The ProntoID Ecosystem

Verify once.
Use it everywhere.

19 services built on one verification and one sealed-record format. Take a single one, or compose several — the person is checked once, and every service afterwards works from that same verified identity.

Verification

The primitives everything else is built on. Prove who someone is, prove they are live, prove they are old enough — once.

Access & Delivery

Where the identity itself becomes the key. Not a password that can be forwarded, and not a link that works for whoever holds it.

Wallet & Credentials

What the verified person carries with them. The deposit does not mean the person loses access to their own identity.

Trust & Integrity

Applications where the value of a result depends entirely on every participant being a distinct, real person.

One Architecture

Different services. The same spine.

Every service on this page runs through the same four stages. That is why a person verified for one is already verified for the rest, and why the output of one service is checkable by anyone holding the next.

01

Verify

The document is authenticated, the MRZ is parsed against ICAO 9303 check digits, and a live face is matched to the portrait.

02

Escrow

The evidence is held by ProntoID as an independent controller, encrypted under per-record keys, and is never transmitted onward.

03

Seal

The relevant facts are serialised to RFC 8785 canonical JSON and signed. The same facts always produce the same bytes, and therefore the same digest.

04

Assure

The platform receives the narrowest claim it needs — verified, over 18, matches this prior verification — plus a digest it can check later.

Verifiable without us. Sealed records use a detached JWS signature over a P-256 key. Checking one requires the public key and a standard ECDSA implementation — nothing else, and no call to ProntoID. A record retained today stays provable to a third party years from now.

Questions

Before you pick one

Do I have to adopt the whole ecosystem?

No. Each service is usable on its own and most platforms start with one — usually KYC or age verification. The services share a single verification and a single sealed-record format, so adding a second one later does not mean re-verifying the same people or running a second integration.

What does my platform actually store?

An opaque reference and a digest. The identity document, the biometric reference and the underlying evidence stay with ProntoID as an independent controller. Your platform holds enough to prove a verification happened, and not enough to be a meaningful target in a breach.

Does a person need to verify separately for each service?

No. A completed verification is reusable across the ecosystem. A person who has been verified for a KYC check can consent through ProntoTag, sign through ProntoSigned or receive a file through ProntoDeliver without repeating the document capture.

Can records be checked without ProntoID?

Yes, for the sealed instruments. Records use RFC 8785 canonical JSON with a detached JWS signature over a P-256 key, so verification needs only the public key and a standard ECDSA implementation. A retained record stays checkable by a third party regardless of what happens to us.

Which services are appropriate for a regulated obligation?

That depends on the obligation and the jurisdiction, and it is worth a conversation rather than a self-service answer. Age assurance under the UK Online Safety Act, closed-user-group requirements under the German JMStV, and record-keeping under 18 U.S.C. § 2257 each pull in a different combination of these services.

Not sure which one
you need?

Tell us what you are required to know about the people using your service, and we will show you the smallest thing you need to hold in order to prove it.

Talk to Us See Pricing

One verification  ·  Independent custody  ·  Verifiable without us