📄 Guide
Core rules
- Whitelisted identity documents: the user submits a single document, completes face verification and fills in the required background information — that is the whole verification.
- Non-whitelisted identity documents: the user must submit a passport (proof of identity) plus one proof-of-address document, and complete face verification and background information.
- Cardholder age: between 18 and 70.
- Document validity: an identity document must have at least 6 months of validity remaining; a proof of address must have been issued within the last 3 months.
- No screenshots: every document must be a photo or scan of the original — screenshots are not accepted.
Proof of identity (POI)
POI basic requirements
- Age: the cardholder must be between 18 and 70.
- Validity: the identity document must have at least 6 months of validity remaining.
- Full name
- Date of birth
- Photo
- Document number
- Issue / expiration date
- A legible MRZ (machine-readable zone)
Upload requirements
Uploaded files must satisfy all of the following:- An original photo — screenshots are not accepted
- Accepted formats: JPG, JPEG, PNG, PDF
- At least 100 KB, or a resolution of 300 DPI
- No larger than 20 MB
- Must be in colour
- Sharp, good quality and legible
- All four corners must be visible
- One or both sides of the document
- Do not upload anything retouched or altered in image-editing software
Accepted documents by country / region
The table below lists the identity documents accepted in each country or region, and whether that document still requires a separate proof of address (POA).
¹ Japan-specific requirement: when using a My Number Card or a driving license, the user’s IP address must be inside Japan; otherwise the user must also submit a passport for verification.
Proof of address (POA)
When the user presents a passport, a separate proof of address is required. Accepted documents include bank statements, utility bills and official government documents. A proof of address must also be an original — screenshots are not accepted.- Purpose: a POA verifies the user’s residential address.
- Validity: the document must have been issued within the last 3 months.
- Content: it must show the full name and the address, and the name must match the identity document.
- Upload limits: JPG, JPEG, PNG or PDF only; each file no larger than 10 MB; up to 3 files.
Validity rules at a glance
How documents are submitted, and the related fields
Documents accompany the card application: with Sumsub the user’s documents are collected in Sumsub and you share them with DCS throughkycInfo.sumsubShareToken — for how the sharing partner is configured, see Sumsub KYC data sharing. The POA fields (poaDocType / poaDocUrlList[] / poaDocDate / addressLine1 / addressLine2 / state / city / postalCode / country) are submitted with the virtual card endpoint POST /card/v1/virtual-card/apply; for the field specs see the card application parameter dictionary.
For the material KYC needs, the markets cards can be issued in and the per-region document requirements, see Compliance and the KYC flow.
Next steps
- The resubmission path when a document fails: KYC rejections and resubmission
- Compliance overview and where KYC sits in the flow: Compliance and the KYC flow
- Sharing-partner configuration when using Sumsub: Sumsub KYC data sharing

