Privacy

Give services the information they need, not everything you know

Sojaly is designed around a simple principle: a service should be able to establish what it needs without automatically receiving everything used to establish it.

The principle

The answer can be enough

An application may need to know whether someone is over 18.

It does not necessarily need their date of birth.

An employer may need to know whether a member of staff is at an approved workplace.

It does not necessarily need the person's location history.

A service may need confirmation that a sensitive action was performed by the authorised person.

It does not necessarily need the person's identity document.

Sojaly is designed around these distinctions.

In practice

Verification is not data collection

When a verification service can answer a question without passing the underlying information to the relying application, that is the result Sojaly is designed to provide.

The application gets the answer it needs.

The underlying identity information remains protected.

Build with verified identity

Whether you need a complete product for your organisation or a verification service for your application, Sojaly gives you an identity layer you can build on.