WHAT IT IS
ProtectID is INM's continuous identity-protection layer. It uses certified 3D anti-spoofing biometrics to resist photos, videos, 3D masks and deepfakes, searches 1:N against bad-actor, PEP and sanctions watchlists, certifies and binds the devices used for identity capture, and triggers automatic re-verification (perpetual KYC) based on time, risk or data changes - extending identity assurance beyond the moment of onboarding. It layers over the core and the channels a bank already runs, integrating by API with no change to the central system.
WHY IT MATTERS
Identity doesn't stop being real the day after onboarding. ProtectID keeps verifying it - certified anti-spoofing biometrics, 1:N search against bad-actor and watchlist databases, and automatic re-verification triggers - so a genuine identity stays genuine across the whole relationship.
BUILT FOR
Deepfake and injection attacks are growing fast; certified 3D liveness is a materially different defence than 2D checks.
Move from calendar-driven periodic reviews to continuous, risk-triggered re-verification.
PEP, sanctions and internal blacklist screening integrated into the same 1:N search used for onboarding and fraud checks.
Automatic triggers replace blanket periodic re-KYC campaigns with targeted, risk-based re-verification.
ADVANTAGES
3D liveness captures geometry, depth, texture and reflectivity together - resistant to photos, videos, 3D masks and deepfakes, certified iBeta PAD Level 1 & 2.
Sub-second 1:N face search against configurable watchlists - the same face applying for a second identity gets caught before it becomes an account.
Perpetual KYC triggers re-checks automatically by time, risk change or data update - instead of a manual review cycle with blind spots in between.
Cryptographic association between the customer's identity and the device used to capture it, distributed to the servicing channel.
FEATURES
Certified 3D liveness detection (iBeta PAD Level 1 & 2) - resistant to photo, video, 3D-mask and injection attacks.
1:N face search in sub-second time against lists in the millions of records - bad actors, PEP, sanctions, internal blacklists.
Duplicate-identity detection: same face, different personal data, flagged before onboarding completes.
Perpetual KYC (pKYC) triggers by elapsed time, risk-score change, or updates to address, phone or watchlist status.
Device certification and secure binding for every device used to capture identity.
Document anti-tampering and watermark detection, alongside document-authenticity checks.
Step-up re-verification at risk moments: high-value payments, password reset, new device.
Auditable evidence per check, with a configurable match threshold and result fed into the risk-decision engine.
Built on the same certified biometric engine used across the identity platform - extended into continuous protection.
HOW IT WORKS
A risk event fires the check - a sensitive operation, an elapsed-time rule, or a data change.
A 3D selfie is captured and checked for liveness - certified to resist photos, videos, masks and deepfakes.
The face is checked against configurable watchlists - bad actors, PEP, sanctions, internal blacklists.
Result feeds the risk engine automatically, or escalates to manual review when the match is inconclusive.
It is INM's continuous identity-protection layer. It uses certified 3D anti-spoofing biometrics, 1:N search against bad-actor and watchlist databases, and automatic perpetual-KYC triggers to keep verifying identity after onboarding, not just at the start.
Yes. The core connection is adapter-based - Banka, Finastra Essence, an in-house legacy system, whatever is already there - over API/ISO, with no change to the central system. The domestic side works the same way: each market's clearing house, EMIS in Angola included, plugs in through an adapter.
Both. Banks in markets with data-residency requirements usually choose on-premise; SaaS where regulation allows it.
It replaces the calendar-driven part: instead of reviewing every customer on a fixed schedule, it triggers re-verification automatically when time, risk or data actually changes - reviews that still need a human stay routed to your compliance team.
INM's own teams - we don't subcontract implementation. The same team runs, evolves and supports the product 24/7 after go-live.
Talk to our team to see how this product fits your ecosystem.