Launch HN: Didit (YC W26) – Stripe for Identity Verification
Didit, a YC W26 startup, aims to be the "Stripe for Identity Verification," offering a unified platform for KYC, AML, biometrics, and fraud prevention. It gained traction on HN for tackling the fragmented, expensive identity verification market with transparent pricing, self-service APIs, and superior performance on challenging devices. The founders' focus on privacy-preserving solutions and technical depth resonated well with the community.
The Lowdown
Didit, co-founded by identical twin brothers Alberto and Alejandro, is on a mission to simplify and improve identity verification across the internet. Recognizing the current landscape as a "fragmented mess" of multiple vendors, hidden pricing, and outdated systems, they set out to build a comprehensive, vertically integrated solution. Their platform handles KYC, AML, biometrics, authentication, and fraud prevention globally.
Key aspects of Didit's approach and offering include:
- Vertical Integration: Unlike many orchestrators, Didit built its own AI models for ID verification and biometrics, controlling the entire stack to enhance security, privacy, and performance.
- Accessibility & Transparency: They offer self-service APIs, transparent pricing (pay-per-usage, no hidden fees), and aim for a developer-friendly experience akin to Stripe.
- Global Coverage & Performance: The platform is designed for worldwide use, optimized for low-bandwidth connections and less powerful devices (e.g., older Android phones), where many legacy systems fail.
- Advanced Fraud Detection: Didit employs sophisticated AI models to detect deepfakes, spoofing, and other fraud attempts, analyzing over 200 signals.
- Privacy-Preserving Design: They advocate for data minimization, allowing businesses to verify specific attributes (e.g., "over 18") without seeing the full ID, and building towards user-controlled identity wallets.
- Flexible Workflows: The system supports configurable rules and human override capabilities for edge cases, alongside an integrated case management system.
Didit presents itself as a modern, efficient, and privacy-conscious alternative to the existing enterprise solutions, promising increased onboarding rates and reduced identity verification costs for businesses.
The Gossip
Competitor Comparisons & Market Critique
The HN community engaged in a lively discussion comparing Didit to existing identity verification providers, particularly Stripe Identity, Persona, and Jumio. Many expressed appreciation for Didit's transparent pricing and self-service model, contrasting it with the often opaque and sales-driven approach of incumbents. The founders clarified that while Stripe offers identity, Didit specializes more deeply, providing broader global coverage, advanced workflow orchestration, NFC chip verification, and superior fraud detection, especially outside of Stripe's core payments ecosystem.
Privacy Provisions & Regulatory Rigor
Privacy and data security were central themes, with users raising concerns about handling sensitive PII and biometric data, referencing past controversies. The Didit team emphasized their privacy-preserving architecture, which minimizes data retention and allows for attribute-based verification (e.g., "is over 18" instead of full ID scans). They detailed security measures like ISO27001, iBeta PAD, and upcoming SOC 2, alongside bug bounty programs. However, one commenter provided detailed, constructive criticism regarding the vagueness of Didit's privacy policy, suggesting improvements for GDPR compliance, specific data retention periods, and clarity on international data transfers.
Technical Tenacity & Feature Flexibility
Commenters highlighted Didit's technical differentiators. The focus on robust performance on low-end Android devices and poor network conditions was particularly praised, as this is often an ignored area that fraudsters exploit. Questions arose about how Didit handles the adversarial evolution of fraud, such as deepfakes, with the founder noting their continuous feedback loops and rapid iteration. Another significant point was the need for human override capabilities for edge cases or VIP clients, which Didit confirmed it supports through configurable rules and a case management system, providing a crucial 'escape hatch' for businesses.
Ethical Enquiries & Foundational Philosophy
A philosophical debate emerged regarding the general necessity of extensive identity verification. Some users questioned whether most web applications truly need personal details, advocating for a world with less identity exposure. The Didit founder largely agreed with the sentiment, reiterating their commitment to privacy-preserving identity. They explained their vision for reusable, user-controlled identity wallets that share only minimal proofs (like 'is human' or 'is over 18'), aiming to move the industry away from indiscriminate data hoarding and towards a more ethical, consent-driven model.