated technology and low technical know-how, making out-of-the-box standardised solutions and multi-partner approaches essential
The audience member challenged the panel by pointing out that even in developed countries the capacity to implement the proposed solutions is not uniform, and that the situation is considerably worse in developing countries and conflict zones where protection is most needed . Tommy Jensen responded by acknowledging the constraint, referencing a presentation at the IETF noting that infrastructure in Palestine was at one point limited to 2G cellular connectivity, and arguing that the emblem must be designed to perform in very poor networking conditions . Mauro Vignati proposed a cascading knowledge-sharing model whereby major actors help others , while Samit D'Cunha acknowledged that testing must represent global diversity and that only the British and Australian Red Cross have so far implemented the emblem . The audience member's challenge exposed a gap between the project's aspirations for universality and the current reality of its implementation, which the panellists acknowledged but addressed with varying degrees of specificity.
Concern about unequal digital capacity across countries - Even in developed countries, digital infrastructure capacity varies significantly, and the situation is considerably worse in developing countries and conflict zones, raising questions about equitable implementation
Technical design must accommodate severely constrained environments - The digital emblem must function in very poor networking conditions, including 2G cellular connectivity, as excluding parties due to infrastructure limitations is not acceptable
Cascading knowledge-sharing model - Early adopters such as major national societies can help others implement the emblem, creating a cascading effect that spreads technical capability across the movement
Diversity in testing must reflect global needs - Testing of the digital emblem must extend beyond well-resourced national societies such as the British and Australian Red Cross to include societies in Asia, Africa, and South America, so that the solution works for all
Given that all speakers were broadly aligned in supporting the digital emblem project, it was unexpected that they implicitly disagreed on what the primary barrier to deployment is. Samit D'Cunha suggested that the legal foundation is largely in place - pointing to broad state consensus on protecting medical services in cyberspace and Resolution 2 of the 2024 International Conference - implying the main remaining challenge is technical identification. Mauro Vignati and Tommy Jensen focused on technical standardisation as the key remaining step . Emma Cunliffe, however, introduced an unexpected dimension by highlighting that national legislation is largely absent even for the physical Blue Shield in most countries , and that the heritage sector's under-resourcing means even a finalised standard may not be deployable in practice . This implicit disagreement about whether the primary bottleneck is legal, technical, or operational/resource-based was not directly debated but emerged through the different framings each speaker brought to the discussion.
It was unexpected that the two national societies highlighted as having successfully implemented the ADEM prototype - the British Red Cross and the Australian Red Cross - are among the most well-resourced in the world. The audience member pointed out that the impact of unequal digital capacity is worst precisely in developing countries and conflict zones , which are the environments where the emblem is most urgently needed. Samit D'Cunha acknowledged this tension by noting that testing must represent global diversity and that early adopters should become champions for others , but this acknowledgement implicitly confirmed that the project's current implementation is concentrated among well-resourced actors. This was an unexpected tension given the project's stated universal ambitions under IHL, which applies to all 196 states party to the Geneva Conventions .
The session was characterised by a high degree of consensus among all speakers regarding the importance and purpose of the digital emblem project. All speakers supported the project's goals of making IHL protections visible, detectable, and verifiable in the digital domain . The main areas of implicit disagreement concerned: (1) whether existing international legal frameworks are sufficient or whether national legislation is an essential additional requirement ; (2) the degree of technical readiness of the prototype for broad deployment versus the need for further expert refinement and productisation ; (3) the primary barrier to deployment - legal, technical, or operational/resource-based; and (4) the project's current skew towards well-resourced national societies despite its universal aspirations . The audience member's intervention was the most direct source of challenge, exposing a gap between the project's aspirations and current implementation realities that the panellists addressed with varying degrees of specificity.
Both Mauro Vignati and Tommy Jensen agreed that the digital emblem should build on existing internet technologies rather than reinventing the wheel , and that standardisation is essential for interoperability . However, they differed in emphasis: Mauro focused on the practical choice of DNS as the first protocol and the current state of the prototype , while Tommy stressed the importance of bringing the standard to expert bodies like the IETF so that specialists can identify flaws and refine it before deployment . Mauro's framing suggested the technology is largely settled, whereas Tommy's framing implied it still requires significant expert scrutiny and refinement.
Reuse of existing internet technologies - The digital emblem builds on widely adopted technologies such as WebPKI and the Domain Name System (DNS), rather than reinventing the wheel, ensuring compatibility with existing internet infrastructure Interoperability as the core technical requirement - Standardised protocols prevent aggressors and protected entities from having to manually negotiate bespoke signalling arrangements, making the system practically deployable across all parties to a conflict
Both Samit D'Cunha and Emma Cunliffe agreed that a multi-stakeholder approach involving states, national societies, and international organisations is essential for successful deployment . However, they differed on the primary mechanism: Samit emphasised the role of national Red Cross and Red Crescent societies as capacity-building champions within the existing IHL framework, referencing Resolution 2 of the 2024 International Conference , while Emma placed greater emphasis on the role of UNESCO, major funding bodies, and civil society organisations as advocates and enablers, particularly given the under-resourcing of the heritage sector . Their visions of the multi-stakeholder coalition are complementary but reflect different institutional priorities.
Legal capacity building is integral to the project - Resolution 2 of the 2024 International Conference calls on states to provide capacity building to those that need it, and national societies are identified as essential partners in building state capacity to implement IHL protections Multi-stakeholder approach is essential - Successful deployment requires collaboration among civil society, NGOs, governments, international agencies such as UNESCO, and funders, as no single actor can achieve the necessary scale alone
Both Tommy Jensen and Emma Cunliffe agreed that out-of-the-box, standardised solutions are essential for non-technical users to be able to deploy the digital emblem . Tommy framed this as the role of industry in productising the standard so that medical personnel do not need to become computer networking experts , while Emma framed it as a necessity given the severe under-resourcing and low technical know-how in the heritage sector . They agreed on the need for accessible solutions but approached the problem from different angles — Tommy from an industry supply perspective and Emma from a user demand and resource constraint perspective.
Productising the standard for operational use - Technical standards alone are insufficient; industry must translate them into out-of-the-box solutions so that non-technical users, such as medical personnel, can deploy and manage emblems without requiring expertise in computer networking Under-resourcing in the heritage sector is a significant barrier - The cultural heritage sector is severely under-resourced and often relies on outdated technology and low technical know-how, making out-of-the-box standardised solutions and multi-partner approaches essential
- The digital emblem project seeks to translate existing International Humanitarian Law (IHL) protections for medical services and humanitarian organisations into the digital domain, addressing a critical gap whereby cyber operations in armed conflict currently lack a standardised means of signalling these protections.
- No new legal protections are required; the existing IHL obligations to respect and protect medical services and humanitarian personnel are already broad and unqualified, covering all domains including cyberspace. The digital emblem is about making those existing protections visible, detectable, and verifiable.
- There is broad international consensus, affirmed in Resolution 2 of the 2024 International Conference of the Red Cross and Red Crescent (representing 196 states party to the Geneva Conventions), that the obligation to respect and protect medical services applies to cyber activities, providing a solid legal foundation for the project.
- The digital emblem builds on widely adopted existing internet technologies, particularly the Domain Name System (DNS) and WebPKI, rather than creating entirely new infrastructure, ensuring compatibility with existing internet systems.
- Standardisation through bodies such as the IETF and ITU is essential to ensure interoperability across all parties to a conflict, prevent bespoke bilateral arrangements, and allow security experts to identify and address flaws before deployment.
- The ADEM prototype, developed with ETH Zurich, is publicly available on GitHub and is already being tested with national societies including the British Red Cross and Australian Red Cross, with a public verification tool available online.
- Technical standards alone are insufficient; industry must productise the solution into out-of-the-box deployments so that non-technical users, such as medical personnel or heritage professionals, can apply and manage emblems without requiring expertise in computer networking.
- The Blue Shield emblem for cultural heritage protection under the 1954 Hague Convention faces parallel challenges in extending protection to digital cultural heritage, and UNESCO member states have approved guidelines that include recommendations for the use of the digital emblem in this context.
- Capacity building is integral to the project's success, with Resolution 2 of the 2024 International Conference calling on states to support those with lesser capacity, and national societies identified as essential partners in cascading technical knowledge and implementation capability.
- The digital emblem must function in severely constrained networking environments, including 2G cellular connectivity, to ensure that parties in under-resourced or conflict zones are not excluded from its protections.
- Real-world consequences of unprotected digital infrastructure are severe: cyberattacks on medical services can cost lives, and attacks on humanitarian databases can obstruct critical protection services such as tracing missing persons.
- A multi-stakeholder approach involving civil society, NGOs, governments, international agencies such as UNESCO, and private industry is essential for successful deployment at scale.
“In the 1970s, it was understood that we could no longer only rely on a visual confirmation of an emblem. So in the 1970s, working through the ITU, as well as the International Civil Aviation Organization, something was developed called the Distinctive Signal — electromagnetic signals, radio frequencies — that were standardised as the means of identifying specific protection in situations of armed conflict, and those standards were directly incorporated into international humanitarian law.”
“A party to a conflict that deletes patient data of a hospital or that interferes with medical equipment through a cyber operation — this is clearly a violation of their obligation to protect the medical services. It's not a question of whether what they did is an attack or whether that data is an object — that decides the point because there is this obligation in a conflict to protect the medical services.”
“We don't need to create a new protection because the protection is already there — broad and unqualified. Whether that's in the physical space, through outer space, through cyberspace, from the air, at sea, you cannot unduly interfere with [the medical services].”
“This problem of needing to be able to signal the existence of protections on a given asset is probably the best example I've ever seen of a need for interoperability... When a standard exists, then private industry can provide product-type solutions so that things can be deployed more out of the box... Having experts across areas be able to refine it will make it even better in ways we won't predict that will benefit everyone for the decades to come that this needs to work.”
“If a medical personnel has to become an expert in computer networking in order to remove an emblem from an asset as ground is being surrendered to an incoming force, the problem has not been operationally solved. That is the role that industry can play — vendors make this easy to deploy, out-of-the-box solutions, that we make it easier for the people who need to use it that shouldn't have to be technical experts.”
“There are whole areas now of cultural heritage that only exist online — records of sites like the destroyed areas of Palmyra or the Berlin Wall that don't exist anymore — and they only exist in these digital forms. So we've been really excited to work with and learn from the ICRC to understand how we might also adopt a digital emblem to say these things are also protected.”
“Within Palestine at one point the infrastructure available was limited to 2G cellular connectivity and that was it. When we design new technical protocols today, we don't really think of 2G as something we still need to support... Because if we do that, we are excluding parties, which is obviously a non-starter. It has to be something that's readily deployable anywhere by anyone.”
“The big problem that we have in the heritage world is that fundamentally it's very under-resourced... a lot of technology is often very old. And the technical know-how, unless you're in a major institution, is very, very low. So one of the things I was very excited to hear yesterday was this talk of solutions that will be standardised, that can be a bit more out of the box, that we can literally help people who otherwise are not going to understand how to apply these technical protections.”
How can the digital emblem be made visible, verifiable, and detectable in practical cyber operations during armed conflict?
Joelle explicitly noted she wanted to return to Mauro to discuss further the need for the digital emblem to be visible, verifiable, and detectable, but ran out of time. This is a core technical requirement of the project that was only partially addressed, and understanding how these properties are achieved in practice is essential for the emblem's credibility and effectiveness.
How can the digital emblem be designed to function effectively under very poor or constrained networking conditions, such as 2G connectivity, to ensure inclusivity for developing countries?
Janine raised the issue of unequal technical capacity across countries, and Tommy acknowledged that the protocol must perform in very constrained environments. This remains an open technical design requirement that needs further research and testing to ensure the emblem is genuinely deployable globally, not just in well-resourced contexts.
How can capacity building be structured to ensure that national societies and states in Asia, Africa, and South America can effectively test and deploy the digital emblem, not just well-resourced societies like the British and Australian Red Cross?
Samit acknowledged that current testing is limited to the British and Australian Red Cross and that broader geographic representation is needed. Ensuring equitable access to the digital emblem across diverse regions is critical to the project's legitimacy and universal applicability under IHL.
What national legislation needs to be developed or updated in countries that have signed the Hague Convention to formally recognise digital heritage, legislate the Blue Shield emblem, and establish systems to report and manage misuse?
Emma highlighted that fewer than 10 countries legislate the Blue Shield emblem and that most countries have not defined what constitutes digital heritage. Without this legal foundation, the digital emblem cannot be meaningfully enforced or protected from misuse, making legislative reform a critical area for further work.
How can major funding bodies that support heritage preservation and digitisation projects be engaged as advocates and enablers for the adoption of the digital emblem in under-resourced countries?
Emma suggested that large funders involved in digitisation work in crisis areas could be key advocates for the digital emblem and could help build the digital infrastructure needed for its deployment. This is an unexplored partnership avenue that warrants further investigation and outreach.
How can the standardisation process at the IETF and ITU be finalised and what further steps are needed to move from the ADEM prototype to a fully standardised and deployable digital emblem?
Mauro explained that standardisation is still ongoing and that the ADEM prototype is not the final version. The path from prototype to agreed standard to practical deployment involves multiple technical and institutional steps that remain to be completed, making this a key area for continued research and coordination.
How can the digital emblem be 'productised' by the tech industry so that it can be deployed out of the box by non-technical users, such as medical personnel or heritage professionals, without requiring expertise in computer networking?
Both Tommy and Emma stressed that the technical solution alone is insufficient if it cannot be easily deployed by people without technical expertise. The role of industry in creating accessible, ready-to-use solutions is an important area that requires further collaboration between the ICRC, standards bodies, and commercial technology vendors.
How can the legal protection of medical services and humanitarian operations under IHL be translated into the digital domain without creating new legal categories, and how should existing protections be interpreted to cover digital infrastructure?
Joelle explicitly asked how existing protections can be translated to digital infrastructure without creating new legal frameworks. While Samit provided a partial answer, the broader question of how IHL obligations apply to specific digital assets and operations remains an area of ongoing legal debate and research, particularly given the diversity of state views on how IHL applies to cyberspace.
How should the concept of 'digital heritage' be defined and standardised across jurisdictions so that it can be formally recognised and protected under IHL and the Hague Convention?
Emma noted that governments and civil society are moving faster than legislation in recognising digital heritage, and that countries need to formally identify what qualifies as digital heritage deserving of protection. Without a shared definition, the scope of the digital emblem's application to cultural property remains unclear and inconsistent.
What mechanisms can be established to detect, report, and address misuse of the digital emblem, particularly in contexts where legislation and oversight systems are currently absent?
Emma identified cases of misuse of the Blue Shield emblem and noted that systems to manage and report misuse do not currently exist in most countries. Preventing misuse is essential to maintaining the trust and credibility of the digital emblem, and developing robust oversight mechanisms is a critical area for further policy and operational research.
