Shufti-Sphere-Website-Banner
burger-menu cross-icon-2

Resources

us

216.73.216.197

CERTIFICATION · IBETA ALL LEVELS

Verified compliance across every standard we hold

Any vendor can claim their liveness check is AI-powered or spoof-resistant. iBeta certification means a third party actually tried to break it, using printed photos, silicone masks, deepfake composites, and AI-synthesised faces, and could not. Shufti holds iBeta certification till Level 3.

main-section-img

What iBeta Is

iBeta Quality Assurance is an NIST-accredited, independent testing laboratory that tests biometric systems against real spoofing artefacts under ISO/IEC 30107-3, the international Presentation Attack Detection standard. Certification is earned through adversarial testing, not documentation review. There are three tiers, each testing progressively more sophisticated attacks.

iBeta Level 1 & 2

Level 1 tests consumer-grade attacks: high-resolution printed photos, HD replay videos, paper masks, and AI-generated composite images. Level 2 escalates to physically constructed artefacts, realistic 3D face molds, latex and silicone masks, and AI-synthesised faces. These two levels are the minimum standard demanded by regulated financial institutions.

iBeta Level 3 (2025)

Introduced in 2025, Level 3 simulates a well-funded, highly skilled adversary with unlimited preparation time and deep knowledge of the biometric system. It is the benchmark for deployments facing organised fraud or sophisticated spoofing threats. Shufti is certified at this level, the most rigorous PAD tier that exists.

Why It Matters

AML and CTF regulators, including the FCA, FinCEN, MAS, and AUSTRAC, require that remote identity verification systems demonstrably resist presentation attacks. Without iBeta certification, there is no external benchmark, no published pass rate, and no independent evidence the system has ever been challenged with real spoofing artefacts.

With Shufti's iBeta Certification At All Levels

Your compliance team has documented, third-party evidence that Shufti liveness detection passed against the attack types regulators expect you to defend against. It removes the evidentiary gap in your vendor security review.

shield-logo

0% APCER at Level 1 & 2

Attack Presentation Classification Error Rate, the proportion of spoof attacks that passed. Results on file from the iBeta test report.

How Shufti Maintains IT

Shufti iBeta certification reports, covering till level 3, document the attack scenarios used, the artefacts tested, and the precise error rates recorded. These are not marketing summaries. They are the actual test reports issued by iBeta Quality Assurance, available to enterprise clients on request.

Every significant update to Shufti liveness model triggers re-evaluation before deployment. The certification you review reflects the system running in production today, not a version from a previous build cycle.

Certification Details

Certifying body

iBeta Quality Assurance, NIST/NVLAP accredited, Lab Code 200983-0.

Standard

ISO/IEC 30107-3 Presentation Attack Detection.

Tiers held

Level 1, Level 2, and Level 3, all tiers, not a subset.

Assessment type

Third-party adversarial testing, not self-assessed, not simulated.

Report access

Full test reports available to enterprise clients on signed request.