Skip to main content
Didit Yakusanya $7.5M Kujenga Miundombinu ya Utambulisho na Udanganyifu
Didit
White-label KYC

Chapa yako. Didit chini yake.

Uza tena au weka uthibitishaji wa utambulisho chini ya chapa yako. $0.33 + $0.20 ada ya white-label kwa kila ukaguzi, hakuna UI ya kujenga, hakuna compliance ya kudumisha. Uthibitishaji 500 bila malipo kila mwezi.

Inaungwa mkono na
Y CombinatorRobinhood Ventures
GBTC Finance
Bondex
Crnogorski Telekom
UCSF Neuroscape
Shiply
Adelantos

Inaaminika na mashirika 2,000+ duniani kote.

Mchoro wa sinema, giza, usioeleweka wa white-label-KYC, paneli nne za glasi zinazoelea, zinazopitisha mwanga katika mtazamo wa 3D kwenye nyeusi safi, zikipitishwa na mstari mweupe wa Didit Blue na zikizungukwa na mabano manne ya skana yanayong'aa. Kila paneli ina motifu ndogo, nyeupe-nyeupe isiyo dhahiri inayowakilisha chapa ya muuzaji (ncha ya brashi ya rangi, nukta za palette ya mandhari, dirisha la kivinjari lenye upau wa kichwa, kipande cha fumbo cha SDK).

Muuzaji anadaiwa nini

Tumia KYC kwa jina lako. Acha mambo ya kiufundi kwetu.

Sanidi rangi, fonti, nembo za mraba + mstatili, na domain yako maalum kwenye Kihariri cha Mitindo, washa Jumuisha mtindo maalum kwenye kila workflow. Mtumiaji ataona brand yako, domain yako, na mtiririko wako; wewe utapata iBeta Level 1 PAD (Presentation Attack Detection), uthibitisho wa Tesoro / SEPBLAC wa Uhispania, SOC 2 Type 1, na ISO/IEC 27001 kutoka Didit. Uthibitishaji 500 bila malipo kila mwezi.

Jinsi inavyofanya kazi

Kuanzia kujisajili hadi mtumiaji aliyethibitishwa kwa hatua nne.

  1. Hatua 01

    Unda mtiririko wa kazi

    Chagua ukaguzi unaotaka, ID, liveness, face match, vikwazo, anwani, umri, simu, barua pepe, maswali maalum. Ziburute kwenye mtiririko kwenye dashibodi, au tuma mtiririko huo huo kwenye API yetu. Panga masharti, fanya majaribio ya A/B, hakuna code inayohitajika.

  2. Hatua 02

    Unganisha

    Weka asili na Web, iOS, Android, React Native, au Flutter SDK yetu. Elekeza kwenye ukurasa uliopangishwa. Au tuma tu mtumiaji wako kiungo, kwa barua pepe, SMS, WhatsApp, popote. Chagua kinachofaa stack yako.

  3. Hatua 03

    Mtumiaji anapitia mtiririko

    Didit huandaa kamera, ishara za mwanga, uhamishaji wa simu, na ufikiaji. Wakati mtumiaji yuko kwenye mtiririko, tunapata alama za ishara 200+ za udanganyifu kwa wakati halisi na kuthibitisha kila sehemu dhidi ya vyanzo vya data vya mamlaka. Matokeo chini ya sekunde mbili.

  4. Hatua 04

    Unapokea matokeo

    Webhooks zilizosainiwa kwa wakati halisi huweka database yako sawa mara tu mtumiaji anapoidhinishwa, kukataliwa, au kutumwa kwa ukaguzi. Piga API inapohitajika. Au fungua console kukagua kila session, kila ishara, na kudhibiti kesi zako mwenyewe.

Imejengwa kwa wauzaji + waweka-ndani · Bei kama miundombinu

Vipengele sita. $0.53 gharama kwa kila ukaguzi.

White-label ni mfumo uleule wa Didit, ukiwa na nembo yako juu. Tengeneza mapishi: nembo, domain, SDK, workflow, bei, na compliance.
01 · Kihariri cha Mtindo

Badilisha nembo bila code.

Rangi, typography, nembo za mraba + mstatili, border radius, skrini ya hiari ya kuingia ya Didit kuwasha au kuzima. Preview inaonekana kwenye UI iliyopangishwa inayoonekana kama yako, si ya Didit. Imesanidiwa mara moja kwa kila akaunti, inatumika kwa kila workflow.
Moduli ya White Label
02 · Domain Maalum

Pangisha kwenye verify.yourbrand.com.

Lengo la CNAME = verify.didit.me, cheti cha TLS kinatolewa kiotomatiki kupitia Let's Encrypt, HSTS imewashwa kwa chaguo-msingi. Imethibitishwa ndani ya Business Console, hakuna kazi kwako.
Nyaraka za White Label
03 · SDKs · sehemu tano

Nembo moja. Kila runtime.

Usanidi uleule wa Style Editor unatumika kwenye Web, iOS (Swift), Android (Kotlin), React Native (TurboModules), na Flutter. SDKs ni bure; ada ya white-label inajumuisha branding kwa zote.
Workflow Orchestrator
04 · Nembo kwa kila workflow

Changanya zenye nembo na zisizo na nembo kwenye akaunti moja.

Washa 'Include custom style' kwa workflows zinazowakabili wateja, ZIMA kwa mtiririko wa kazi wa usimamizi wa ndani. Inafaa kwa wauzaji wa chapa nyingi, akaunti moja ya Didit, chapa nyingi za wateja wa mwisho, mtindo kwa kila workflow.
Nyaraka za Workflow
05 · Bei za Wauzaji

$0.53 cost in. You pick the sticker.

Kifurushi cha Didit KYC $0.33 + ada ya white-label $0.20 = $0.53 gharama kwa kila ukaguzi. Ongeza bei kwa mnunuzi wako kwa $0.99-$1.49; weka faida. Punguzo la wingi huanza kwa kiwango kikubwa, zungumza na mauzo.
Moduli ya Uthibitishaji wa Mtumiaji
06 · Ukaguzi Umehifadhiwa

Nembo yako. Compliance ileile.

iBeta Level 1 PAD, uthibitisho wa Tesoro / SEPBLAC wa Uhispania, SOC 2 Type 1, ISO/IEC 27001, upatanishi wa GDPR, uhifadhi wa miaka 5 kwa chaguo-msingi. Badilisha chapa; kiwango cha msingi cha compliance hakibadiliki.
Moduli ya Uchunguzi wa AML
Unganisha

Session moja. Nembo yako. Domain yako.

Fungua session yenye nembo yako. Soma uamuzi uliotiwa saini. Mtumiaji wa mwisho haoni Didit kamwe.
POST /v3/session/Yenye nembo
$ curl -X POST https://verification.didit.me/v3/session/ \
  -H "x-api-key: $DIDIT_API_KEY" \
  -d '{
    "workflow_id": "wf_signup_branded",
    "vendor_data": "end-user-42",
    "metadata": { "tenant_id": "brand-b" }
  }'
201ImeundwaInarudisha URL iliyopangishwa kwenye domain YAKO maalum.
Branding kupitia Style Editor + kigezo cha kila workflow. Hakuna mabadiliko ya API.nyaraka →
GET /v3/session/{sessionId}/decision/Uamuzi
$ curl https://verification.didit.me/v3/session/$SID/decision/ \
  -H "x-api-key: $DIDIT_API_KEY"

# Returns:
{
  "status": "Imeidhinishwa",
  "aml": { "status": "Imeidhinishwa" }
}
200OKhali Imeidhinishwa · Imekataliwa · Inapitiwa · Imewasilishwa tena · Imeisha muda
Mkataba uleule wa /v3/, bila kujali jinsi unavyobrand UI.nyaraka →
Ujumuishaji tayari kwa agent

Zindua bidhaa ya KYC ya white-label kwa amri moja.

Bandika kwenye Claude Code, Cursor, Codex, Devin, Aider, au Replit Agent. Jaza brand yako + domain + modules za workflow. Agent itasanidi Style Editor, itaunganisha webhook iliyosainiwa, na kuzindua mtiririko uliobrandiwa.
didit-integration-prompt.md
You are integrating Didit white-label KYC. You're either reselling identity verification to your own customers under your brand, or embedding KYC inside your SaaS product so the end-user never sees Didit. Either way, the verification stack is Didit's; the visible brand is yours.

Three pillars:

  1. Configure your brand once in the Style Editor — colours, typography, square + rectangular logos, optional custom domain.
  2. Toggle Include custom style ON for every workflow that should ship under your brand. Leave it OFF for internal admin flows.
  3. Open POST /v3/session/ as usual. The hosted UI returns under your brand on your domain.

Cost:
  - Didit KYC bundle: $0.33 per check (Sessions API floor)
  - White-label fee: $0.20 per check (adds branding + custom domain + per-workflow style toggle)
  - Reseller cost in: $0.53 per check
  - Mark up to your buyer as you choose — published rate at scale, custom contracts above 100k/month
  - First 500 verifications free every month, forever

PRE-REQUISITES
  - Production API key from https://business.didit.me (sandbox key in 60s, no card).
  - White-label add-on enabled on your account (talk to sales to switch it on).
  - Webhook endpoint with HMAC SHA-256 verification using the X-Signature-V2 header and your webhook secret.
  - A workflow_id from the Workflow Builder that bundles the modules you ship (typically ID Verification + Passive Liveness + Face Match 1:1 + AML Screening) with Include custom style ENABLED.
  - Optional: custom domain (e.g. verify.yourbrand.com) configured in the Business Console — Didit handles the CNAME target + TLS cert via Let's Encrypt.

STEP 1 — Configure brand in the Style Editor (no code)

  Console → White Label → Style Editor:
    Colors:      buttons, text, panels, backgrounds
    Typography:  fonts that match your brand
    Logos:       square + rectangular uploads
    Layout:      border radius for panels and buttons
    Login:       show or skip the Didit login screen
    Domain:      add verify.yourbrand.com (CNAME target = verify.didit.me; TLS auto-provisioned)

STEP 2 — Enable custom style on the workflow

  Console → Workflows → <your workflow> → Settings → Options:
    Toggle Include custom style ON. Without this, the workflow ships with default Didit branding.

  Repeat per workflow. You can mix branded + unbranded workflows on the same account — useful for an internal admin flow that doesn't need the customer brand.

STEP 3 — Open a session as usual

  POST https://verification.didit.me/v3/session/
  Headers:
    x-api-key: <your api key>
    Content-Type: application/json
  Body:
    {
      "workflow_id": "<wf id with Include custom style ON>",
      "vendor_data": "<your end-user id, max 256 chars>",
      "callback": "https://<your-app>/kyc/callback",
      "metadata": {
        "purpose": "white_label_onboarding",
        "tenant_id": "<your reseller tenant id if multi-brand>"
      }
    }

  Response: 201 Created with the hosted session URL — under YOUR domain if you set one. Sub-2-second median verdict on completion.

STEP 4 — Read the signed webhook on completion

  Didit POSTs to your callback. Session statuses are Title Case With Spaces:

  Body (excerpted):
    {
      "session_id": "<uuid>",
      "vendor_data": "<your end-user id>",
      "status": "Approved",
      "id_verification": { "status": "Approved" },
      "liveness": { "status": "Approved" },
      "face": { "status": "Approved", "similarity_score": 0.94 },
      "aml": { "status": "Approved", "hits": [] }
    }

  Status enum (exact case): Approved | Declined | In Review | Resubmitted | Expired | Not Finished | Kyc Expired | Abandoned.

  Verify the X-Signature-V2 header BEFORE reading the body — HMAC SHA-256 of the raw bytes with your webhook secret.

  On Approved → onboard the end-user. On Declined → reject. On In Review or Resubmitted → hold + route to your compliance team.

STEP 5 — Multi-brand on one account (reseller pattern)

  When you serve multiple end-customer brands from a single Didit account:

  - Create one workflow per end-customer brand
  - Configure each workflow with the customer's brand style (or use the Style Editor presets per workflow if your account supports it)
  - On POST /v3/session/, pick the workflow_id that matches the end-customer's brand

  The end-customer sees their own brand; you see one consolidated invoice per month. Didit's MCP (Model Context Protocol) server is included free for programmatic per-tenant workflow management.

STEP 6 — Audit + compliance retained

  Swapping the brand does not change the underlying compliance bar. Every session is still:
  - iBeta Level 1 PAD (Presentation Attack Detection) certified on liveness
  - Backed by Spain's Tesoro / SEPBLAC attestation (only EU member-state government attestation of safer-than-in-person verification)
  - Aligned with SOC 2 Type 1 + ISO/IEC 27001 + GDPR (General Data Protection Regulation)
  - Logged with X-Signature-V2 webhook signing on every event
  - Retained 5 years post-relationship by default per the EU Anti-Money-Laundering package; configurable upward per your supervisor's guidance

  Sub-processor disclosure available on request for your DPA (Data Processing Agreement).

WEBHOOK EVENT NAMES
  - Sessions: status changes flow through the standard session webhook.
  - Verify X-Signature-V2 on every payload.

CONSTRAINTS
  - Session statuses use Title Case With Spaces (Approved, In Review). Don't transform them.
  - The white-label add-on is a per-account feature — talk to sales to enable it. Once enabled, the Style Editor + custom-domain pipeline is no-code.
  - Custom domain TLS auto-renews 30 days before expiry. Monitor the cert status in the Console.
  - Some end-user browsers (mobile in-app webviews) constrain custom domains — keep verify.didit.me as a fallback for these edge cases.

Read the docs:
  - https://docs.didit.me/console/white-label
  - https://docs.didit.me/console/workflows
  - https://docs.didit.me/sessions-api/create-session
  - https://docs.didit.me/integration/webhooks

Start free at https://business.didit.me — sandbox key in 60 seconds, 500 verifications free every month, no credit card.
Unahitaji maelezo zaidi? Tazama nyaraka kamili za moduli.docs.didit.me →
Inatii kwa muundo

Fungua nchi mpya kwa kubofya mara moja. Tunafanya kazi ngumu.

Tunafungua kampuni tanzu za ndani, tunapata leseni, tunafanya majaribio ya kupenya, tunapata vyeti, na tunalingana na kila kanuni mpya. Ili kusafirisha uthibitishaji katika nchi mpya, geuza swichi. Nchi 220+ ziko hewani, zinakaguliwa na kupimwa kila robo mwaka, mtoa huduma pekee wa utambulisho ambaye serikali ya nchi mwanachama wa EU imemwita rasmi kuwa salama zaidi kuliko uthibitishaji wa ana kwa ana.
Soma faili ya usalama na utiifu
EU financial sandbox
Tesoro · SEPBLAC · BdE
ISO/IEC 27001
Usalama wa habari · 2026
SOC 2 · Type I
AICPA · 2026
iBeta Level 1 PAD
NIST / NIAP · 2026
GDPR
EU 2016/679
DORA
EU 2022/2554
MiCA
EU 2023/1114
AMLD6 · eIDAS 2.0
EU-aligned kwa muundo

Namba za uthibitisho

Namba za uthibitisho
  • $0.00
    Gharama kwa kila ukaguzi, $0.33 kifurushi cha KYC + $0.20 ada ya white-label. Ongeza bei kwa mnunuzi wako.
  • 0 SDKs
    Web, iOS, Android, React Native, Flutter, zote zina brand moja.
  • Per WF
    Jumuisha kigezo cha mtindo maalum, workflows zenye brand na zisizo na brand kwenye akaunti moja.
  • 0
    Uthibitishaji wa bure kila mwezi, kwenye kila akaunti.
Ngazi tatu, orodha moja ya bei

Anza bure. Lipa kulingana na matumizi. Panua hadi Enterprise.

Uthibitishaji 500 bila malipo kila mwezi, milele. Lipa kadri unavyotumia kwa uzalishaji. Mikataba maalum, uhifadhi wa data, na SLA (Service Level Agreements) kwenye Enterprise.
Bure

Bure

$0 / mwezi. Hakuna kadi ya mkopo inayohitajika.

  • Kifurushi cha bure cha KYC (Uthibitishaji wa Kitambulisho + Passive Liveness + Face Match + Uchambuzi wa Kifaa & IP), 500 / mwezi, kila mwezi
  • Watumiaji Waliozuiwa
  • Utambuzi wa Marudio
  • Ishara 200+ za udanganyifu kwenye kila session
  • KYC inayoweza kutumika tena kwenye mtandao wa Didit
  • Jukwaa la Usimamizi wa Kesi
  • Workflow Builder
  • Nyaraka za umma, sandbox, SDKs, server ya MCP (Model Context Protocol)
  • Usaidizi wa jamii
Maarufu zaidi
Lipa kulingana na matumizi

Kulingana na Matumizi

Lipa tu kwa unachotumia. Moduli 25+. Bei za umma kwa kila moduli, hakuna ada ya chini ya kila mwezi.

  • KYC kamili kwa $0.33 (Kitambulisho + Biometric + IP / Kifaa)
  • Data za AML 10,000+, vikwazo, PEPs, habari hasi
  • Vyanzo vya data vya serikali 1,000+ kwa Uthibitishaji wa Database
  • Ufuatiliaji wa Miamala kwa $0.02 kwa kila muamala
  • KYB ya moja kwa moja kwa $2.00 kwa kila biashara
  • Uchunguzi wa Wallet kwa $0.15 kwa kila ukaguzi
  • Mtiririko wa uthibitishaji wa Whitelabel, brand yako, miundombinu yetu
Biashara Kubwa

Biashara Kubwa

MSA & SLA maalum. Kwa idadi kubwa na programu zilizodhibitiwa.

  • Mikataba ya kila mwaka
  • MSA, DPA, na SLA maalum
  • Kituo maalum cha Slack na WhatsApp
  • Wakaguzi wa mikono wanapohitajika
  • Masharti ya muuzaji na white-label
  • Vipengele vya kipekee na ushirikiano wa washirika
  • CSM aliyetajwa, ukaguzi wa usalama, usaidizi wa kufuata

Anza bure → lipa tu wakati ukaguzi unafanyika → fungua Enterprise kwa mkataba maalum, SLA, au uhifadhi wa data.

FAQ

Maswali ya kawaida

What is Didit?

Didit is infrastructure for identity and fraud, the platform we wished existed when we were building products ourselves: open, flexible, and developer-friendly, so it works as a real part of your stack instead of a black box you integrate around.

One API covers verifying people (KYC, know your customer), verifying businesses (KYB, know your business), screening crypto wallets (KYT, know your transaction), and monitoring transactions in real time, on a stack built to be:

  • Fast, sub-2-second p99 on every session
  • Reliable, in production with 1,500+ companies across 220+ countries
  • Secure, SOC 2 Type 1, ISO 27001, GDPR-native, and formally attested by Spain's financial regulator as safer than verifying someone in person

The footprint underneath: 14,000+ document types in 48+ languages, 1,000+ data sources, and 200+ fraud signals on every session. The Didit infrastructure dynamically learns from every session and gets better every day.

What's a white-label KYC, in plain English?

It's an identity-verification product that runs under your brand, your colours, your logo, your domain, but uses someone else's verification stack under the hood. The end-user never sees the underlying vendor.

Two flavours you can ship:

  • Reseller, your business is identity verification (or a vertical wrapper of it). You charge customers a per-check rate that's higher than your cost, and the margin is the business model. Common for SaaS aggregators, niche compliance plays, regional resellers in markets the big vendors don't serve well.
  • Embedded, you're a SaaS / fintech / platform whose product includes KYC as one feature among many. You don't want your end-users to bounce into a Didit-branded flow mid-onboarding; you want the verification to feel like part of your product.

The Didit recipe handles both with the same Style Editor + per-workflow toggle.

What can I actually customise?

Six categories, all no-code via the Business Console Style Editor:

  • Colours, buttons, text, panels, backgrounds. Every colour element is a token.
  • Typography, fonts that match your brand. Upload custom font files or pick from a curated list.
  • Logos, square and rectangular logo uploads. Used on hosted screens, in-app SDK headers, and email confirmations.
  • Layout, border radius for panels and buttons. Match your design language (sharp corners or rounded).
  • Login screen, show or skip the Didit login screen at session start.
  • Custom domain, host on verify.yourbrand.com instead of verify.didit.me. CNAME + TLS handled inside the Console.

The Style Editor previews live as you change tokens. Once you save, toggle Include custom style on the workflow you want branded, that's the activation gate.

How fast is the verification for my end user?

The full flow normally takes under 30 seconds end-to-end, pick up the ID, snap the document, snap the selfie, done. That is the fastest in the market. Legacy KYC providers usually take more than 90 seconds for the same flow.

On the back end, Didit returns the result in under two seconds at p99, measured from the moment the user finishes the selfie to the moment your webhook fires. Mobile capture is tuned for slow phones and slow networks: progressive image compression, lazy software development kit load, and a one-tap hand-off from desktop to phone via QR code if the user starts on web.

Does the white-label cover the SDKs too?

Yes. The same Style Editor configuration applies across all five Didit SDKs, Web (React, Vue, vanilla JS), iOS (Swift), Android (Kotlin), React Native (TurboModules), and Flutter (Dart). The SDKs are free; the white-label fee covers branding across every surface.

In practice: you set colours, type, logos, and radius once. The SDK reads the same brand config from your account, the hosted flow reads the same config, and your end-user gets a consistent branded experience whether they're in a mobile app, a webview, or a desktop browser.

What happens if a user fails, abandons, or expires?

Every session lands on one of seven clear statuses, so your code always knows what to do:

  • Approved, every check passed. Move the user forward.
  • Declined, one or more checks failed. You can allow the user to resubmit the specific failed step (for example, re-take the selfie) without re-running the whole flow.
  • In Review, flagged for compliance review. Open the case in the console, see every signal, decide approve or decline.
  • In Progress, user is mid-flow.
  • Not Started, link sent, user has not opened it yet. Send a reminder if it sits too long.
  • Abandoned, user opened the link but did not finish in time. Re-engage or expire.
  • Expired, the session link aged out. Create a new session.

A signed webhook fires on every status change, so your database always stays in sync. Abandoned and declined sessions are free.

Where does my customer data live and how is it protected?

Production data is processed and stored in the European Union by default, on Amazon Web Services. Enterprise contracts can request alternative regions for jurisdictions whose regulators require it.

Encryption everywhere. AES-256 at rest across every database, object store, and backup. Transport Layer Security 1.3 in transit on every API call, webhook, and Business Console session. Biometric data is encrypted under a separate Customer Master Key.

Retention is yours to control. Default retention is indefinite (unlimited) unless you configure shorter, between 30 days and 10 years per application, and you can delete any individual session at any time from the dashboard or the API.

Certifications: SOC 2 Type 1 (Type 2 audit in progress), ISO/IEC 27001:2022, iBeta Level 1 PAD, and a public attestation from Spain''s Tesoro / SEPBLAC / CNMV that Didit''s remote identity verification is safer than verifying someone in person. Full report at /security-compliance.

Is Didit compliant for my industry?

Didit ships compliant by default for the regulators that matter to identity infrastructure:

  • GDPR + UK GDPR, controller / processor split, full Data Processing Agreement published, lead supervisory authority named (Spain''s AEPD).
  • AMLD6 + EU AML Single Rulebook, 1,300+ sanctions, politically exposed person, and adverse-media lists screened in real time.
  • eIDAS 2.0, EU Digital Identity Wallet aligned; reusable-identity ready.
  • MiCA (Markets in Crypto-Assets), ready for crypto on-ramps, exchanges, and custodians.
  • DORA, Digital Operational Resilience Act, EU financial-services operational resilience.
  • BIPA, CUBI, Washington HB 1493, CCPA / CPRA, US biometric privacy (Illinois, Texas, Washington) and California consumer privacy.
  • UK Online Safety Act, age-gating and child-safety obligations.
  • FATF Travel Rule, originator and beneficiary data on crypto transfers, IVMS-101 interoperable.

Detailed memo, every certificate, every regulator letter: /security-compliance.

How fast can I integrate and start verifying users?
  • 60 seconds to a sandbox account at business.didit.me, no credit card.
  • 5 minutes to a working verification through Claude Code, Cursor, or any coding agent via our Model Context Protocol (MCP) server.
  • A weekend to a production-ready integration with signed-webhook verification, retries, and a remediation flow when a user is declined.

Three integration paths, pick whichever fits your stack:

  • Embed natively with our Web, iOS, Android, React Native, or Flutter SDK.
  • Redirect the user to the hosted verification page, zero SDK.
  • Send a link by email, SMS, WhatsApp, or any channel, zero front-end work.

Same dashboard, same billing, same pay-per-success price for all three. Step-by-step guide at docs.didit.me/integration/integration-prompt.

Do I keep the underlying compliance attestations?

Yes. Swapping the brand does not change the underlying compliance posture:

  • iBeta Level 1 PAD, Didit's Passive Liveness is iBeta Level 1 certified, meaning it has been independently tested against printed photos, screen replays, masks, and deepfakes
  • Tesoro / SEPBLAC, Didit is the only identity provider formally attested by Spain's Tesoro (under SEPBLAC, Spain's financial-intelligence unit) as a safer-than-in-person verification mechanism, for purposes of the EU Anti-Money-Laundering package
  • SOC 2 Type 1, independent audit of Didit's security controls
  • ISO/IEC 27001, international security-management standard
  • GDPR alignment, General Data Protection Regulation by design (data minimisation, lawful basis, DSAR support)

Under your white-label, all of these flow through to your customer. Didit provides sub-processor disclosure on request for your DPA (Data Processing Agreement).

How does this fit with Didit's MCP server and the Workflow Builder?

Both are free, both work with the white-label add-on.

  • Workflow Builder, drag-and-drop composer for KYC + AML + KYB + Wallet Screening modules. Per-workflow Include custom style toggle lives here. Edit rules and module selection without redeploying your app.
  • Didit MCP (Model Context Protocol) server, exposes the same Didit primitives to AI coding agents (Claude Code, Cursor, Codex, Replit Agent, Devin, Aider). Useful for a small reseller team that wants to automate per-tenant workflow provisioning, branded-flow templating, or scripted onboarding tests.

The net: you don't need a large engineering team to ship a white-label KYC product. The Style Editor handles brand, the Workflow Builder handles modules, the MCP server handles automation, and the /v3/ API handles the verification itself.

How fast can a small team launch?

Four wires, one afternoon for a vertical-slice; a week for production:

  • Open business.didit.me, sandbox key in 60 seconds, no credit card
  • Enable the white-label add-on (talk to sales) and open the Style Editor, configure brand, upload logos, add custom domain (CNAME at your DNS provider)
  • Build the workflow in the Workflow Builder with the modules you ship (typically ID + Liveness + Face Match + AML), toggle Include custom style ON
  • Wire POST /v3/session/ + the signed webhook (X-Signature-V2 HMAC SHA-256) into your onboarding flow

For a multi-tenant reseller, add: one workflow per end-customer brand, per-tenant Style Editor configuration, a routing layer that picks the right workflow_id per inbound request. The MCP server scripts these end-to-end.

Miundombinu ya utambulisho na udanganyifu.

API moja kwa KYC, KYB, Ufuatiliaji wa Miamala, na Uchunguzi wa Wallet. Unganisha ndani ya dakika 5.

Uliza AI ifupishe ukurasa huu