Login with RDCPASS puts one button where your sign-up form and password field used to be. The citizen approves on their own phone with a face match, sees what data you are asking for, and comes back to your application already verified.
Sign in with RDCPASS
Result
New users arrive with a certified identity and the details you asked for. Your team has nothing to check by hand.
Each sign-in is confirmed by a face match on the citizen’s own phone. There is no password to phish, reuse or forget.
Citizens review and approve what you receive before it is sent. That helps with data-protection compliance, and users can see what they agreed to.
Your application redirects them to a secure RDCPASS page. They never type their identity details into your app.
The RDCPASS app shows a notification with your company’s verified name and the data you are requesting.
A short face check against their enrolled RDCPASS identity confirms it is really them.
You receive signed proof of who they are, with basic KYC and each additional scope they approved.
When the citizen approves, your application receives signed proof of identity that you can verify:
Sign-in uses the citizen’s enrolled phone and their face. There is no password fallback.
The consent screen shows your organization’s name as confirmed by RDCPASS, so citizens know who is asking.
The citizen sees every requested scope, with sensitive data flagged, and approves or declines the request as a whole.
Each application gets its own stable identifier for a citizen. Users cannot be tracked from one service to another.
OpenID Connect with mandatory PKCE, so common login libraries work without changes.
On the same screen, you can ask the citizen to consent to a credit score for use with Credit Scoring.
Integration
Requests are HTTPS calls with JSON bodies, signed and encrypted. The sandbox returns the same formats as production, so the code you test with is the code you ship.
Create an application
Sign up, create a sandbox application and select the services and data scopes you need.
Make your first call
Start from an official SDK or from the samples on the right. Eight languages are covered.
Go live
After due diligence, replace the sandbox keys with production keys and add your mTLS certificate. The request code stays the same.
curl https://api.rdcpass.cd/v1/oidc/token \
-X POST \
--cert your-app-client-cert.pem \
--key your-app-client-key.pem \
-H "Content-Type: application/x-www-form-urlencoded" \
-d "grant_type=authorization_code" \
-d "code=auth_9f2ac3d0e1b74a2f9c7d5b3a1e6f8c0d" \
-d "redirect_uri=https://yourapp.example.com/callback" \
-d "client_id=app_8f2a1c0e9b" \
-d "code_verifier=dBjftJeZ4CVP-mB92K27uhbUJU1p1r_wW1gFWFOEjXk"{
"access_token": "rdcp_at_9f2ac3d0e1b74a2f8c0d5b3a1e6f8c0d",
"id_token": "eyJhbGciOiJSUzI1NiIsInR5cCI6IkpXVCJ9.eyJpc3MiOiJodHRwczovL2FwaS5yZGNwYXNzLmNkIiwic3ViIjoiY2l0XzdmMWUyYTljNGIzZDhmNjAiLCJhdWQiOiJhcHBfOGYyYTFjMGU5YiIsImV4cCI6MTczNTY5MzIwMCwiaWF0IjoxNzM1Njg5NjAwfQ.signature",
"token_type": "Bearer",
"expires_in": 3600,
"scope": "openid profile rdcpass:kyc.addresses rdcpass:kyc.phone_numbers rdcpass:kyc.emails rdcpass:kyc.documents.primary"
}Billed per monthly active user.
Each additional scope the citizen consents to adds a small surcharge. Requests rejected with an error are never billed, and the sandbox is always free.
The RDCPASS page guides them through installing the app and enrolling their face before they continue. There is no password option.
A declined request, a failed face match and a timeout all return the same “access denied” outcome, so your application learns nothing the citizen did not choose to share. Offer them the option to try again.
Not through the sign-in identifier, which is private to your application. Their RDCPASS ID comes with basic KYC. You get a verified document number only if you request the documents scope and the citizen approves it.
The notification, consent and face match must all be completed within 60 seconds. After that the request ends, and the citizen can start again.
Verify a person against their certified RDCPASS account and receive the data you are approved for.
Learn moreConfirm that the person in front of the camera is the owner of the identity.
Learn moreAssess applicants who have no bank credit history, with their consent.
Learn moreBuilding and testing in the sandbox is free. You go live once your business and application have passed due diligence.