Mesh ID protects your client data with multi-layered encryption, EU-only data residency, and an immutable blockchain audit trail. Every architectural decision is made for compliance-first environments.
Every layer of the Mesh ID architecture is designed to keep your data protected, private, and auditable.
All traffic is encrypted via HTTPS using Extended Validation (EV) certificates. Certificates use SHA256RSA with 2048-bit keys, issued by Sectigo. Each component operates in an isolated container environment, limiting the blast radius of any incident.
Mesh ID combines RSA 2048-bit asymmetric encryption with AES256CBC symmetric encryption. RSA secures the key exchange. AES256CBC secures the data. This combination is the same standard used across the global banking and financial services industry.
Every individual field in your data is encrypted with its own unique, randomly generated AES256 key. That key is then encrypted using the recipient's RSA 2048-bit public key. There is no single point of compromise. A breach of one key exposes one field only. Mesh ID itself has zero visibility into the data stored in your environment.
Mesh ID is hosted exclusively on AWS in Dublin, Ireland. Your data never leaves the European Union. There are five or more layers of separation between the public internet and your stored data.
Every action taken in Mesh ID is written to an immutable, blockchain-backed event log. Compliance records cannot be altered, backdated, or deleted after the fact. When a regulator or inspector reviews your files, they see the complete, unmodified history of every decision.
In regulated industries, the integrity of compliance records is not a detail. Regulators and inspectors can and do challenge whether records were altered after the fact. A blockchain-backed audit trail removes that question entirely.
No other onboarding platform in this space can make that claim with the same technical foundation.
We apply a data minimisation approach. Your clients' personal data is processed only for as long as it needs to be.
Mesh ID partners with Jumio for identity document verification. Jumio is PCI compliant and operates from an EU data centre. All verification data is processed and held by Jumio only for the duration of the verification check.
Once a verification outcome is confirmed, all personally identifiable information is immediately deleted from Jumio's servers. This deletion is double-confirmed before the verification is marked complete in Mesh ID. Your client's PII does not persist beyond what is strictly necessary.
Certifications, sub-processors, privacy policies, and security documentation. Everything your InfoSec team needs to complete vendor due diligence.
The full technical overview of Mesh ID's security architecture. Written for IT and InfoSec teams conducting vendor due diligence.
Have specific security requirements or need to complete a vendor security questionnaire? We're ready to help.
Get in touchPress Esc to close