Liveness + Face Match

Prove they're real.
And that it's really them.

ProntoMatch confirms a person is a live human and the same person as your reference — an ID, a face on file, or content they appear in. Your platform gets the answer. It never has to hold their ID.

ID never reaches you
Live capture only
Full audit trail
The Problem

"Send a selfie
holding your ID."

It's the default way to confirm someone is who they claim — for takedowns, check-ins, account recovery. It also drops the most sensitive document a person owns straight into your inbox.

The old way

  • You receive and store raw government IDs
  • You become a custodian of special-category data
  • Photos sit in support inboxes and ticketing tools
  • A stolen photo can pass as someone else

With ProntoMatch

  • You send a link — the ID goes to ProntoID, not you
  • You get a pass/fail, or a watermarked verified portrait
  • Live capture defeats stolen-photo impersonation
  • Every check is sealed in a tamper-proof audit trail
How It Works

Four steps,
zero ID in your inbox

1

You send a secure link

From your dashboard or API, you start a ProntoMatch session. The person receives a one-time, time-limited link — by email, SMS or chat.

2

They prove they are live

On ProntoID, they pass a biometric liveness check and capture their government ID. Live capture only — no uploads, no recycled photos.

3

ProntoMatch matches

We confirm the live face is the same person as the ID, score the match, and seal the result with a timestamped, claim-bound audit record.

4

You get the answer

Depending on the use case, your platform receives a clean pass/fail decision — or a watermarked verified portrait for your reviewer to compare.

One Engine, Two Outputs

A decision, or a
verified portrait

The match is the same. What ProntoMatch hands back depends on whether you hold the other side of the comparison — or we do.

Decision Mode · Closed-loop

We hold both sides

ProntoMatch compares the live selfie against the government ID and returns a clean pass/fail with a confidence score. Nothing for your team to review — just a verified yes or no, delivered by webhook or API.

BEST FOR
  • In-person and hotel check-in
  • Account recovery & re-authentication
  • Age and nationality checks
Verified-Artifact Mode · Assisted

You hold the other side

When the reference lives on your side — like content a person appears in — ProntoMatch verifies the live face against the ID and returns a watermarked portrait of that verified face. Your reviewer makes the final comparison. We never see your content; you never see the ID.

BEST FOR
  • Content takedown & likeness requests
  • Reviewer-led trust & safety decisions
  • Disputes that may need a defensible record
Use Cases

Wherever a face
has to be proven

TRUST & SAFETY

Likeness Reclaim

Someone finds their image on your platform and wants it removed. Send a ProntoMatch link instead of asking for a selfie-with-ID — your reviewer gets a watermarked verified portrait to compare, never their document.

  • Watermarked verified portrait
  • No ID in your ticketing tool
  • Defensible audit record
HOSPITALITY

In-Person & Hotel Check-In

Confirm a guest is a real, present person who matches the booking — before handing over a key or completing a remote check-in. A clean pass/fail, in seconds.

  • Live presence confirmed
  • Matches the named booking
  • No front-desk ID photocopies
ACCOUNT SECURITY

Recovery & Re-Auth

When a user is locked out or a high-risk action is requested, re-confirm the live person is the same human who originally enrolled — without a password reset that an attacker can game.

  • Live face vs face on file
  • Step-up for risky actions
  • Webhook-delivered result
DATA RIGHTS

Access & Erasure Requests

Before you act on a GDPR access or deletion request, confirm the requester is the actual data subject. Identity confirmation is exactly what Article 12(6) contemplates — handled without you collecting more PII.

  • Confirms the real data subject
  • Article 12(6) aligned
  • Minimal data, sealed proof
MARKETPLACES

High-Value Handover

Before a high-value rental, sale or pickup, confirm the counterparty in person is the verified account holder — closing the gap between an online profile and the human who shows up.

  • Online profile ↔ real person
  • Pre-handover confidence
  • Shareable verification receipt
CREATOR PLATFORMS

Consent & Release Re-Checks

Pair with ProntoTag and ProntoDeliver: re-confirm the live person behind a release or a consent revocation is the same verified individual, end to end across the content lifecycle.

  • Ties into ProntoTag consent
  • Re-verify on revocation
  • Continuity across the lifecycle
Privacy by Architecture

What your platform
never has to hold

ProntoID is the data controller for the identity material it processes — that's the whole point of the company. The sensitive document stays with us; you get only what you need to make a decision.

The government ID document
It is captured, matched and sealed inside ProntoID — it is never transmitted to your platform.
ID numbers and date of birth
Document numbers and full DOB stay with the controller; you never store them.
Raw, unmarked biometrics
In assisted mode you receive a watermarked portrait bound to the request — a face for comparison, not a reusable biometric asset.

A verified portrait is still a face image. ProntoMatch reduces what you hold to the minimum a decision needs and recommends you purge it once the request is resolved — keeping only the claim reference and our sealed attestation.

What ProntoMatch returns to you
Verification outcome
Pass / fail with a match confidence score
Liveness result
Confirmation the subject was a live, present human
Verified portrait
Watermarked, claim-bound — assisted mode only
Sealed attestation
Timestamped, tamper-evident proof of the check
Audit reference
A pointer into the ProntoID vault for any later dispute
Government ID — stays inside ProntoID
Frequently Asked Questions

Everything you need
to know about ProntoMatch

What is ProntoMatch?

ProntoMatch is a ProntoID service that proves two things at once: that a person is a live, real human (biometric liveness), and that this live face is the same person as a reference such as a government ID or a face on file. It returns either a pass/fail decision or a watermarked verified portrait, depending on the use case.

Does my platform ever receive the person's government ID?

No. The government ID, the document number and the date of birth stay inside ProntoID, which is the data controller for that material. In assisted mode your reviewers receive only a watermarked portrait of the verified live face — never the ID itself. This removes the highest-sensitivity document from your inbox entirely.

What is the difference between decision mode and verified-artifact mode?

In decision mode ProntoMatch holds both sides of the comparison (the live selfie and the ID) and returns a clean pass/fail — ideal for in-person check-in, account recovery and re-authentication. In verified-artifact mode the relying party holds the other reference (for example disputed content) and makes the final judgement, so ProntoMatch returns a watermarked verified portrait plus its liveness and ID-match attestation.

Can ProntoMatch be used for content takedowns and likeness requests?

Yes. When someone requests removal of content depicting them, you send them a ProntoMatch link instead of asking for a selfie-with-ID. ProntoMatch confirms they are a live person matching a government ID and returns a watermarked verified portrait, which your reviewer compares against the disputed content. Your platform never holds their ID, and the request is backed by a cryptographic audit trail.

How does ProntoMatch prevent fraudulent or malicious requests?

The selfie is always a live capture on ProntoID's flow, never an upload, so a person cannot submit a stolen photo to verify as someone else. Liveness plus government-ID matching defends against impersonation, and every verification is sealed with a timestamped, claim-bound audit record.

Is ProntoMatch GDPR compliant?

Yes. ProntoMatch is operated from Switzerland by Brooks & Keitt Sàrl, the controller for the identity data it processes. Biometric and document data is encrypted, retained only as long as needed, and never passed to the relying party. Identity verification of this kind is expressly contemplated by GDPR Article 12(6) for data-access and erasure requests.

Stop collecting IDs
you never wanted.

Verify the person, not the paperwork. Talk to us about adding ProntoMatch to your takedown, check-in or recovery flows.

Talk to Sales Read the Docs

Live capture only  ·  ID never reaches you  ·  Full audit trail