Insights & News
The latest insights and perspectives from our team
Top 10 KYC Providers 2026: An Architectural Buyer's Guide
The top 10 KYC providers read differently by architecture: whether each vendor's API contract returns raw PII or a verifier-private attestation. An honest buyer's guide.


This Week in Compliance: The AML/CFT Programme Rule — 10-16 July 2026
The new AML/CFT programme rule, a 6.9M driver's licence breach and MiCA fines: this week's compliance recap on proving controls without hoarding the data.

The Identity Gap Hiding Inside Crypto Travel Rule Compliance
Crypto travel rule compliance is treated as a messaging task, but the data is only as good as the identity beneath it. Where the real control point sits.

Compliance by Design vs Bolt-On: The Doctrine AML Borrowed
Compliance by design vs bolt-on: AML controls follow cybersecurity’s secure-by-design doctrine. Why bolted-on financial-crime programmes break under scale.

The Data Column Every Sumsub Alternative Guide Leaves Out
Every Sumsub alternative shares one data architecture. The column every shortlist skips: what your platform is left holding once verification is done.

The Data-Breach Cost Hiding in Privacy-Preserving Age Verification
Privacy-preserving age verification hinges on who holds the data and who learns the result. Choose an age check that survives a breach, not a privacy label.

AMLA Group-Wide RTS Harmonisation: An Analysis of the Blind Spot
AMLA's group-wide RTS harmonisation analysis: what the draft standard aligns across group subsidiaries, and the identity duplication it leaves untouched.

This Week in Compliance: UK Cryptoasset Authorisation Rules Land
UK cryptoasset authorisation rules, MiCA's closed CASP window and the Aflac breach converge: produce compliance evidence you can prove, stop warehousing PII.

Stablecoin KYC Compliance: What the GENIUS Act Does Not Bind
Stablecoin KYC compliance is a multi-issuer counterparty-screening problem the GENIUS Act does not bind. We show where the duplication actually sits.

This Week in Compliance: MiCA Transitional Period Ends 1 July 2026
The MiCA transitional period ends 1 July 2026: grandfathering closes, ESMA confirms no extension, and an estimated 75% of CASPs face the exit. The same week, FATF, AMLA and the UK tighten the rules on who is authorised and how they must verify customers.

FCA Cryptoasset Authorisation Gateway Analysis: Date vs Architecture
FCA cryptoasset authorisation gateway analysis: the regime opens 30 September 2026 and commences 25 October 2027 — and the architecture decides who carries the cost.

KYC Ongoing Monitoring Requirements: Periodic to Event-Driven
KYC ongoing monitoring requirements shift from periodic refresh to event-driven re-attestation under AMLR Recital 69 and the FCA's CDD findings.