Digital Identity
Nafath and Digital Identity: How to Handle a Login Request?
A secure explanation of the login journey via Nafath (National Access) and verifying the entity and the request before approval.
Nafath is a method to verify digital identity when logging into linked entities and services. Start the request from the website of the entity you want, then review the entity name and the number or details of the request in the official channel before approving. Reject any request you did not start yourself, and never share a code or notification.
Key points
- Start your login from the entity's website, not from an unsolicited message.
- Match the entity name and request number before approving.
- Reject the request if you didn't initiate it or if the details differ.
- An account issue with the entity is different from a digital identity issue.
What you need to know
Nafath (National Access) acts as an identity verification bridge between the user and the digital entity. Successful verification does not mean the entity’s transaction is complete; after being returned, you may need to complete a form, upload a document, or give consent within the original service.
The most important security step is to link the approval notification to an attempt you just initiated. Check the entity name and the displayed number or description, and do not approve a request that arrives while you are not using the service. If the unknown request recurs, change your security details and contact the official channel.
When login fails, identify where the failure occurred: did the request not arrive, was approval not possible, or did Nafath succeed but you were not returned to the entity? This distinction helps you contact the right party instead of retrying without a diagnosis.
Steps
Start at the entity's website
Choose 'Sign in with Nafath (National Access)' from the official page of the service you need.
Open the verification channel
Use the app or the official path displayed by the system to complete verification.
Match the request
Review the entity name, number, and timing, and make sure you initiated the attempt.
Approve or reject
Approve only if everything matches, and immediately reject if the request is unknown.
Return to the service
Make sure you are back on the original entity site, complete the form, and keep a record of the transaction status.
If something goes wrong
- If the request does not arrive, check your connection, account, and mobile phone, then restart the process from the entity.
- If approval succeeds but you are not returned to the service, reopen the original entity window and check for pop-up blockers or an expired session.
- If the entity name is unexpected, do not approve and make sure you entered the correct official link.
Frequently asked questions
Does Nafath carry out the government transaction?
No. Nafath verifies identity, while executing and completing the transaction is done with the entity that provides the service.
Should I share the request number with support?
You can mention a non-sensitive reference number when needed, but never share a verification code, password, or live approval.
Why did Nafath succeed but the service did not open?
The entity session may have expired or there may be a return error; check the entity window and try again from the beginning.
Is this website part of Nafath?
No. It is an independent guide and does not request your identity data.
Official sources
Open the official service — National Information Center
Last reviewed: