Vv TRUST AND VERIFY ## Certificate ID: EUCC-3110-2026-2500080-01 #### TrustCB B.V certifies that ICT Product of = TMCICAO v1.0 on TMCOS 4.0 0.5 in ICAO BAC configuration , version 1.0 Tongxin Microelectronics Co., Ltd F/1, Building B-1, Zhongguancun Dongsheng Technology Park Northern Territory, NO.66 Xixiaokou Road, Haidian District, Beijing, China Certificate contact: liuchao@tsinghuaic.com Certificate holder and developer Website link https://www.tsinghuaic.com/index/index/newsdetial/id/608?lang=en Complies to the requirements described in the Standard: ISO/IEC 15408-1:2022, -2:2022, -3:2022, -4:2022, -5:2022, Common Criteria for Information Technology Security Evaluation, CC:2022 R1 and ISO/IEC 18045:2022, Common Methodology for Information Technology Security Evaluation, CEM:2022 R1 EUCC-3110-2026-2500080-01 Certification Report version 1.0 ### Smart Cards and Similar Devices EUCC Level : High CC Package conformance : - EAL4 augmented with ADV_FSP.5, ADV_INT.2, ADV_TDS.4, ALC_CMS.5, ALC_DVS.2, ALC_FLR.1, ALC_TAT.2 and ATE_DPT.3 - Composite evaluation package (COMP) ### Protection Profile Conformance : - Protection Profile Machine Readable Travel Document with 'ICAO Application', Basic Access Control (MRTD-PP), Version 1.10, 25 March 2009, registered under the reference BSI-CC-PP-0055-2009 Applus+ located in Barcelona, Spain European Cybersecurity Certification Scheme (EUCC), (EU) 2024/482 of 31-012024, amended by (EU) 2024/3144 of 18-12-2024 and (EU) 2025/2462 of 08-12-2025 The Dutch Authority for Digital Infrastructure (RDI) #### Summarised as: Certification Report TOE type Assurance As evaluated by: Under scheme: Authorised by: This certificate is valid for five years from the latest stated issue date until, and including, the stated certificate expiry date unless otherwise suspended or withdrawn. Common Criteria Recognition Arrangement for components up to EAL2 and ALC_FLR.3 Date of 1 st issue : 18-09-2026 Certificate expiry: 18-09-2031 Wouter Slegers, CEO The IT product identified in this certificate has been evaluated at an accredited and licensed / approved evaluation facility using the Common Methodology for IT Security Evaluation (CEM:2022) for conformance to the Common Criteria for IT Security Evaluation (CC:2022). CC:2022 and CEM:2022 are also published as ISO/IEC 15408-1, 2, 3, 4, 5:2022 and ISO/IEC 18045:2022. This certificate applies only to the specific version and release of the product in its evaluated configuration and in conjunction with the complete certification report. The evaluation has been conducted in accordance with the provisions of (EU) 2024/482, the European Cybersecurity Certification Scheme (EUCC), and the conclusions of the evaluation facility in the evaluation technical report are consistent with the evidence adduced. This certificate is not an endorsement of the IT product by TrustCB B.V. or by any other organisation that recognises or gives effect to this certificate, and no warranty of the IT Product by TrustCB B.V. or by any other organisation that recognises or gives effect to this certificate, is either expressed or implied. TrustCB B.V. | www.trustcb.com | eucc@trustcb.com | Van den Berghlaan 48, 2132 AT Hoofddorp | The Netherlands