Age verification, for a duty that is already in force.
If your platform is in scope and the gate is still a self-declared checkbox, you are not working towards a deadline. The deadline passed, and the exposure is open now. That is a stronger reason to act than any date on a slide, which is why this page leads with it rather than with a calendar.
UK Online Safety Act age assurance: in force, present tense.
Procurement in this segment is usually driven by a calendar, and the calendar has already turned. Both duties below are live today.
PEGI 16 for paid loot boxes in the UK applies from June 2026
None of this is legal advice
The position, in one line
An estimate is a judgement you may be asked to defend. A date of birth read from a signed chip is not.
That difference does not matter on a quiet day. It matters on the day somebody asks how a specific fourteen-year-old got through, because at that point the only useful thing to own is a record of what was checked.
Verified, not estimated — and no age estimation from a face.
This is a product decision, not a gap in the roadmap. We do not offer an estimator and are not building one.
The date of birth is read from a document
On the passport chip path, the state signed it
Why we refuse to ship an estimator
| Path | Where the date of birth comes from |
|---|---|
| passport chip | Data signed by the issuing state, verified to its national root offline. The strongest answer available here. |
| document page | Read from the printed document. No state signature is verified — an Israeli ID card is always this path, because that chip is government-locked and cannot be read. |
| age estimation | Not offered. Deliberately. There is no estimator in the product and none planned. |
Your server declares the assurance level it requires and ours refuses anything weaker rather than returning a pass with a caveat attached. How the chip path works, in full →
Age verification for gaming and digital goods, without holding the identity.
The gate and the dossier are two different decisions, and most vendors bundle them. A platform can prove the gate without becoming the custodian of who was behind it.
Three fields, and nothing else
Inside your own flow, at the moment that matters
And the images are not kept
The asymmetry worth noticing
A compliance programme that works by accumulating identity documents makes the platform a better target every month it runs. A three-field answer does the opposite: the gate gets stronger and the thing an attacker would want is not there.
Larger field sets exist and are configured per client, so your security review covers what you chose to take rather than everything a vendor decided to send.
What this page is not claiming.
An age-assurance page is exactly the kind of page that gets handed to a lawyer and a security officer in the same week. Here is what they would otherwise have to extract by asking.
This is not legal advice, and we are not certifying your compliance
Whether a given title or service falls in scope, and what a particular duty requires of it, is a question for your own counsel. We describe a mechanism. We do not tell you that running it makes you compliant, and a vendor who does is selling you a sentence rather than a check.
An Israeli ID card cannot reach the chip-backed level
That chip is government-locked and cannot be read — by us or by anyone outside the state’s own systems. Every Israeli ID card is therefore a photo-only verification, and the date of birth on that path comes from the printed page rather than from signed data. If your duty needs the chip-backed level, the document that gets you there is a passport.
A mobile browser cannot read a chip or attest a device
The hosted page works, and it tops out below the attested levels. The chip path needs a native capture — the JERIX app, or your own app through the React Native or Flutter SDK. A returning person in a mobile browser is sent through full verification rather than a quick re-recognition, so verify once and log in anywhere is not a claim we make.
Spoof detection does not decide anything
Liveness and the movement ceremony are measured and recorded on every capture and gate nothing. We do not claim the system blocks a spoofed selfie or detects a printed or on-screen copy. What rejects a swapped or replayed frame is the capture manifest, hashed and signed on the device against a single-use nonce; on iOS, Apple App Attest proves a genuine unmodified app on real Apple hardware. Android carries no hardware attestation.
Not shippedScreen and print detection as an enforcing control; liveness enforcement; Android hardware attestation. The first is blocked on a false-reject rate we are willing to publish, the last on provisioning.
No certification stands behind this
No SOC 2, no ISO 27001, no third-party penetration test and no iBeta presentation-attack evaluation. Two founders, pre-certification, with one live third-party integration in this segment since 30 August 2026 — a gaming ticket platform, which we will not name.
Not shippedSOC 2, ISO 27001, penetration test, iBeta ISO 30107-3. Published data-retention policy — blocked on drafting, not on behaviour.
Bring the titles you think are in scope.
Twenty minutes, a real passport chip read with the network interface down, and a straight answer about which of your flows the gate belongs inside.
Request a walkthrough