Why 1Kosmos?
Traditional passwords and outdated multi-factor authentication methods are no match for today’s security challenges. 1Kosmos Customer modernizes the customer journey by replacing weak credentials with a convenient identity wallet, powered by strong identity and public-private key cryptography.
With our low-friction approach to identity verification, businesses can instantly differentiate legitimate users from fraudsters hiding behind stolen or synthetic identities. The result? A low friction, secure, and tailorable authentication experience that customers will appreciate.
Unlike traditional systems that rely on probability-driven fraud detection, 1Kosmos provides deterministic identity proofing. This means:
- Instant, high-assurance verification of legitimate customers
- Fraud blocked at first contact, reducing risks of account takeovers and fraudulent transactions
- Frictionless, high-trust transactions
With identity verification accuracy exceeding 99%, businesses can mitigate fraud, reduce fraud management, and lower administrative costs.
With 1Kosmos, trust is established at first use through a simple, one-time registration process that verifies identity in under a minute. The self-service workflow is customizable based on the business’s risk levels and customer needs, supporting a variety of verification methods, ranging from self-asserted identity (using email, SMS, Telco, bank accounts, etc.) to certified Identity Assurance Level 2 (IAL2) per NIST 800-63-3, satisfying Know Your Customer (KYC) mandates.
1Kosmos can be configured for one-time registration without data retention or to enable returning customers with a hassle-free login experience via a multi-purpose digital wallet. When customer data is retained, the platform’s use of a distributed ledger with public-private key encryption ensures that customers retain sole control over their personally identifiable information (PII).
The multi-purpose digital wallet enables frictionless account access while performing multi-factor authentication by default and can be used for zero-knowledge proof, such as verifying age without revealing birthdate. It can also accelerate customer onboarding to digital services because it can serve as a user-controlled and managed store for all personal identifiable information, which can be shared upon user consent.
What The Experts Say...
Key Capabilities
Login Strong Customer Authentication Open
APIs Digital
Wallet
Automatically Verify Identity for New Customer Accounts
All online logins assume identity. Organizations simply hope they’ve granted access to the legitimate customer and not to someone performing an account takeover. With 1Kosmos our customers prove identity and reduce synthetic identity fraud before new account origination. We also enable our customers to comply with Know Your Customer/Anti Money Laundering mandates and ensure legitimate new accounts by automating ID verification with our FIDO2, NIST and ISO certified solution.
During enrollment, a great user experience is a must and the flexibility provided by 1Kosmos means that organizations can utilize an app-based or an appless enrollment workflow, and frictionless authentication once verified.
1Kosmos identity proofing utilizes a user’s driver’s license, passport, or National ID to verify user identity and is completed within a few minutes with 99%+ identity proofing accuracy and 99%+ spoofing and counterfeit detection. 1Kosmos supports document verification for over 150 countries. We can also verify identity at lower levels of assurance using banking, telco (eg, SIM binding), email, social security number, and phone number, among other methods.
The extracted data is used to build a convenient, reusable digital wallet for frictionless biometric MFA and to give users control over their captured PII data.
Unrivaled Biometric Authentication
Traditional MFA solutions that rely on SMS, push notifications and email not only present too much friction to the transaction but come with well-known security loopholes that lead to account takeover and fraud. These solutions provide proof of possession, not proof of identity. As a result, consumers are getting phished more often as they routinely get emails, SMS messages, and phone calls trying to trick them into disclosing account credentials, personal information, or downloading malware.
1Kosmos mitigates these problems because our approach ties verified identities to the user’s biometric that was captured at enrollment. Our exceptional user experience is warm and friendly. As a result, every access attempt physically verifies the user identity, leaving no chance for impostors to login, defeating ATO attacks and fraudulent transactions.
The platform is certified to NIST 800-63-3, FIDO2, ISO/IEC 30107-1, and ISO/IEC 30107-3 specifications and supports remote identity proofing to comply with Know Your Customer mandates. The user’s data is protected by a cryptographic public-private key pair, so the biometric can’t be spoofed or stolen, and sessions can’t be compromised.
Build Customer Trust and Loyalty Through Enterprise Grade Security
After identity verification and customer enrollment, organizations often issue weak credentials like usernames and passwords. 1Kosmos, leveraging its advanced architectural advantage Our platform empowers individuals to access and share credentials securely. Learn More , offers an authentication platform that supports biometric passwordless multi-factor authentication. This solution enables flexible levels of identity assertion, tailored to meet the needs of your business and adapt to the evolving demands of your customers.
1Kosmos authentication methods are available through our SDK, and can be easily integrated into any mobile app, delivered through the 1Kosmos app, or implemented as an appless experience.
Users will authenticate via any of our methods depending on the business need, the risk profile of the activity, and the security requirement for each access request.
By implementing 1Kosmos, organizations can deploy any of seven identification methods including: device biometrics, LiveID, push message, email/SMS/Token, 3rd party hardware token, Microsoft Entra ID, and Mac TouchID.
1Kosmos also integrates via industry authentication standards such as OAuth, OIDC, SAML and FIDO. It also offers legacy support via RADIUS and supports interoperability across Microsoft Entra ID, Mac, iOS, Android, Linux, and Unix operating systems.
Deploy What You Need and Meet Customer Expectations
Many people believe that passwordless customer authentication is difficult to deploy. Others just want to migrate from their antiquated 2FA systems and go passwordless gradually. Still, others have some passwordless capabilities but want to improve security because there are gaps in their current deployment.
A result of our flexible architecture is an ability to meet the needs of most any workflow. Many customers deploy 1Kosmos to satisfy both workforce and customer workflows. So as new mandates, regulations or even integrations come to market (like open banking as an example) the 1Kosmos API framework can help organizations quickly adopt and integrate, providing a future proof platform.
As a cloud-based identity provider, 1Kosmos comes with several key features. The administration portal provides easy access to the configuration and management of the platform. Starting with over 50 out-of-the-box integrations and a robust API framework enabling quick and easy integrations into CIAM technologies like Microsoft Entra ID, Ping, Okta, and ForgeRock.
1Kosmos APIs comply with the strictest GDPR, SOC2, and ISO 27001 certification standards for the handling and retention of sensitive data.
Customer Managed. Customer Owned.
During enrollment, information collected from scanned credentials is encrypted and, for the highest level of security, stored in a distributed ledger compliant to the W3C DID standard. As such, user information is accessible only via a FIDO2 certified public-private key pair secured in the TPM/Secure Enclave of a device and under sole control of the user (typically via their live biometric selfie) made possible by our innovative LiveID feature.
Without the private key, data cannot be decrypted, accessed or shared. There is no central authority overseeing data access other than the user possessing the private key.
For deployments that will continue to need passwords, customers will ultimately forget their passwords and require a reset. The digital wallet has a password reset feature that provides users a self-service reset option that utilizes user biometrics to ensure the validity of the request.
Since there is no centralized storage of user information, 1Kosmos eliminates the risk of a honeypot of personally identifiable information, which must be secured against data breach threats. This design represents a significant architectural advantage Our real biometrics (with verified liveness) and traditional MFA methods match risk to the authentication method. Learn More , enhancing overall security.
Get Started with 1Kosmos
Ready to get started with 1Kosmos? Complete the form below, we’d love to give you a tour.