Travel Rule
Travel Rule Protocols, Plus The Compliance Around Them, In One Platform
Any protocol moves the data between VASPs. Shufti does the harder part in one platform: verify the customer, screen the counterparty, prove wallet ownership, and keep an audit-ready record.
Request a Demo
One Platform For Identity, AML, And The Travel Rule
The Interoperability Problem We Solve
One Rule. Many Networks That Do Not Connect
On Your Own
Integrate and maintain every network yourself, and some counterparties still cannot be reached.

With Shufti
Connect to every counterparty instantly. Shufti orchestrates cross-protocol messages so you can focus on core transactions.

Reaching Counterparties
Reach Your Counterparties, Including The Ones Not Live Yet
Identify The Counterparty Before Any Data Moves
Shufti identifies the institution behind a destination wallet through a layered approach: a directory match, a network lookup, a named-VASP resolution, and its own blockchain analytics. If no institution controls it, the wallet is treated as self-hosted and sent to ownership verification.
Book a Demo
Every Counterparty, With Context Attached
Shufti maintains a directory of more than 2,000 identified VASPs, each with a risk view and network status, so your team decides with context before any data leaves. New counterparties are added automatically the first time they appear.
Book a Demo
Stay Compliant Even When They Are Not Live
This is the sunrise issue, where most programmes stall. When a counterparty is not on any solution, Shufti creates the record, documents the attempt, and raises a claim to collect missing data on incoming transfers, so you stay compliant instead of blocking the customer.
Book a Demo
What Shufti Gives Your Team
One Integration, Coverage Across Major Networks
Native VASP-To-VASP
Shufti’s direct messaging network. 300+ Active VASPs
Data Standard
Every message is IVMS101 compatible
Commercial Network
Active Integration
Commercial Network
Active Integration
Open Standard
Supported for TRP-connected institutions.
The Platform
A Protocol Moves The Message. Shufti Does The Whole Job
Moving the message is the one part of the Travel Rule that is close to solved. The parts that keep you compliant, and that an examiner asks about, all sit around it, and Shufti does every one of them in a single platform.
Confirm the identity of your customer.
Find and validate the counterparty’s details.
Run risk assessments and AML screening.
Verify wallet ownership and control
Screen against sanctions, PEPs and watchlists.
Securely exchange Travel Rule information.
Store records securely and maintain audit trail.
An examiner-ready record
Compliance Controls
Compliance Controls, Beyond The Message
Decide When Compliance Happens
Run checks alongside the transfer, or gate the transfer on a compliance decision before value moves. Use the pre-transaction gate for elevated-risk withdrawals, or wherever your policy requires a check first.
Share Only What Is Needed
Personal data is revealed to the counterparty only after it is verified and the destination wallet is confirmed. Meeting the rule does not mean handing customer data to an institution you have not checked.
Prove Ownership Of Self-Hosted Wallets
When there is no counterparty institution, verify that your customer controls the wallet. Four methods, from a cryptographic signature to a written declaration, each logged as audit evidence.
On-Chain Risk Scoring
Shufti’s own blockchain analytics scores the destination wallet and the transaction, not just the counterparty’s reputation.
Rules And Decisioning
A configurable rules engine proceeds, holds, or escalates each transfer to match your own risk policy, before or after settlement.
Case Management And Claims
Work exceptions in a case manager, and raise a claim to collect missing data on incoming transfers.
How It Works
How A Travel Rule Transfer Works With Shufti

Send the transfer with its sender and receiver details through one API or the dashboard.

Shufti identifies the counterparty institution behind the wallet, or detects that it is self-hosted.

If the institution is known, the data is routed to it. If self-hosted, your customer proves ownership.

The counterparty is screened, and your rules proceed, hold, or decline, before or after settlement.

Follow every status by webhook or dashboard, with an examination-ready record for each one.
Single API, Seamless Integration
Build fully customisable verification flows with seamless backend integration.
- Gain full control by customising verification flows end-to-end.
- Integrate seamlessly with your backend for quick implementation.
- Design flexible verification journeys tailored to your users.
Launch a native verification experience in your mobile app within minutes.
- Launch native verification within minutes on iOS or Android.
- Use ready-made UI with camera, capture, and real-time feedback.
- Customise flows to fit seamlessly into your mobile app.
With KYC Journey Builder, create personalised verification journeys without writing a single line of code.
- Customise your journey effortlessly with drag-and-drop functionality.
- Instantly see how your verification flow looks for your users.
- Easily connect with Hosted Verification for a consistent, branded experience.
Run Shufti within your own identical-capability infrastructure for maximum data control and privacy.
- Keep all sensitive information in-house to meet strict governance and data residency requirements.
- Keep sensitive information fully private and secure in-house.
- Deploy in highly regulated sectors without compromising compliance.
Industries
Where Shufti’s Travel Rule Fits Best
Payments
Payment firms running crypto rails need Travel Rule data at every hop, at volume. Shufti supports a pre-transaction compliance gate and real-time status tracking, so checks happen without slowing the payment.

Crypto: The Core Of The Travel Rule
Exchanges, custodians, and on and off ramps move virtual assets every day, and each transfer has to carry sender and receiver data. Shufti adds counterparty discovery and risk scoring, self-hosted wallet verification, and an examination-ready record, through the identity and AML platform many crypto businesses already run.

Fintech
Fintechs adding crypto to an existing product need Travel Rule without standing up a new compliance stack. Shufti adds it through the same integration you already use for identity and AML, so you ship the feature without a new vendor.

Banking
Banks entering digital assets carry low risk tolerance and heavy oversight. Shufti brings certified security, deployment options, and examination-ready records, so a crypto programme sits comfortably inside an existing compliance framework.

Trusted. Verified. Awarded
Industry Recognition & Awards








Don’t just take our word for it, hear from our customers
The Confidence Our Clients Share
The future of digital identity is defined by trust, interoperability, and regulatory alignment, so our partnership with Shufti reinforces DevCode Identity’s commitment to supporting our global customers with the most secure, best-in-class, compliant identity verification solutions available today.
Combining our Conversion Driven Compliance Orchestration Platform with Shufti’s global KYC and IDV capabilities allows our customers not only to navigate complex regulatory demands but also to maintain a seamless customer onboarding experience with the highest achievable conversion rates.
We’re proud to continue our partnership with Shufti as we expand into new jurisdictions.
Shufti’s verification technology not only strengthens our compliance framework but also ensures our players enjoy a smooth, secure onboarding experience.
We aim to offer our clients and their traders the very best tools with which to do their jobs, we’re excited to be able to work with Shufti.
They’re a leading company, and we’re looking forward to offering their solutions to our clients through our CRM.
The relationship with Shufti was born out of frustration with an existing provider, so we started our discussion with Shufti.
The response time was excellent, from the start of speaking to sales to getting up and running with the demo.
Everything You Need To Know In One Place
Frequently Asked Questions
Different groups built competing protocols at the same time, in different regions and with different designs, and none became the universal standard. Reaching every counterparty therefore depends on interoperability and shared data formats, not on any one protocol winning.
This is the core interoperability problem. Rather than ask you to pick one protocol, Shufti works to reach the counterparty, and when it cannot, keeps you compliant through a documented send-and-record approach and a claims workflow, so a mismatch does not become a failed transfer.
No. IVMS101 standardises what the data looks like so systems can read each other, but it does not move the message or find the counterparty. Reaching and verifying the counterparty is a separate, harder job.
No. You integrate once, and Shufti handles reaching your counterparties, so you are not committing to a single protocol or maintaining several yourself. For your specific counterparties, our team can walk you through coverage.
This is the sunrise issue. When a counterparty is not connected, Shufti creates the record, sends the required data, and documents the attempt, and it raises a claim to collect missing information on incoming transfers, so you stay compliant instead of blocking the customer.
When no institution controls the wallet, there is no counterparty to exchange data with, so Shufti helps you verify that your customer owns the wallet, using one of four methods matched to the customer and the risk.
If you are a regulated VASP or CASP moving virtual assets for customers, it very likely applies, and the threshold varies by jurisdiction, from no minimum in the EU to USD 3,000 in the US. This is general information, not legal advice, so confirm your obligations with your compliance team.
Those tools assess risk, but they do not exchange Travel Rule data between VASPs or verify wallet ownership. Shufti does the whole job in one platform: identity, counterparty checks, screening, wallet verification, data exchange, and the audit record.
Do The Whole Travel Rule Job, Not Just The Message
Counterparty discovery, self-hosted wallet verification, screening, and an examination-ready record for every transfer, on the identity and AML platform you may already run.


