Shufti Sphere

A Guide to Docless Identity Verification in the Europe — a user completing a one-tap identity check on a tablet, with Identity Verified, Frictionless Entry and One-Tap Verification signals
Europe · 2027 ready

Onboard already verified users with Docless Verification in Europe

eIDs, Digital Identity Wallets, and trusted data sources now enable regulated businesses to onboard users with less friction. This guide maps Europe’s Docless Verification landscape and shows how businesses can verify customers without identity documents while still maintaining a high level of assurance in onboarding.

Schedule a Demo

Why Docless, Why Now

Three pressures are converging on identity

1

Commercial

Digital-native users expect onboarding in minutes — nearly half abandon journeys that become too lengthy or cumbersome.

2

Regulatory

National eID schemes already serve millions, and eIDAS 2.0’s European Digital Identity Wallet is being rolled out across member states ahead of 2027.

3

Assurance

Beyond confirming the data is genuine, businesses need confidence that the person presenting it is its legitimate owner. Biometric binding that detects deepfakes and presentation attacks helps provide that assurance.

Docless Verification sits at the intersection of authoritative data sources, government eIDs, and biometric assurance

01 — The Conversion Challenge

Onboarding friction is a measurable revenue problem

Europe’s digital economy has reached a scale where remote onboarding friction translates immediately into lost revenue. With reportedly 94% of EU individuals online in 2025 and nearly nine in ten using mobile, regulated platforms onboard at volumes that demand an identity layer which never becomes a bottleneck in the way of customer acquisition.

47% of users abandon the digital onboarding process mid-way — Capgemini, 2025
Onboarding funnel: 100,000 monthly registrations enter identity verification, if 40% abandon at verification friction, ~60,000 onboarded, ~€12M in monthly revenue at risk (~40,000 lost customers × €300 lifetime value)

To illustrate the revenue scale

≈€12M

in monthly revenue forfeited by a platform processing 100,000 monthly registrations at €300 average lifetime value, if 40% of users abandon verification.

The Fraud Threat

Fraud is escalating specifically at the remote onboarding stage

While friction in customer onboarding drives revenue loss, the need for a higher level of assurance in onboarding is rising at the same time as fraud levels climb. Account creation is increasingly becoming the highest-risk stage of the customer lifecycle. European regulators continue to reinforce a risk-based approach to customer due diligence, requiring institutions to understand customer risk, apply proportionate verification measures, and maintain confidence in the identity established at onboarding.

+495%

projected surge in deepfake fraud by the end of 2026 — including document deepfakes and synthetic IDs.

Shufti internal verification data

Risk-sensitive due diligence

Verification depth must match each customer’s risk. Where digital identity schemes are used, their reliability and assurance level should be assessed as part of the overall remote customer onboarding controls, including notified eID schemes under the eIDAS framework.

Confirmed presence & identity binding

Liveness checks can strengthen assurance by helping confirm the presence of the individual presenting an identity credential and reducing risks associated with impersonation attempts.

02 — The European eID Ecosystem

Your users are already verifying with national and commercial eIDs

European countries have developed national and private digital identity ecosystems, with many schemes collectively serving hundreds of millions of users. Docless Verification through these schemes is not a future capability — it is the current reality for most of Europe’s digitally active population. The map below shows the government-issued and nationally recognised eID schemes across Europe, based on the schemes notified under eIDAS (Official Journal C/2026/4428), with non-EU markets such as Norway included for context.

European Government eID Landscape: national digital identity schemes across Europe (EU/EEA and selected European countries) — Norway BankID and Buypass ID, Sweden Swedish eID (BankID, Freja eID), Finland Finnish eID (Citizen Certificate), Denmark MitID, Estonia Estonian eID (ID-card, Mobile-ID, Smart-ID), Latvia Latvian eID (eParaksts), Lithuania Lithuanian eID (Mobile-ID), Netherlands DigiD, Belgium Belgian eID card, Germany German eID (Personalausweis), Luxembourg LuxTrust, Ireland MyGovID, France France Identité / FranceConnect+, Spain DNie, Portugal Cartão de Cidadão, Italy CIE (Carta d'Identità Elettronica), Malta Malta eID, Slovenia Slovenian eID, Croatia eOI (Personal Identity Card), Poland Trusted Profile (mObywatel), Czech Republic Czech eID card, Slovakia Slovak eID card, Austria ID Austria, Hungary Hungarian eID (eSzemélyi), Romania ROeID, Bulgaria Bulgarian eID card, Greece Gov.gr Wallet and Cyprus Cyprus eID (IDMe.cy). Based on the eIDAS-notified schemes, Official Journal C/2026/4428.

Note: this map shows government-issued or nationally recognised eID schemes across European countries. Some countries have more than one eID means under a single national scheme, and non-EU European countries (e.g. Norway) are included for context. Source: European Commission, Official Journal C/2026/4428 (12 August 2026).

The European Commission’s 2030 Digital Decade target — 80% of EU citizens using a digital ID by 2030 — is already ahead of schedule in several markets.

Shufti’s Active eID coverage across Europe

Alongside these government schemes, Shufti has partnered with private eID providers, extending Active eID coverage across Europe. Blue denotes markets with eID coverage; grey denotes markets where coverage is expected in future. New eID integrations are added as further national and private schemes come online, so coverage keeps growing.

Shufti eID coverage across Europe: blue denotes markets with eID coverage, grey denotes markets where coverage is expected in future — United Kingdom (Yoti, OneID, UK eVisa, Lloyds Smart ID, Post Office EasyID), Ireland (MyGovID, Verify 365), Norway (BankID, Bypass ID), Sweden (BankID, Freja), Denmark (MitID), Finland (Finnish Trust Network), Estonia (ID-kaart), Latvia (Smart-ID), Lithuania (Mobile-ID, LT ID Login), Netherlands (eID Easy, iDIN, Digidentity), Belgium (Belgian eID Login, itsme), Germany (Verimi), France (FranceConnect+, La Poste Digital Identity), Spain (DNie), Portugal (Portuguese Cartão de Cidadão), Italy (SPID, CIE), Malta (Malta eID), Poland (MojeID PL), Czech Republic (MojeID Czech), Austria (Handy-Signatur / ID Austria), Ukraine (Diia app), Bulgaria (Evrotrust), Serbia (eID eUprava) and Greece (Gov.gr Wallet).

03 — Docless Verification Coverage Across Europe

Passive Docless Verification coverage across Europe

Passive Docless Verification validates identity using trusted government, telecom, credit, commercial, and consumer data sources without requiring document submission. By combining multiple authoritative data sources within a single verification flow, Shufti supports both one-to-one matching and two-plus-two verification methodologies, improving resolution rates across diverse markets. Bubble size reflects adult population, while colour represents the highest coverage available from an individual data source across key European economies.

Bubble chart of passive eID coverage across Europe, where bubble size reflects adult population and colour shows the highest coverage available from a single data source — Norway ~100%, Netherlands ~100%, Denmark ~100%, Finland ~100%, Czech Republic ~100%, Poland ~99%, United Kingdom ~98%, Spain ~97%, Germany ~95%, France ~95%, Switzerland ~95%, Sweden ~94%, Greece ~94%, Malta ~93%, Moldova ~93%, Ukraine ~93%, Italy ~90%, Portugal ~90%, Austria ~90%, Hungary ~90%, Lithuania ~90%, Luxembourg ~90%, Iceland ~85%, Ireland ~85%, Gibraltar ~85%, Belgium ~85%, Romania ~85%, Liechtenstein ~83%, Estonia ~79%, Andorra ~79%, Slovenia ~73%, Albania ~71%, Latvia ~68%, San Marino ~67%, Vatican ~67%, Slovakia ~57%, Bulgaria ~55%, North Macedonia ~48%, Montenegro ~46%, Serbia ~40%, Cyprus ~40%, Belarus ~29%, Monaco ~27%, Bosnia and Herzegovina ~26%.

The chart highlights representative markets — coverage extends beyond the countries shown here.

04 — eIDAS 2.0 & The EUDI Wallet

Wider EUDI Wallet acceptance is arriving in 2027

Is your business ready to accept the EUDI Wallet?

Regulation (EU) 2024/1183 requires every member state to issue a European Digital Identity Wallet by December 2026. The EUDI Wallet framework is designed to enable wider acceptance of digital identity credentials across participating services from 2027, subject to applicable obligations and implementation requirements for relying parties such as banks, payment institutions, and regulated digital platforms.

APR 2026

Identity binding rules

Implementing Regulation (EU) 2026/798 establishes reference standards for remote onboarding to European Digital Identity Wallets, where electronic identification means at assurance level substantial are combined with additional remote onboarding procedures to meet high assurance requirements. These procedures support identity verification and the binding of personal identification data to the wallet and user device.

DEC 2026

Wallet issuance

Every member state issues a government-backed portable identity container citizens use to share verified attributes selectively.

LATE 2027

Wider acceptance

Acceptance obligations begin to apply for relying parties in scope. A programme built on document capture alone will need to be extended to accept wallet credentials.

05 — One Platform, Three Capabilities

Identity verification, assurance, and e-signing in one place

EU businesses may need a combination of identity verification, stronger authentication assurance, and electronic signing capabilities for use cases such as loan applications or transaction authorisation. Shufti brings these together on a single platform, applied in any combination a customer or transaction demands.

Three capabilities · apply the combination your workflow requires

Identity verification, assurance, and e-signing in one placeIdentity Verification

Confirm identity using trusted digital identity schemes, authoritative sources, or government-backed credentials such as BankID, MitID, SPID, DigiD, itsme, FranceConnect+, or future European Digital Identity Wallet credentials.

Higher Level of Assurance

Biometric liveness can strengthen assurance by helping verify that the person presenting the credential is the legitimate holder.

Consent & Signing

Complete transactions with electronic signatures, including Qualified Electronic Signatures where a legally recognised qualified signature is required.

06 — Risk-Based Orchestration

Match verification depth to customer risk

The best Docless Verification flows don’t apply one process to everyone. They run a lighter check for low-risk users and escalate only when the risk profile warrants. This is the architecture that makes Docless Verification both commercially viable and compliance-grade.

Passive eIDVLow risk

Invisible background check against authoritative data — under 3 seconds, no redirect.

Active eIDVHigher Risk Higher Reward

Authentication with a government-issued digital identity credential the user already holds.

Biometric BindingIdentity Ownership

Liveness capture at iBeta Level 3 — ISO/IEC 30107-3 presentation-attack detection.

Verification depth escalates with customer risk → higher assurance

Future ready for the EUDI Wallet

Infrastructure for the future of digital identity in Europe

Shufti is actively investing in the future of digital identity — expanding eID coverage across Europe and integrating with the evolving EUDI Wallet ecosystem. Businesses are positioned to accept digital credentials and support customer onboarding as regulatory adoption milestones approach, without building and maintaining complex digital identity infrastructure from scratch.

07 — Provider Evaluation

Use this checklist to choose a Docless Verification provider for Europe

A single integration that opens Docless Verification across the entire EU, so one provider and one contract cover every market you operate in, with no need to source, integrate, or maintain a separate vendor per country.

Active Docless Verification via national government credentials across all major EU markets.

Passive data-source verification across member states, drawing on both government and non-government authoritative sources, with a demonstrable per-market resolution rate.

iBeta Level 3 conformance under ISO/IEC 30107-3, with deepfake detection built and updated by the provider on its own timeline, running in-session without redirects.

Verification depth configurable by segment, with automatic in-session escalation when a risk signal appears mid-flow.

EUDI Wallet acceptance readiness ahead of late 2027, QES support under eIDAS 2.0, and in-region plus on-premises deployment for GDPR and data sovereignty.

Onboard more than 400 million already verified users across Europe through a single solution

The eID schemes are live, the regulatory framework is set, and the capability already exists. The only question is whether your provider can deliver it across the markets you operate in.

A Guide to Docless Identity Verification in the Europe — cover Docless Verification guide — table of contents Docless Verification guide — executive summary Docless Verification guide — three questions this guide answers
Previous
01 - 04
Next

Certifications

Independently audited and certified for enterprise-grade security and data protection.

  • GDPR
  • GDPR Fundamentals
  • ISO 27001 Certified
  • CCPA
  • iBeta Level 1 — ISO 30107-3 Compliant
  • iBeta Level 2 — ISO 30107-3 Compliant
  • PCI DSS Compliant
  • Shufti SOC 2 Type 2 Compliant

Frequently Asked Questions

Shufti’s eIDV coverage across Europe spans more than 30 countries through Passive eIDV, verifying identity against authoritative government and commercial data sources. Active eIDV supports a growing range of national and private eID schemes, including BankID, MitID, SPID and CIE, itsme, FranceConnect+, Gov.gr Wallet and the other schemes shown on the coverage map above. Coverage is continuously updated as new eID schemes and data sources are integrated, so the map reflects availability at the time of publication; contact Shufti for the current eIDV coverage in the markets you operate in.

Was this content helpful?

Docless Verification confirms identity against an authoritative source of truth — a government registry, financial database, or government-backed eID — rather than from a submitted document image. It removes the long forms, repeated requests, and upload failures that drive onboarding abandonment, while combining authoritative data with biometric assurance for high confidence.

Was this content helpful?

Regulation (EU) 2024/1183 requires every member state to issue a European Digital Identity Wallet by December 2026. The framework is designed to enable wider acceptance of wallet credentials across participating services from 2027, subject to applicable obligations for relying parties. Implementing Regulation (EU) 2026/798 establishes reference standards for remote onboarding to the wallet, combining electronic identification at assurance level substantial with additional onboarding procedures to reach the high assurance level.

Was this content helpful?

Even with authoritative data, you must confirm the person presenting the identity genuinely owns it — not someone using breached details or a synthetic identity. iBeta Level 3 conformance under ISO/IEC 30107-3 is the highest independently audited liveness standard, explicitly testing against AI-generated face attacks at the sophistication now in operational use.

Was this content helpful?

Look for a provider that owns its core technology, returns a single consistent result schema across markets, holds iBeta Level 3 conformance, allows configurable risk-based escalation, and is positioned for EUDI Wallet acceptance ahead of late 2027 — with in-region and on-premises deployment for data residency.

Was this content helpful?

    search_cross_mobile

    Please complete the information below 
to download the whitepaper

    By clicking the "Submit" button, you are agreeing 
to the Terms & Conditions and Privacy Policy

    n-img-roi-cross

    Form submitted successfully!

    Thank you for your interest — your report is loading now.

    Verify Singapore customers before December 2026

    With about eight months to the NRIC authentication deadline and MAS enforcement at its firmest since 2023, see Shufti configured for Singapore, with MyInfo routing, FIN-holder fallback, deepfake-resistant biometric authentication, AML screening, and MAS-calibrated audit records.

      Let’s Tailor Your Journey

      Which products would you like to check out?

      VideoIdent

      Address Verification

      eIDV (Docless)

      KYB

      AML Screening

      Fraud Prevention

      Face and ID Verification

      Age Verification

      Others

      What is your expected yearly verification volume?

      1 to 1,000

      1,001 to 5,000

      5,001 to 20,000

      20,001 to 50,000

      50,001 to 100,000

      100,001 to 1,000,000

      1,000,000+

      Valid Invalid number

      By clicking Submit, you accept our Privacy Policy and consent to marketing communications.

      n-img-roi-cross

      Form submitted successfully!

      Thank you for your interest — your report is loading now.

      Take the next steps to better security.

      Contact us

      Get in touch with our experts. We'll help you find the perfect solution for your compliance and security needs.

      Contact us

      Get the Shufti newsletter

      Stay ahead of the curve with fresh takes on the latest identity innovations.

        Take the next steps to better security.

        Contact us

        Get in touch with our experts. We'll help you find the perfect solution for your compliance and security needs.

        Contact us

        Request demo

        Get free access to our platform and try our products today.

        Get started

        Pitch a piece and get a verified byline in the Media room.

        Partnership Inquiries?
        Email us at [email protected]

        iBeta Level 1 — ISO 30107-3 Compliant iBeta Level 2 — ISO 30107-3 Compliant iBeta Level 3 — ISO 30107-3 Compliant PCI DSS SOC 2 Type 2 GDPR GDPR Fundamentals — Quality Guild KJM Age Verification CCPA / CPRA Cyber Essentials Cyber Essentials Plus
        Copyright © 2026 Shufti. All rights reserved.