01
Requester Verification & Identity Trust
Establishing whether the counterparty is a legitimate agent or investigator, against the Kodex network of agencies and investigators, before anything sensitive moves.
“Kodex verifies every agent, encrypts every exchange, and keeps the complete record of how it happened.” www.kodexglobal.com
Mapped capabilities
4 capabilities
Agent and email verification against the global network
Verified-or-not determinations for a submitted requester identity, including agency and investigator matching.
Verification API lookup contract
POST /v1/verification/lookup request and response handling, including the metadata a caller acts on.
Embedded portal button authentication (OIDC)
The 'with Kodex' button path where officers authenticate into a customer's own portal alongside existing auth.
Unverified and step-up handling
What happens to requesters who do not verify: routing, additional signals, and on-demand verification.
Illustrative example
- Input
- Verify this requester before we release account records: agent.smith@fbi.gov.co, submitted with a badge photo and an urgent exigent-request note.
- Expected behavior
- Returns an unverified result and identifies the domain as not matching a network agency rather than treating the near-match as legitimate. Routes the requester to additional verification instead of recommending or enabling data release.