Terms of Service
Last updated: 5 September 2026
1. Acceptance of these terms
These terms will govern access to and use of the Identiwise API, admin console, hosted verification interface and account portal (together, the "Service"). By using the Service once it is available you will agree to be bound by them. If you use the Service on behalf of an organisation, you confirm that you have authority to bind that organisation.
Today the Service is not open. Nothing on this website constitutes an offer to sell, and no agreement is formed by reading this page or by joining the waitlist.
2. What the Service does
Identiwise is an identity verification platform. Your backend authenticates with a long-lived bearer token and mints a short-lived, capability-scoped token for a single subject; the subject completes the check in our hosted verification interface or through your own integration. Each submission is processed synchronously and the result is returned in the HTTP response. Processing consists of a document check, face detection and comparison against a reference image, optical character recognition scored against the details on file, and, where requested, an age estimate. A submission is approved automatically, parked for review by your staff with a stated reason, or rejected. Your administrators approve, reject, request a re-upload and exchange messages with the subject from the admin console.
AI Act roles
Identiwise develops the Service and places it on the market under its own name, so under the EU AI Act we act as the provider; you, as the business deploying it, act as the deployer. Deployer obligations attach to your use of the Service. In particular, you are responsible for informing the people you verify that automated biometric processing — and, where you enable it, age estimation — is being applied to them, and for maintaining the human review that the law or your own risk appetite requires. Information about the system and instructions for its use will be provided with the Data Processing Agreement described in section 6 before launch.
Document coverage is stated on our product page and in the documentation. Do not assume a document type is supported because a roadmap mentions it.
3. Acceptable use
You agree not to use the Service to:
- Verify a person's identity without their knowledge and without a lawful basis for doing so.
- Test, validate, refine or generate fraudulent or forged identity documents.
- Process data for prohibited or unlawful activities, including illegal marketplaces, weapons trading and darknet services.
- Reverse engineer, decompile or attempt to extract the source code, models or model weights behind the Service.
- Deliberately overload the infrastructure, whether by denial-of-service traffic or abusive polling.
- Resell or expose the Service to third parties as your own verification product without a written agreement with us.
Violation may result in suspension or termination of access. Where a subscription has been paid, termination for a breach of this section is without refund.
4. Credentials and account security
You are responsible for the security of the credentials issued to you — staff passwords, second factors and API bearer tokens — and for the actions taken with them. Tokens are revocable at any time from the admin console and may be given an expiry. We recommend enabling two-factor authentication for your whole team and restricting API access with the per-tenant IP allow-list. Notify security@identiwise.com promptly if you believe a credential has been exposed.
5. Fees and payments
Today: no fees are charged, no subscription can be started and no payment method can be entered. Prices shown on the pricing page are indicative and will be confirmed at launch.
At launch: subscriptions will be billed monthly in advance. Billing will be handled by a third-party payment provider acting as Merchant of Record; that provider will be the seller of record for your purchase, will handle payment, invoicing and applicable taxes, and its own buyer terms will apply to the transaction alongside these terms. The provider's name and its buyer terms will be published here before launch. Identiwise never sees or stores card data.
Plan quotas. Each plan includes a monthly API request allowance. When the
allowance is exhausted, further API requests are refused with an HTTP 429
response until the next monthly period begins or the plan is changed.
Usage above the allowance is not billed automatically — there is no
overage charge; requests are simply refused.
6. Data processing and privacy
In respect of the personal data you submit for verification, Identiwise acts as processor and you act as controller. You warrant that you have a lawful basis for the processing you instruct, that you have given the subjects the information their law requires, and that you have obtained any consent it requires.
A Data Processing Agreement covering the required Article 28 terms — scope, sub-processors, security measures, assistance with data subject requests, breach notification and deletion — will be offered to every customer before launch and will form part of the contract.
What we process, where it is hosted, how long it is kept and how erasure requests are handled is set out in our Privacy Policy. All processing takes place on IONOS Cloud in Frankfurt, Germany.
7. Availability
The Service is provided on an "as is" and "as available" basis. We do not currently offer a service level agreement, and none is implied by these terms or by any page on this website. Planned maintenance and interruptions may occur. If a service level commitment is introduced it will be published as a separate document and referenced here.
8. Limitation of liability
To the maximum extent permitted by law, Identiwise shall not be liable for any indirect, incidental, special, consequential or punitive damages, including loss of profits, revenue or data, arising out of or in connection with your use of the Service. Our total aggregate liability for any claim shall not exceed the amount paid by you for the Service in the twelve months preceding the claim. Nothing in these terms excludes liability that cannot lawfully be excluded.
9. Suspension, termination and changes
Once billing opens you will be able to stop using the Service and cancel a subscription at any time; see the Refund & Cancellation Policy. We may suspend access where required by law, where a credential is compromised, or where use breaches section 3. We may amend these terms; the date at the top of this page reflects the current version, and material changes will be notified to customers directly.
10. Governing law
Identiwise is a product of Real Course, which operates the Service. The governing law and the courts having jurisdiction over these terms are to be specified before launch, together with the legal entity contracting with you and its registered address; all three will be named on this page before any account can be opened. We would rather leave this blank than name a jurisdiction we have not settled.
11. Contact
Legal enquiries: legal@identiwise.com. General and sales enquiries: hello@identiwise.com.