AML, KYC & Financial Crime
V

Vouched

Vouched began as a document based identity verification provider, reading photo identity documents, comparing them to a live selfie, detecting tampering and checking details against databases, aimed at industries where missing documentation excludes people from access. It has since turned toward verifying artificial intelligence agents rather than only people, building a Know Your Agent platform with an agent reputation directory and continuous behavioural monitoring for anomalous or malicious activity.

A shipped integration binds a biometric check of the authorising human to the moment an agent is created, after which the agent receives only the financial authority its user intended through payment tokens bounded in advance by merchant, amount and use case, with every authorisation event logged into a tamper evident trail.

Last VerifiedAugust 12, 2026
Compare Vouched with other vendors
Founded
2019
Headquarters
Seattle, Washington, United States
Website
www.vouched.id
Categories
aml-kyc-financial-crime, fraud-and-transaction-risk, customer-banking-agents
Assessment

Capability Axes

Capability grades

15 of 15 axes rated · 6 graded A or B

AI Capability
AI Centrality
AA on AI CentralityThe artificial intelligence is the product. Remove the models and there is nothing left to sell.
Vendor Published

The removal test leaves nothing at either end of the business. The original product reads photo identity documents, compares them against a live selfie, examines addresses, checks databases and looks for signs of tampering, all of which is model work, and the founders came from computer vision and autonomous vehicle backgrounds rather than from workflow software.

The newer agent platform is equally model dependent, continuously monitoring agent behaviour to detect anomalous or potentially malicious activity, which the company describes as using artificial intelligence to safeguard against artificial intelligence.

Autonomy and Oversight Model
AA on Autonomy and Oversight ModelWhat the system runs alone, what constrains it, and how a person checks it are all published: modes, thresholds, sampling or audit controls, and the route a case takes to human review.
Vendor Published

The most concrete answer in this index to the question of how an autonomous agent's authority is bounded, and it operates at the point of delegation rather than after the fact. A biometric check with live liveness detection confirms the identity and intent of the authorising human at the moment an agent is created or activated, and the agent then receives exactly the financial authority its user intended and nothing more, through payment tokens bounded in advance by merchant, amount and use case.

Every authorisation event is logged with biometric, behavioural and intent signals into a tamper evident trail, and agent behaviour is monitored continuously afterwards for anomalies. The company states the principle directly, that this converts agent level authorisation into human anchored authorisation. Where Recordsure prohibits a decision and motif locates the liability, this bounds the grant itself.

Model Risk Management and Transparency
CC on Model Risk Management and TransparencyTransparency is claimed in general terms with no mechanism a model validator could interrogate.
Vendor Published

No accuracy figure, false match rate, error analysis or independent evaluation result was located for the document and face verification products, and no participation in an accredited presentation attack scheme or government face evaluation appears. Nothing is published for the behavioural monitoring either, where the operative measure would be how often anomalous agent activity is correctly identified against how often normal automation is flagged. For a product whose whole purpose is deciding what may be trusted, the absence of any published measure of its own reliability is the central gap.

Operational and Outcome Evidence
BB on Operational and Outcome EvidenceVendor aggregate claims with real figures, or audited scale disclosures from a publicly listed company.
Third Party Estimated

The chief executive states annual recurring revenue above 10 million dollars alongside very strong growth and demand, which is a revenue disclosure most private vendors of this size decline to make and which is a harder number to assert than a customer count. A 17 million dollar Series A in late 2025 brought total funding to 22 million.

One shipped integration is named and dated, with a biometric authentication partner also indexed here, described as available to enterprise customers and development partners at launch rather than announced as a roadmap. Against that, no customer is named anywhere, no verification volume is published, and the revenue figure is a founder statement rather than an audited one.

AI Safety and Data Stewardship
CC on AI Safety and Data StewardshipGeneral assurances that do not answer the question this axis asks, which is whether one customer’s data trains models serving its competitors. Unbounded cross client learning stated with no boundary grades here too.
Vendor Published

The shared corpus here is the product rather than a side effect, since an agent reputation directory only works by aggregating observed behaviour across every customer that uses it, so what one enterprise learns about a misbehaving agent necessarily informs what every other enterprise sees. That is the correct design for a reputation system and it is disclosed as the offering.

What is absent is governance around it: nothing states what behavioural data is contributed, whether contribution is a condition of use, how an agent operator can contest its own reputation entry, or how customer specific verification material is separated from the shared behavioural record.

Regulatory and Compliance
GLBA and Data Privacy Posture
CC on GLBA and Data Privacy PostureA standard privacy policy that covers the website rather than the service, or silence on a product that touches limited consumer data.
Vendor Published

No data protection agreement, retention schedule, subprocessor list or deletion commitment was located. The payload spans identity documents and selfies in the original product and, through the biometric integration, face, palm and voice captures at the moment an agent is authorised, with each authorisation event logged alongside biometric, behavioural and intent signals.

That authorisation record is an unusually rich artifact, describing not only who a person is but what they intended to permit and when, and nothing published states how long any of it is kept or who can access it.

Security Certifications and Trust Center
CC on Security Certifications and Trust CenterA single footer line, or certifications asserted without being enumerated, which is weaker than naming them because it invites an assumption a buyer cannot check.
Vendor Published

No attestation, certification, trust centre or enumerated framework was located. That matters more than usual for this product, because the company is asking enterprises to trust it as the authority on which agents and which humans may be trusted, and a platform occupying that position without published assurance is asking for confidence it does not evidence. Peers in adjacent identity work publish accredited biometric testing; nothing equivalent appears here.

Regulatory Status and Licensure
CC on Regulatory Status and LicensureThe regulatory position is unstated. Most vendors in this index are technology suppliers and being unlicensed is the correct posture, so this grade records silence about the posture, not a missing licence.
Vendor Published

No supervisor, statute or instrument is named. Enterprise compliance is referenced as the purpose of the audit trail without identifying which obligations it serves, and the central concept the company promotes is one it is defining itself rather than one a regulator has established, so there is no admission process to have passed. That is not unreasonable for a category this new, and it leaves an enterprise buyer unable to establish what regulatory question a Know Your Agent record actually answers.

AI Governance and Bias Disclosure
CC on AI Governance and Bias DisclosureResponsible artificial intelligence committed to in policy language with no evaluation behind it, on a product whose bias surface is modest.
Vendor Published

Two exposures sit alongside a genuine inclusion motivation. The founding account is explicit that a lack of documentation excludes millions from banking and healthcare, and building verification that works for people with imperfect paperwork is a real access objective. Against it, document reading and, through the integration, face matching carry the demographic error differentials documented throughout this lane, and no evaluation result or per population accuracy was located.

The second exposure is newer and less examined anywhere: an agent reputation directory means a model judging which agents may be trusted, and reputation systems tend to concentrate advantage with established operators while making it hard for a new or wrongly scored agent to recover standing. Nothing describes how a reputation is formed or contested.

AI Liability and Recourse
BB on AI Liability and RecourseA published falsifiable commitment such as an accuracy figure with its method, or a real correction route for the affected person, such as step up verification instead of silent denial.
Vendor Published

No guarantee or indemnity was located, and the design does something better than a commercial promise for the party at risk. Because an agent's authority is bounded in advance by merchant, amount and use case, the maximum loss from a hijacked or misbehaving agent is capped at the moment of delegation rather than discovered afterwards, and because every authorisation carries a tamper evident record of the biometric and intent signals behind it, a disputed transaction can be traced to whether a live consenting human actually granted the authority. Containment plus traceability is real recourse. What is missing is anything for the other side: an agent operator wrongly scored in the reputation directory has no described route to correct it.

Integration and Deployment
Model Supply Chain Disclosure
BB on Model Supply Chain DisclosureSubstantial partial disclosure, or a chain that is structurally short: an explicit in house build, on premise deployment, per customer instances, or zero retention at the model layer.
Vendor Published

The most sensitive component in the newer product is named rather than obscured, with the biometric authentication supplying face, palm and voice verification and liveness detection identified as a partner's technology rather than presented as the company's own, which tells an enterprise exactly whose system captures its users' biometrics. Document and face comparison models in the original product appear to be built in house given the founders' computer vision background.

What is not disclosed is the rest: no model provider is named for the behavioural monitoring, no data source for the database checks the verification product performs, and no subprocessor list or hosting arrangement was located.

Core Systems and Integration Depth
BB on Core Systems and Integration DepthNamed systems or a documented public API, with the depth or the production evidence left open.
Vendor Published

One integration is named, dated and shipped rather than announced, embedding a biometrics platform directly into the agent creation and authorisation workflow and available to enterprise customers at launch, and the partner is itself indexed here. A public agent reputation directory operates as its own connection point for anyone assessing an agent.

The company positions the platform as a single identity layer adapting across physical documents, digital credentials and agent interactions, which is the right architectural ambition. What is not evidenced is any connection into the systems a financial institution runs, with no core banking, onboarding, case management or payments platform named.

Deployment Model and Data Residency
CC on Deployment Model and Data ResidencyCloud only with nothing stated, which is the category norm.
Vendor Published

No hosting provider, region selection, residency commitment or private deployment option was located. The exposure is meaningful given that the platform holds identity documents, biometric captures taken through its integration partner and a persistent record of what each person authorised their agent to do, and nothing published states where any of it is processed or held.

Commercial
Commercial Transparency
CC on Commercial TransparencyNo price is published and engagement runs through a demo form, which is the norm in this index.
Vendor Published

No pricing, packaging or basis of charge was located for either the identity verification product or the agent platform. The unit question is genuinely open for the newer line, since an agent authorisation is a different economic event from a one time identity check and could plausibly be charged per agent, per authorisation, per monitored hour or per transaction, and nothing indicates which.

Institution and Segment Coverage
CC on Institution and Segment CoverageSegments claimed broadly, banks, fintechs, credit unions, without evidence any of them has its own maintained surface.
Vendor Published

Financial services appears as a target industry rather than as a maintained segment. The founding motivation names banking and healthcare as the sectors where missing documentation excludes people, and the agent work is intrinsically financial in that it governs payment authority, purchases and transfers, but no bank, lender or insurer is named as a customer, no financial services specific product or proposition exists, and the strategic direction is toward agent infrastructure across commerce generally rather than deeper into regulated institutions. This is coverage by adjacency.

Alternatives to Vouched

The closest documented capability profiles to Vouched in the same categories, ordered by similarity across the same fifteen axes the index grades every vendor on. Closest documented profile, not a claim that either product does the same job. No vendor pays for placement.

Documents Institution and Segment Coverage and AI Governance and Bias Disclosure, among others where Vouched does not

Documents Institution and Segment Coverage where Vouched does not

A lighter documented profile than Vouched

Documents Institution and Segment Coverage and AI Safety and Data Stewardship where Vouched does not

Documents Institution and Segment Coverage and Regulatory Status and Licensure where Vouched does not

Documents Institution and Segment Coverage and Regulatory Status and Licensure, among others where Vouched does not

Similarity is computed axis by axis from published grades, not from a composite score. The index does not aggregate grades into a total. See the fifteen axes and the methodology.

Commercial

Pricing

Vendor-published figures are labeled as such. Figures labeled “Estimated” are derived from third-party sources and have not been confirmed by the vendor.

No pricing data has been verified for this vendor. Pricing information will be published here once confirmed through vendor disclosure or third-party estimation.

Contact us

Found a vendor we missed? Have feedback on the index? We’d love to hear from you.

AI FinTech Index

The AI FinTech Index is an independent index that tracks changes to AI vendors in financial services. It holds 489 vendors across banking, lending, insurance, wealth, capital markets and financial crime compliance, each graded on the same 15 capability axes from public sources. No vendor pays for inclusion, placement, or rating.

Index Status
Last index update
September 5, 2026
The AI FinTech Index is an editorial reference, not a regulatory body. Vendor data is verified against published sources and public regulatory filings. Figures labeled “Estimated” have not been confirmed by the vendor. See the Methodology page for evaluation standards and limitations.
© 2026 AI FinTech Index
3801 N Capital of Texas Hwy, Ste E240 · Austin, TX 78746