We verify users, businesses & prevent fraud. Backed by YC & Robinhood.

San Francisco
Pinned Tweet
We raised $7.5M to solve identity and fraud on the internet Didit will be powering every application
We just raised $7.5M to build the infrastructure for identity and fraud. The round is backed by @ycombinator, Orange Collective, Rebel Fund, Pioneer Fund, and other incredible VCs and angels. AI is making fraud incredibly cheap to create: fake identities, fake businesses, fake transactions, all generated at internet scale. We believe every app will soon need trust infrastructure the same way apps today rely on payments or cloud hosting. The future of the internet is verified. Didit (@didit) is building it.
6
12
70
54,027
Last week someone leaked 150 Million driver's licenses from the US and Canada. This is one of the worst identity breaches ever recorded. What happens when the system designed to verify you becomes the tool that help criminals steal it? Here's the breakdown:
3
4
18
1,555
What has to change. A document image no longer proves who is behind a transaction. Checks have to verify a real person is on a real camera, right now, and hold up against replay and injection attacks. And the industry has to stop treating permanent retention of identity data as normal. Collect less. Retain less. Verify better.
1
1
73
Thank you, Jason. This is exactly the thesis we've been building Didit around since day one. Trust is one of the oldest technologies humanity has. Long before money or cities, it was what allowed people to cooperate. And almost every major step forward in civilization was, at its core, an innovation in trust: written contracts let us rely on promises, signatures let us verify where a document came from, banks let us trust that our savings would still be there tomorrow, and passports let a border officer trust that a stranger is who they claim to be. Societies scaled the moment strangers could trust each other. The internet connected billions of strangers faster than any technology in history, but it was built to move information, not to establish who is on the other side. So every company rebuilt its own version of trust: its own onboarding checks, its own document uploads, its own fraud team. People verify themselves again and again, businesses pay repeatedly to learn the same things, and fake accounts, bots and fraud remain a cost built into almost every online service. Payments went through the same phase. Every merchant had to solve it on their own until a payments layer emerged, and that single piece of infrastructure unlocked e-commerce, subscriptions, marketplaces and much of the modern internet economy. Trust has never had that moment. AI makes it urgent. Faces, voices, documents and entire identities can now be generated at almost no cost. When faking becomes free, proof becomes the most valuable signal online: is this a real person, are they who they say they are, and is this AI agent actually authorized to act on someone's behalf? As more activity online is carried out by agents, every one of those interactions will need an answer. Payments answer whether value can move. Trust answers whether it should. That's why we believe trust will become even more important than payments, and a layer every application will need, not just a feature some of them add. How this layer gets built matters as much as whether it gets built. At Didit we hold a few principles: - Accessible. Trust infrastructure can't be a privilege of large enterprises. A two-person startup should have access to the same protection as a global institution, and every individual, anywhere in the world, should be able to use it. - Private. People should be able to prove what matters without giving away more than necessary. Personal data belongs to the person. - Portable. Verification shouldn't start from zero with every new service. Trust should move with the individual. - Simple. A few lines of code for developers and a few seconds for users. Civilization scaled when we learned to trust strangers. The internet will reach its full potential when trust is as native to it as sending a message. That's the future we're building at Didit, and we're accelerating.
Gotta give it to @nikitabier - he knows the perfect way to illustrate the future. What would happen if bots pursued unlimited refund requests? Stunts like this are Rorschach Test. For those that are scared about the future, they will see this and see havoc caused by AI. They will see Nikita‘s post as reckless because it exposes a vulnerability, takes advantage of a system unprepared for a new technology and then foolishly shares it on the Internet, where anyone else can copy it. Of course those who built defense systems before see this very differently. This is a hypothetical scenario that allows people to understand what defense systems they will need as challenges like this proliferate. On November 2 1988, the "Internet" was brought down by the Robert Morris worm, an accidental website counter built by a single computer scientist who was curious how many websites existed on the Internet but forgot to tell the bot not to count websites it had already checked. It brought down a meaningful portion of the Internet as its bot multiplied uncontrollably. (Note - I'm using the words website and internet, our later words for it - this was actually a unix worm on the Arpanet in the primordial soup of what would become the internet) Early YC Founders know the story because Robert Morris is one of the original Founders of Y Combinator. The solution wasn’t to convince everyone never to make a website counter or prevent the technology of website counters from existing or to make it so that the government had to review all website counters before website counters could be provided to the public. No, the solution was companies like Cloudflare, which stop both innocent and malicious distributed denial of service attacks by sitting in front of every website and for a relatively tiny fee, monitoring the Internet activity in order to protect local websites. Today Cloudflare and an entire security industry stop thousands of attacks per hour. For the rest of society, we don't notice except every once in awhile when one briefly gets through. It's hard work by talented people, but it's not a societal risk. The Robert Morris worm was an innocent example of future havoc that could be wrecked on the Internet economy. The solution was an innovative company solving the problem. DDOS attacks have not been a significant problem for the last 30 years. What’s the solution to the Nikita bot swarm refund request example? It’s companies like @didit. We invested in @albertorosasg and @_arosasg's human verification company to solve this exact problem. They’re the best. fastest, cheapest way for any company to verify they’re talking to a human and not an agent. They will need to be as big as CloudFlare because 100% of all businesses will need it. Might be a good time to speed up guys.
3
1
17
1,271
We just claimed @didit. No pressure.
22
4
88
9,740
Didit retweeted
We merged nearly 2,300 PRs in the last 30 days alone at @didit, 99% automated. Been heads down this month powering a true Company Factory: a company that runs itself, tapping humans only when strictly necessary. The volume of output is massive. There is nothing quite like waking up to 50+ new PRs ready to go. These are fully reviewed by other agents arguing until they reach a consensus (a literal PR AI war). By the time they hit my queue, they have AI approval, clean CI passes, and visual proofs attached. I will be dropping a video soon breaking down exactly how this works under the hood. Stay tuned.
7
3
42
5,618
Didit keeps evolving. We started as a KYC product, but very quickly realized the problem was much bigger than verifying someone at sign-up. Companies need infrastructure they can build on top of to understand who is behind an account, whether they can trust them, and whether that changes over time. So Didit expanded into identity + fraud infrastructure across the full user lifecycle: KYC, KYB, biometrics, AML, transaction monitoring for fiat and crypto, authentication, device intelligence, and more. People who follow us probably know we ship faster than we can even properly launch things 😅 So we thought it was finally a good time to record one video that explains what Didit is today, what you can build with it, and where we are going. We are getting very close to the vision we had from the beginning: becoming the trust layer of the internet. The internet should be a safe place to transact, build, and interact, and trust infrastructure should not only be accessible to the biggest companies in the world.
6
1
17
2,646
Unico IDCloud is now available on Didit for verifications in Brazil. Selfie + CPF checked against a biometric database covering 96% of the economically active population. Answers in under 3 seconds, document capture only as a fallback. didit.me/blog/unico-didit-pa…
4
2
21
4,275
Face match, live. We ran a session against a mismatched ID and watched it decline at 1% similarity in real time, then re-ran with the right face and cleared at 95%. Every result streams back so you can build on top of it.
6
1
14
3,438
🫡🫡
Robinhood Ventures Fund II has invested in Didit. The fund lists on the NYSE as $RVII on August 13 with about 80 startups, most from @ycombinator. Anyone with a brokerage account can own a piece of them. Including a small piece of Didit. Read more: didit.me/blog/didit-robinhoo…
3
16
6,007
Face matching now flags duplicates. If someone's already verified on your system, you get a warning the moment their face shows up again, and you set how strict those warnings are. One person, one account, no matter how many times they try.
7
6
12
1,911
Didit is now SOC 2 Type 2 attested. Type 1 says the controls are designed right. Type 2 says they ran that way, day after day, across a four-month independent audit of our security, availability, and confidentiality controls.
7
23
3,275
Identity fraud is easiest to understand when you watch the full verification happen live. In this video, Alberto Rosas, CEO of Didit, builds a know your customer (KYC) workflow from scratch and tests it twice: the wrong face of Gabriel Jarrosson is declined, then the correct person passes. piped.video/watch?v=UQOstUpd…
5
6
22
5,222
Didit Console. Build an identity and fraud workflow the way you want it, pick your countries, connect any database with one click, preview exactly what the end user sees in real time. No code needed to design the flow. API first when you're ready to ship.
2
1
10
2,005