- The check goes to accounts you already have. Somebody who is who they say they are passes in seconds. Somebody who is not has to explain why they cannot, which your own records were never going to tell you.
- Two accounts with one face come back as one person. Whoever verified first holds that face, and the later account is tied to it, whatever email sits on it.
- Everyone who passes leaves a location and a network trail. VPN, datacenter IP, Tor exit, abuse-listed IP, TLS automation and fingerprint mismatch each land against the person, next to where they verified from, so you can hold it against the country on file.
- Flag, do not block. An audit is not a door. Set the duplicate action to allow and flag, so nobody paying you is locked out while you decide.
- You act in your own system. Export carries the results with the
external_idyou attached, so you can line a flagged person up against the account you already hold.
How you start
- Create a verification and pick the Account Sweep preset.
- Decide how results tie back to your accounts. No code: send to the addresses you already hold and set Identity to Linked by guest, so the email links that face to that account. Code: set it to Provided by you and pass the identifier you already keep.
- Set On collision to Allow + flag.
- Send from the verification’s Activity tab. Select a first batch and Send unsent rather than mailing the whole userbase. There is a 500 a day cap, and each row then shows sent, opened, clicked and verified, so you can see who is avoiding it.
- Filter Activity to Needs action, read Flags, then Export and reconcile.
Next steps
Configuration
Set what the check does.
Reading Activity
Who took the check, and who came back flagged.
Exporting users
The CSV, and the fields that tie back to your records.
Threat levels and signals
What the bands and families mean.