Your systems record what people told you. ProntoRoster records what an independent third party checked — for every employee, contractor, volunteer and guardian on your list.
Each entry is sealed, dated and held outside your organisation. Including the day someone was removed.
Content creator, producer or freelancer? ProntoRoster for Collaborators →
When a regulator, an insurer or a court asks who was on your roster and how you knew, a spreadsheet you maintained yourself is the weakest possible answer.
ProntoRoster produces evidence. It does not decide who you employ, admit or exclude — those remain your decisions, taken under your own obligations.
Set out your roles and what each one requires — identity only, identity plus a declared relationship, or identity plus a document you specify. Roles are yours to name; the roster follows your structure, not a fixed template.
Each person receives a link and verifies directly with ProntoID. Their document and their face never pass through your systems, your inbox or your staff. You are not in the chain of custody, which is the point.
The roster shows the role, the outcome, the date and a reference. That is all your organisation holds. There is no document to store, no biometric template to protect and nothing to purge later.
Any entry can be re-presented as a sealed record of what was true on a given date — to an auditor, an insurer, a counterparty or a court. The record is issued by ProntoID, not by you.
Membership is backed by a document check and a liveness check, not by a name someone typed into a field.
Define what a role demands and the roster shows, per person, whether it was met and when it was last confirmed.
Additions, role changes and withdrawals each produce their own record. The roster can answer questions about the past, not only the present.
Every entry is canonicalised and signed. Records are appended, never rewritten, so a later edit cannot pass as the original.
No passport scans in shared drives, no selfies in an inbox. The sensitive material never reaches you, so it is not yours to leak.
A member can show a counterparty that they are on your roster in a given role, without that counterparty having to contact you to confirm it.
People who are not on your payroll but are on your site. Verify each individual once, hold the role against the firm that supplied them, and keep a dated record of who had access on any given day.
Where a role depends on a person holding a qualification or authorisation, the roster ties the credential to a verified identity rather than to a name on a certificate.
Clubs, associations and youth activities. ProntoRoster verifies the adults — coaches, volunteers, parents and named contacts — and records the relationship each adult declares.
When you have never met the person and never will, an identity check done at hire is worth more than a video call. The roster keeps that check retrievable long after onboarding.
Directors, authorised signatories and beneficial owners. A verified register of who could bind the organisation, and from what date, is easier to produce than to reconstruct.
If your platform puts a person's name in front of a customer, the roster is what stands behind that name when something goes wrong.
Organisations that work with under-18s face a hard problem: they need to know which adult is responsible for a child, without building a biometric database of children to find out.
ProntoRoster's guardian module verifies the adult and records the relationship that adult declares. The child is never asked to verify, is never enrolled, and is subject to no biometric processing. What the organisation receives is a verified adult, a declared relationship and a date.
Guardian verification is the near-term focus of ProntoRoster. Deployments in or adjacent to educational settings are assessed case by case, and we will say no where a supervisory authority is likely to take a different view.
A processor acts on your instructions, which means the record it holds is effectively your record. ProntoID acts as an independent controller for the identity evidence — which is what allows the record to stand as third-party evidence at all.
Brooks & Keitt Sàrl is the data controller for the identity evidence. Haas Reed BV is the EU contracting vehicle. Your organisation is a separate controller for its own roster and employment records.
Because the record is not held on your instructions, it does not disappear if your systems are replaced, your provider changes or the organisation is restructured.
Data minimisation is structural rather than procedural: the organisation is never given the material it would otherwise have to protect. Retention, lawful basis and data subject rights are agreed in writing before deployment.
EU member states must make Digital Identity Wallets available by the end of December 2026. The sealing layer is designed to be indifferent to whether identity arrives from a wallet presentation or a document scan, so the roster format does not change when the input does.
ProntoRoster is designed to support your compliance obligations. It does not discharge them, and nothing on this page is legal advice. Roles, retention periods and lawful bases are settled per organisation before anything goes live.
ProntoRoster is the proving layer at organisational scale. Once a person is on a verified roster, the rest of the suite can rely on it.
A verified identity held in the secure enclave of the person's own phone, ready to present without a fresh check.
Learn moreRelease forms signed with a verified identity, with the scope and every signature hashed and kept as a durable record.
Learn moreFiles released only after the recipient's face matches the identity they were sent to.
Learn moreProntoRoster is a verified organisational roster. An organisation defines roles, invites people, and each person completes an identity verification directly with ProntoID. The organisation receives a roster where every entry carries an independently issued, sealed record of what was verified and when — rather than a name an administrator typed in.
ProntoRoster is in early access. The underlying verification, sealing and ledger components are already in production across other ProntoID products; the roster layer is being built with a small number of design partners. Availability, scope and pricing are agreed per organisation during early access.
No. Documents and biometric data are submitted by the individual directly to ProntoID and remain with ProntoID. Your organisation receives a verification result, the role, the date, and a reference. There is nothing sensitive for you to store, secure or delete.
Brooks & Keitt Sàrl is an independent data controller for the identity evidence, not a processor acting on your instructions. That is deliberate: it is what makes the record third-party evidence rather than your own file about your own people. Haas Reed BV is the EU contracting vehicle.
No. ProntoRoster is not directed at minors. Where an organisation works with under-18s, the near-term module verifies the responsible adult — the parent, guardian or named contact — and records the relationship that adult declares. The child is not asked to verify and no biometric processing is directed at them.
A person can leave the roster at any time, and the organisation can remove them. Either way, the departure produces a dated record in the same way an addition does. The roster does not simply forget the person: it shows that the entry was withdrawn, and when. This matters when you are later asked who held a role on a particular date.
An HR system records what a person told you and what an administrator entered. SSO records that someone holds an account credential. Neither is evidence of identity, and both are held by the same organisation that benefits from the record. ProntoRoster sits alongside them and supplies the part they cannot: an independent, dated attestation of who the person is.
It is being designed for it. EU member states are required to make Digital Identity Wallets available to citizens by the end of December 2026. ProntoRoster's sealing layer is designed to be indifferent to where the identity assertion comes from, so an organisation can accept a wallet presentation or a document scan without changing how the roster record is produced.
We are working with a small number of organisations to shape the roles, the record format and the retention terms. Tell us who is on your roster and what you are asked to prove about them.
Scope, roles and retention agreed per organisation · No obligation