Transaction-based, not person-based
Trust layer verifies each individual transaction (invoice, order, authorization). Not just the person once.
SigID is in pre-launch. Pilot customers get direct engineering and security contact.
Join the pilot programComparison
Trust layer instead of isolated KYC tools. We compare against the status quo: classic KYC, DIY scripts and manual verification — direct, no marketing varnish.
GDPR · eIDAS · NIS2-ready · EU data residency

| Criterion | SigID | Classic KYC | DIY (in-house) | Manual verification |
|---|---|---|---|---|
| Trust-layer pattern | Yes, end-to-end: person, company, IBAN, document, authorization. | Person identification only, no transaction layer. | Hand-rolled, not standardized. | Gut feel, phone calls, Excel. |
| Audit trail with hash chain | Audit event per transaction, re-verifiable. | Identification log, no transaction trail. | Logs in own system, often without hash chain. | Email archive, Excel — no non-repudiation. |
| EU data residency | Default: Hetzner Germany, dedicated tenant for enterprise. | Mostly US/EU SaaS cloud. | Possible, but maintenance on your team. | Data scattered across email, drive, ERP. |
| IBAN protection before payment | Trust level documented, deviations flagged. | No IBAN pre-check built in. | ERP plugin, maintenance on your team. | Master data match, phone verification. |
| Trust App signature (dynamic linking) | Device-bound, signed per transaction. | SMS OTP or app OTP — no dynamic linking. | Custom solution, often only password + 2FA. | Email confirmation, phone callback. |
| Authorizations / handover | Time-bound, audited, auto-revoked. | Not provided. | Custom build, often without expiry logic. | Paper authorization, Excel list. |
| Webhooks + REST API | Stripe-style: idempotency, signed, retries. | API available, but no transaction model. | Hand-rolled, not standardized. | No API. |
| GDPR data minimization | Fingerprints + metadata instead of mandatory storage. | Full personal records kept long term. | Depends on the build. | PDFs in email inbox, often for years. |
| NIS2 readiness | Risk management, incident response, reporting paths integrated. | Not included. | Custom docs, custom maintenance. | None. |
| Time per check (median) | < 30 seconds. | 1–5 minutes (person), no transaction. | Variable, often 2–10 minutes. | 8–12 minutes. |
| Pricing model | Free + pay-as-you-grow: first 50 checks/month free, then pay-per-check. No packages, no seat fees, no minimum contract. | Tier packages per seat or volume license. Setup fees common. | Own license and maintenance costs — hard to predict. | Personnel hours — typically 8–12 minutes per transaction. |
What trust layer really means
KYC verifies people once. SigID verifies transactions — continuously, with audit evidence and in every workflow.
Trust layer verifies each individual transaction (invoice, order, authorization). Not just the person once.
Every check produces an audit event with cryptographic chaining — re-verifiable for auditors, regulators and courts.
We store fingerprints + metadata, not full records. PDFs deletable after AI extraction. GDPR-compliant out of the box.
Comparison FAQ
Where SigID is different from KYC, DIY or manual — direct answers.
First audit ID in 5 minutes. Free without credit card. EU data residency in Germany.