Skip to main content
Launching 1 July 2026
OSA deadlines active now

Built for the regulatory landscape

Age verification regulations are tightening across the UK, EU, and beyond. AgeCheck API launches 1 July 2026 — designed with compliance in mind from day one, so you can meet your OSA, GDPR, and DSA obligations without storing a single identity record.

Join the waitlist now and get your first month free — completely free.

Zero Identity Storage

No identity documents, dates of birth, or personal data retained on our servers after verification.

Privacy by Design

Our architecture is built around data minimisation from the ground up — not bolted on as an afterthought.

Signed Audit Tokens

Every verification produces a signed JWT that serves as an auditable record of the verification event.

Multi-Jurisdiction

Designed with UK, EU, and international compliance requirements in mind from day one.

Regulations

The regulatory landscape

Age verification requirements are evolving rapidly. Here is what platforms need to know about the key regulations.

UK Online Safety Act

United Kingdom

In scope

The Online Safety Act requires platforms hosting age-restricted content to implement robust age assurance. Ofcom's codes of practice set out the required confidence levels. AgeCheck API is designed to meet these requirements.

  • Applies to services likely to be accessed by UK users
  • Requires age verification for highest-risk content categories
  • Age estimation may be sufficient for lower-risk categories
  • Ofcom codes of practice set technical standards
  • Deadlines phasing in through 2025–2026

GDPR & Data Minimisation

European Union

Compliant by design

GDPR's data minimisation principle requires platforms to collect only the data necessary for their purpose. AgeCheck API returns a boolean verification result — no identity data retained — which is consistent with Article 5(1)(c).

  • Article 5(1)(c): data must be adequate, relevant, and limited
  • No identity documents stored on our servers
  • Verification result is a boolean — verified or not
  • No date of birth or personal data retained after verification
  • Consistent with ICO guidance on age assurance

eIDAS 2.0

European Union

Future-ready

The EU's updated eIDAS regulation introduces European Digital Identity Wallets that enable selective disclosure — proving age without revealing identity. AgeCheck API is being designed to support EUDI Wallet-based verification as adoption grows.

  • EUDI Wallets enable privacy-preserving age verification
  • Selective disclosure: prove age without revealing identity
  • Member states required to offer EUDI Wallets by 2026
  • AgeCheck API architecture designed for EUDI compatibility
  • Gradual adoption expected through 2026–2027

EU Digital Services Act

European Union

In scope

The DSA introduces obligations for platforms to protect minors from harmful content. Very large online platforms face the strictest requirements, but all platforms should be aware of their obligations under the DSA.

  • Applies to platforms accessible to EU users
  • Stricter requirements for very large online platforms (VLOPs)
  • Requires risk assessments for minor-accessible services
  • Age verification is a key mitigation measure
  • Enforcement by national Digital Services Coordinators

Data flow

What happens to user data

Our verification flow is stateless by design. Here is exactly what happens — and what doesn't.

API launching 1 July 2026 — not yet live

This data flow reflects the production architecture. You can review and plan your integration now. Join the waitlist for 1 month free access on launch day.

1

User initiates verification

Your platform sends a POST request to initiate a verification session. No user data is sent at this stage.

2

User completes verification flow

The user is directed to our hosted verification UI. Verification signals are processed in our environment — not yours.

3

Signals are processed and discarded

Verification signals are used to generate a confidence score. After the token is issued, the signals are discarded. Nothing is retained.

4

Signed JWT issued to your platform

You receive a signed JWT containing the verification result, confidence level, timestamp, and platform ID. No personal data.

Identity documents stored

We do not store identity documents, dates of birth, or any personal data on our servers.

FAQ

Compliance questions

First month free for waitlist members

Ready to get compliant?

AgeCheck API launches 1 July 2026. Join the waitlist now and get your first month of API access completely free.

OSA deadlines are active. Start planning your integration today.

Claim Your Free Month

No commitment · Launching 1 July 2026