{
  "data": {
    "a": {
      "slug": "socure-riskos",
      "name": "Socure RiskOS",
      "vendor": "Socure Inc.",
      "vendorUrl": "https://www.socure.com",
      "kind": "http-api",
      "category": "identity-verification",
      "summary": "Socure RiskOS is an identity verification and risk decisioning platform from Socure Inc. Its Evaluation API runs configured workflows for KYC, document and selfie checks, fraud scoring and watchlist screening, and returns a decision with reason codes.",
      "url": "https://www.anchorterminal.com/tools/socure-riskos",
      "markdownUrl": "https://www.anchorterminal.com/tools/socure-riskos.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/socure-riskos.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/socure-riskos.json",
      "repo": "https://github.com/socure-inc/.github",
      "license": "Proprietary service. No service agreement is published, and the OpenAPI file states its licence as Proprietary",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://mcp.riskos.socure.com/sandbox",
      "packages": [
        {
          "registry": "npm",
          "name": "@socure-inc/device-risk-sdk"
        }
      ],
      "auth": "api-key",
      "authNotes": "Self-serve API key for the sandbox, sent as `Authorization: Bearer \u003ckey\u003e`. A person signs up in a browser for a Socure Launch sandbox account and copies the key from the Developer Workbench. Sandbox and production use separate keys and hosts. Production starts at 0 requests a second and needs Socure Support to activate it, and Enterprise accounts go through sandbox certification with Socure staff. Each key reaches every workflow, with no scopes. Regenerating a key keeps the old one working until it is deleted, and an additional key is requested from Support. The MCP server takes its own MCP Server Key. IP allowlisting, mutual TLS and payload encryption are optional (checked 2026-10-08).",
      "pricing": "usage",
      "pricingNotes": "Socure Launch charges per evaluation started in production, at $0.80 for document verification, $0.90 with watchlist screening, $1.00 for KYC, fraud and watchlist with a document step-up, and $1.30 with prefill. Launch accounts receive $1,000 in production credits each month. The sandbox is free, so an agent can build and test without a contract, but it returns predefined results. Evaluations an end user abandons are still charged. Socure Enterprise is priced through sales. Whether sign-up or the move to production asks for a card was not established (checked 2026-10-08).",
      "priceSummary": "$0.80 / tx",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the API reference, the OpenAPI file, the MCP server page or the pricing page (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": 9,
      "popularity": {
        "githubStars": null,
        "npmWeekly": 35395,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://help.socure.com/riskos/docs",
      "llmsTxt": "https://help.socure.com/riskos/llms.txt",
      "openapi": "https://raw.githubusercontent.com/socure-inc/.github/main/openapi-spec/riskos-api-spec.json",
      "capabilities": [
        "kyc.identity",
        "kyc.documents",
        "kyc.screening",
        "kyc.business",
        "kyc.cases"
      ],
      "tags": [
        "hosted",
        "usage",
        "sandbox",
        "api-key",
        "mcp",
        "openapi",
        "llms-txt",
        "webhooks",
        "status-page",
        "soc2",
        "iso27001",
        "fedramp"
      ],
      "lastRelease": "2026-10-06",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 63.5,
        "grade": "B",
        "agentReady": false,
        "rank": 357,
        "ranked": true,
        "rankOf": 842,
        "categoryRank": 5,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 46,
          "maintenance": 75,
          "payments": 35,
          "reliability": 75,
          "schema": 84,
          "security": 60,
          "transparency": 68
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "A public OpenAPI file, llms.txt, 15 documented error codes and dated release notes cover a ten-operation REST API, and Socure Launch publishes prices from $0.80 an evaluation with a free sandbox. API keys carry no scopes, no idempotency header is defined, no service terms are published, and production stays at zero requests until Socure activates it.",
        "bestFor": "A company in the United States that wants one decision from combined KYC, document, fraud and watchlist checks through a single evaluation call.",
        "strengths": [
          "OpenAPI 3.0.3 file for ten operations and a 3.1 webhook file in a public GitHub repository, last synced 5 October 2026",
          "llms.txt indexes for every docs section and a Markdown copy of each page, with a robots.txt signal that allows AI input",
          "Socure Launch publishes four solutions at $0.80 to $1.30 per evaluation, with a free sandbox and $1,000 of monthly production credits",
          "Errors return one of 15 machine-readable codes with field-level `invalid_args`, and 429 responses carry `X-Retry-After`",
          "Release notes show entries on 5 and 6 October 2026 and more than 20 dated entries since 10 July"
        ],
        "weaknesses": [
          "No service agreement or API terms are published. The only terms pages are website terms of use and end-user terms for document capture",
          "Each API key reaches every workflow, with no scopes or read-only keys, and an additional key has to be requested from Support",
          "The rate limit page advises idempotency keys, but neither the docs nor the OpenAPI file define an idempotency header",
          "No endpoint lists or searches evaluations. A caller needs the `eval_id` from the original response or a webhook",
          "Enrichment request and response schemas, reason codes and signal definitions sit in the dashboard, not in the public docs",
          "Production starts at 0 requests a second until Socure approves it, and Launch accounts are capped at 1 evaluation a second and 500 a day"
        ],
        "agentNotes": [
          "Send `Authorization: Bearer \u003ckey\u003e` to `https://riskos.sandbox.socure.com/api/evaluation` for tests and `https://riskos.socure.com/api/evaluation` for live checks. The two environments use separate keys.",
          "Use dummy data only in the sandbox. It returns predefined results, connects to no live data source and expects the documented test values.",
          "Store the `eval_id` from every `POST /api/evaluation` response. No list or search endpoint exists to find it later.",
          "On 429 wait the seconds given in `X-Retry-After`. Do not blindly resend a failed `POST /api/evaluation`, because no idempotency header is documented and Launch bills each initiated evaluation.",
          "The MCP server at `https://mcp.riskos.socure.com/sandbox` reads docs, workflows and webhooks with its own MCP Server Key. It cannot run evaluations or read results."
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 63.5
          }
        ],
        "editorialScores": {
          "ergonomics": 46,
          "maintenance": 75,
          "payments": 35,
          "reliability": 75,
          "schema": 84,
          "security": 60,
          "transparency": 53
        },
        "provenanceScore": 82
      },
      "connect": {
        "http": "curl --request POST \\\n  --url \"https://riskos.sandbox.socure.com/api/evaluation\" \\\n  --header \"Authorization: Bearer YOUR_API_KEY\" \\\n  --header \"Content-Type: application/json\" \\\n  --header \"Accept: application/json\" \\\n  --data '{\"id\":\"customer-onb-12345\",\"timestamp\":\"2024-12-01T08:15:30.456Z\",\"workflow\":\"consumer_onboarding\",\"data\":{\"individual\":{\"given_name\":\"Jane\",\"family_name\":\"Doe\",\"email\":\"jane.doe@example.com\",\"phone_number\":\"+1-555-123-4567\",\"address\":{\"line_1\":\"123 Main St\",\"locality\":\"San Francisco\",\"major_admin_division\":\"CA\",\"postal_code\":\"94105\",\"country\":\"US\"}}}}'",
        "claudeCode": "claude mcp add --transport http socure-dev-assist https://mcp.riskos.socure.com/sandbox --header \"Authorization: Bearer $RISKOS_MCP_KEY\"",
        "config": {
          "mcpServers": {
            "socure-dev-assist": {
              "args": [
                "-y",
                "mcp-remote",
                "https://mcp.riskos.socure.com/sandbox",
                "--header",
                "Authorization: Bearer YOUR_MCP_SERVER_KEY"
              ],
              "command": "npx"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/kyc.identity",
        "tool": "https://letme.dev/socure-riskos"
      },
      "area": "domain-data",
      "unitPrices": [
        {
          "item": "Socure Launch, Document Verification (DocV)",
          "unit": "tx",
          "usd": 0.8,
          "note": "Per evaluation started in production, after $1,000 of monthly credits"
        },
        {
          "item": "Socure Launch, DocV + Watchlist",
          "unit": "tx",
          "usd": 0.9,
          "note": "Per evaluation started in production"
        },
        {
          "item": "Socure Launch, KYC + Fraud + Watchlist with DocV step-up",
          "unit": "tx",
          "usd": 1,
          "note": "Per evaluation started in production"
        },
        {
          "item": "Socure Launch, Prefill, KYC + Fraud + Watchlist with DocV step-up",
          "unit": "tx",
          "usd": 1.3,
          "note": "Per evaluation started in production"
        }
      ],
      "provenance": {
        "legalEntity": "Socure Inc.",
        "domain": "socure.com",
        "domainRegistered": "2003-06-20",
        "endpointOnVendorDomain": true,
        "terms": "",
        "privacy": "https://www.socure.com/privacy-en",
        "statusPage": "https://status.socure.com",
        "changelog": "https://help.socure.com/riskos/page/release-notes",
        "securityTxt": "expired",
        "checked": "2026-10-08",
        "notes": [
          "The Global Services Privacy Notice (effective 1 October 2026) names Socure Inc. and covers the verification services. A separate Website Privacy Notice covers the marketing site.",
          "No service agreement or API terms are published. www.socure.com/terms-of-service is the Website Terms of Use, and the policies page lists only privacy notices, the DocV Terms of Use for end users and a text messaging notice, so the terms field is left out.",
          "The API answers at riskos.socure.com and riskos.sandbox.socure.com, and the MCP server at mcp.riskos.socure.com, all socure.com subdomains.",
          "www.socure.com/.well-known/security.txt gives security@socure.com and an `Expires` value of 15 July 2026, which has passed.",
          "RDAP for socure.com gives a registration date of 2003-06-20."
        ],
        "score": 82
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/socure-riskos.json",
      "live": {
        "slug": "socure-riskos",
        "probe": {
          "target": "https://mcp.riskos.socure.com/sandbox",
          "method": "get",
          "lastAt": "2026-10-09T11:46:41.308485021Z",
          "lastOk": true,
          "lastStatus": 403,
          "lastMs": 340,
          "lastNote": "asks for credentials",
          "authRequired": true,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 337,
          "p95ms24h": 397,
          "samples24h": 44,
          "samples30d": 44,
          "days": [
            {
              "date": "2026-10-09",
              "probes": 44,
              "ok": 44
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.socure.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-09T11:40:55.521859922Z"
        },
        "updatedAt": "2026-10-09T11:46:41.308485021Z"
      }
    },
    "answer": "Socure RiskOS scores 63.5 (B) on agent readiness against Trulioo's 58.2 (C), and leads in 3 of 7 scored categories. Trulioo leads on agent ergonomics and security \u0026 auth.",
    "b": {
      "slug": "trulioo",
      "name": "Trulioo",
      "vendor": "Trulioo Information Services Inc.",
      "vendorUrl": "https://www.trulioo.com",
      "kind": "http-api",
      "category": "identity-verification",
      "summary": "Trulioo verifies people and businesses against registry and bureau data, checks identity documents and screens watchlists. Agents reach it through REST APIs with OAuth client credentials or a hosted MCP server, which is in early access.",
      "url": "https://www.anchorterminal.com/tools/trulioo",
      "markdownUrl": "https://www.anchorterminal.com/tools/trulioo.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/trulioo.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/trulioo.json",
      "repo": "https://github.com/Trulioo/trulioo-mcp",
      "license": "Proprietary service under a customer agreement that isn't public. The MCP plugin and the C# and Java REST SDKs on GitHub are Apache-2.0, and the capture SDKs fall under the Trulioo SDK Licence",
      "transports": [
        "http",
        "streamable-http"
      ],
      "remoteUrl": "https://api.trulioo.com",
      "packages": [
        {
          "registry": "npm",
          "name": "@trulioo/trulioo"
        },
        {
          "registry": "npm",
          "name": "@trulioo/kyc-documents"
        }
      ],
      "auth": "oauth",
      "authNotes": "Live access needs a `client_id` and `client_secret` that Trulioo issues after a sales contract, through a customer success manager or support@trulioo.com. The REST APIs exchange them at https://auth-api.trulioo.com/connect/token (client credentials) for a bearer token lasting 30 to 60 minutes, with optional mutual TLS. The hosted MCP server uses OAuth 2.1 authorisation code with PKCE and dynamic client registration, with `read` and `verify` scopes granted by default. Choosing Sandbox on the consent screen needs no Trulioo credentials, and https://mcp.trulioo.com/mock/mcp takes no authentication. Live MCP sessions exchange the client id and secret at https://mcp.trulioo.com/oauth/token for a one-hour token. The legacy Normalised API v1 uses Basic authentication.",
      "pricing": "paid",
      "pricingNotes": "No public prices. trulioo.com/pricing redirects to the solutions page, and live access starts with a demo or contact form. An agent can start without a contract on synthetic data only. The MCP sandbox is unbilled and needs no card or Trulioo credentials, and the mock endpoint needs no sign-in. No free tier of live verification was found (checked 2026-10-08).",
      "priceSummary": "Paid",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the developer docs, the MCP docs or the website (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": 18,
      "popularity": {
        "githubStars": 0,
        "npmWeekly": 131,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://developer.trulioo.com",
      "llmsTxt": "https://developer.trulioo.com/llms.txt",
      "openapi": "https://api.trulioo.com/wfs/interpreter-v2/api-docs",
      "capabilities": [
        "kyc.identity",
        "kyc.business",
        "kyc.documents",
        "kyc.screening",
        "auth.agent-identity"
      ],
      "tags": [
        "hosted",
        "enterprise",
        "sales-led",
        "mcp",
        "early-access",
        "oauth",
        "openapi",
        "llms-txt",
        "sandbox",
        "csharp",
        "java",
        "typescript",
        "soc2",
        "iso27001"
      ],
      "lastRelease": "2026-10-07",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 58.2,
        "grade": "C",
        "agentReady": false,
        "rank": 530,
        "ranked": true,
        "rankOf": 842,
        "categoryRank": 8,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 78,
          "maintenance": 75,
          "payments": 18,
          "reliability": 19,
          "schema": 87,
          "security": 79,
          "transparency": 56
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "The hosted MCP server has OAuth 2.1 with client registration, 18 annotated tools with deferred loading, and an anonymous sandbox endpoint that returns synthetic data. Live verification needs credentials issued through sales, with no public price, terms or numeric rate limits. The MCP server is in early access and the status page requires a login.",
        "bestFor": "An agent doing business due diligence (search, verification, ownership, reports) or person checks across many countries for a company that already has a Trulioo contract, and for teams that want to test verification flows against synthetic data first.",
        "strengths": [
          "Hosted MCP server at mcp.trulioo.com/mcp with OAuth 2.1, PKCE and dynamic client registration, so no key is copied into the client",
          "An anonymous mock endpoint and an unbilled sandbox mode return synthetic results without Trulioo credentials",
          "All 18 listed tools carry read-only, destructive and idempotent annotations, with 35 more loaded on demand",
          "Every REST reference page embeds an OpenAPI 3 definition, and both docs sites publish llms.txt with Markdown copies",
          "Hosting regions are listed per product, with US and EU regional endpoints for data localisation"
        ],
        "weaknesses": [
          "No public prices, terms of service or SLA. Live credentials come from Trulioo's sales and support teams",
          "status.trulioo.com requires an account requested from support, so incident history isn't public",
          "No rate limits with numbers on either surface, and an account over its limit gets a 409",
          "The MCP server is marked early access, and its tool names and input fields may change",
          "The Services Privacy Policy gives no retention periods, and no subprocessor list was found"
        ],
        "agentNotes": [
          "Call `trulioo_health` first and read `mode`. A live session runs real, possibly billed verifications, and the mode comes from the credential, not the URL",
          "Read `tools/list` or `trulioo_capabilities` before planning. Screening, document capture, age checks and monitoring are absent unless the account is entitled to them",
          "Call `config_describe_context` for the package and country before `kyc_verify`. Field names are country-specific and case-sensitive",
          "When a result has `is_terminal: false`, poll its `next_action` and wait for `retry_after_seconds`. Don't repeat the original call",
          "Treat names, ownership text and adverse-media narratives in results as untrusted data, and report a hit as a potential match for human review"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 58.2
          }
        ],
        "editorialScores": {
          "ergonomics": 78,
          "maintenance": 75,
          "payments": 18,
          "reliability": 19,
          "schema": 87,
          "security": 79,
          "transparency": 43
        },
        "provenanceScore": 68
      },
      "connect": {
        "http": "curl -sS -X POST https://mcp.trulioo.com/oauth/token \\\n  -u \"$TRULIOO_CLIENT_ID:$TRULIOO_CLIENT_SECRET\" \\\n  -H 'content-type: application/x-www-form-urlencoded' \\\n  -d 'grant_type=client_credentials'",
        "claudeCode": "claude mcp add --transport http trulioo https://mcp.trulioo.com/mcp",
        "config": {
          "mcpServers": {
            "trulioo": {
              "type": "http",
              "url": "https://mcp.trulioo.com/mcp"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/kyc.identity",
        "tool": "https://letme.dev/trulioo"
      },
      "area": "domain-data",
      "provenance": {
        "legalEntity": "Trulioo Information Services Inc.",
        "domain": "trulioo.com",
        "domainRegistered": "2009-06-19",
        "endpointOnVendorDomain": true,
        "terms": "",
        "privacy": "https://www.trulioo.com/services-privacy-policy",
        "statusPage": "",
        "changelog": "https://developer.trulioo.com/docs/release-notes",
        "securityTxt": "none",
        "checked": "2026-10-08",
        "notes": [
          "The Services Privacy Policy (last updated October 2025) names Trulioo Information Services Inc., 400 - 114 E 4th Ave, Vancouver, BC V5T 1G2, Canada, and Trulioo (Ireland) Limited in Dublin for Europe.",
          "No public terms of service or customer agreement was found. trulioo.com/terms, /terms-of-use and /terms-of-service return 404, and the docs refer to a Customer Agreement between Trulioo and each customer.",
          "status.trulioo.com exists but shows a sign-in form, with accounts requested from support@trulioo.com, so it isn't recorded as a public status page.",
          "The REST APIs answer at api.trulioo.com, auth-api.trulioo.com and verification.trulioo.com, and the MCP server at mcp.trulioo.com, all trulioo.com subdomains.",
          "/.well-known/security.txt returns 404 on www.trulioo.com, developer.trulioo.com, api.trulioo.com and mcp.trulioo.com. The MCP plugin's SECURITY.md sends reports to security@trulioo.com.",
          "RDAP for trulioo.com gives a registration date of 2009-06-19."
        ],
        "score": 68
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/trulioo.json",
      "live": {
        "slug": "trulioo",
        "probe": {
          "target": "https://api.trulioo.com",
          "method": "get",
          "lastAt": "2026-10-09T11:46:43.921638294Z",
          "lastOk": true,
          "lastStatus": 404,
          "lastMs": 70,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 66,
          "p95ms24h": 130,
          "samples24h": 218,
          "samples30d": 218,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 93,
              "ok": 93
            },
            {
              "date": "2026-10-09",
              "probes": 125,
              "ok": 125
            }
          ]
        },
        "versions": [
          {
            "registry": "npm",
            "name": "@trulioo/kyc-documents",
            "version": "4.0.0",
            "seenAt": "2026-10-08T16:32:45.799607536Z"
          },
          {
            "registry": "npm",
            "name": "@trulioo/trulioo",
            "version": "4.0.0",
            "seenAt": "2026-10-08T16:32:44.836212648Z"
          }
        ],
        "githubStars": 0,
        "npmWeekly": 131,
        "securityTxt": {
          "url": "https://trulioo.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:38:43.373342676Z"
        },
        "pages": [
          {
            "url": "https://developer.trulioo.com/docs/release-notes",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:17:19.796936768Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "f5d20f381d11"
          },
          {
            "url": "https://www.trulioo.com/services-privacy-policy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:31:03.190468429Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "266612be92b6"
          }
        ],
        "updatedAt": "2026-10-09T11:46:43.921638294Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "HTTP API",
        "name": "Kind"
      },
      {
        "a": "Socure Inc.",
        "b": "Trulioo Information Services Inc.",
        "name": "Vendor"
      },
      {
        "a": "https://mcp.riskos.socure.com/sandbox",
        "b": "https://api.trulioo.com",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP",
        "b": "HTTP, Streamable HTTP",
        "name": "Transports"
      },
      {
        "a": "API key",
        "b": "OAuth",
        "name": "Auth"
      },
      {
        "a": "Pay per use",
        "b": "Paid",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Proprietary service. No service agreement is published, and the OpenAPI file states its licence as Proprietary",
        "b": "Proprietary service under a customer agreement that isn't public. The MCP plugin and the C# and Java REST SDKs on GitHub are Apache-2.0, and the capture SDKs fall under the Trulioo SDK Licence",
        "name": "Licence"
      },
      {
        "a": "9",
        "b": "18",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "yes",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "2026-10-06",
        "b": "2026-10-07",
        "name": "Last release"
      },
      {
        "a": "no document linked",
        "b": "no document linked",
        "name": "Terms last updated"
      },
      {
        "a": "no date given",
        "b": "2025-10-01",
        "name": "Privacy policy last updated"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "Customer content may train models"
      },
      {
        "a": "",
        "b": "",
        "name": "Terms restrict automated access"
      },
      {
        "a": "",
        "b": "",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "",
        "b": "",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "",
        "b": "",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "35k npm/wk",
        "b": "0 stars, 131 npm/wk",
        "name": "Popularity"
      }
    ],
    "faq": [
      {
        "answer": "Socure RiskOS scores 63.5 (B) on agent readiness against Trulioo's 58.2 (C), and leads in 3 of 7 scored categories. Trulioo leads on agent ergonomics and security \u0026 auth.",
        "question": "Which is better for AI agents, Socure RiskOS or Trulioo?"
      },
      {
        "answer": "Socure RiskOS needs an API key. Trulioo uses an OAuth sign-in.",
        "question": "Do Socure RiskOS and Trulioo need an API key?"
      },
      {
        "answer": "Yes. Socure RiskOS has a hosted endpoint at https://mcp.riskos.socure.com/sandbox and Trulioo at https://api.trulioo.com.",
        "question": "Can an agent call Socure RiskOS and Trulioo without installing anything?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Reliability, 75 against 19",
          "Payments \u0026 pricing, 35 against 18",
          "Transparency \u0026 trust, 68 against 56"
        ],
        "also": null,
        "goodFor": "A company in the United States that wants one decision from combined KYC, document, fraud and watchlist checks through a single evaluation call.",
        "slug": "socure-riskos",
        "watchFor": "No service agreement or API terms are published. The only terms pages are website terms of use and end-user terms for document capture"
      },
      {
        "aheadOn": [
          "Agent ergonomics, 78 against 46",
          "Security \u0026 auth, 79 against 60"
        ],
        "also": null,
        "goodFor": "An agent doing business due diligence (search, verification, ownership, reports) or person checks across many countries for a company that already has a Trulioo contract, and for teams that want to test verification flows against synthetic data first.",
        "slug": "trulioo",
        "watchFor": "No public prices, terms of service or SLA. Live credentials come from Trulioo's sales and support teams"
      }
    ],
    "job": {
      "capability": "kyc.identity",
      "name": "Kyc identity"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/complycube-vs-socure-riskos.json",
        "title": "ComplyCube vs Socure RiskOS",
        "url": "https://www.anchorterminal.com/compare/complycube-vs-socure-riskos"
      },
      {
        "json": "https://www.anchorterminal.com/compare/complycube-vs-trulioo.json",
        "title": "ComplyCube vs Trulioo",
        "url": "https://www.anchorterminal.com/compare/complycube-vs-trulioo"
      },
      {
        "json": "https://www.anchorterminal.com/compare/didit-vs-socure-riskos.json",
        "title": "Didit vs Socure RiskOS",
        "url": "https://www.anchorterminal.com/compare/didit-vs-socure-riskos"
      },
      {
        "json": "https://www.anchorterminal.com/compare/didit-vs-trulioo.json",
        "title": "Didit vs Trulioo",
        "url": "https://www.anchorterminal.com/compare/didit-vs-trulioo"
      },
      {
        "json": "https://www.anchorterminal.com/compare/jumio-vs-socure-riskos.json",
        "title": "Jumio vs Socure RiskOS",
        "url": "https://www.anchorterminal.com/compare/jumio-vs-socure-riskos"
      },
      {
        "json": "https://www.anchorterminal.com/compare/jumio-vs-trulioo.json",
        "title": "Jumio vs Trulioo",
        "url": "https://www.anchorterminal.com/compare/jumio-vs-trulioo"
      },
      {
        "json": "https://www.anchorterminal.com/compare/persona-vs-socure-riskos.json",
        "title": "Persona vs Socure RiskOS",
        "url": "https://www.anchorterminal.com/compare/persona-vs-socure-riskos"
      },
      {
        "json": "https://www.anchorterminal.com/compare/persona-vs-trulioo.json",
        "title": "Persona vs Trulioo",
        "url": "https://www.anchorterminal.com/compare/persona-vs-trulioo"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shufti-vs-socure-riskos.json",
        "title": "Shufti vs Socure RiskOS",
        "url": "https://www.anchorterminal.com/compare/shufti-vs-socure-riskos"
      },
      {
        "json": "https://www.anchorterminal.com/compare/shufti-vs-trulioo.json",
        "title": "Shufti vs Trulioo",
        "url": "https://www.anchorterminal.com/compare/shufti-vs-trulioo"
      },
      {
        "json": "https://www.anchorterminal.com/compare/socure-riskos-vs-sumsub.json",
        "title": "Socure RiskOS vs Sumsub",
        "url": "https://www.anchorterminal.com/compare/socure-riskos-vs-sumsub"
      },
      {
        "json": "https://www.anchorterminal.com/compare/socure-riskos-vs-veriff.json",
        "title": "Socure RiskOS vs Veriff",
        "url": "https://www.anchorterminal.com/compare/socure-riskos-vs-veriff"
      },
      {
        "json": "https://www.anchorterminal.com/compare/sumsub-vs-trulioo.json",
        "title": "Sumsub vs Trulioo",
        "url": "https://www.anchorterminal.com/compare/sumsub-vs-trulioo"
      },
      {
        "json": "https://www.anchorterminal.com/compare/trulioo-vs-veriff.json",
        "title": "Trulioo vs Veriff",
        "url": "https://www.anchorterminal.com/compare/trulioo-vs-veriff"
      },
      {
        "json": "https://www.anchorterminal.com/compare/complyadvantage-vs-socure-riskos.json",
        "title": "ComplyAdvantage vs Socure RiskOS",
        "url": "https://www.anchorterminal.com/compare/complyadvantage-vs-socure-riskos"
      },
      {
        "json": "https://www.anchorterminal.com/compare/complyadvantage-vs-trulioo.json",
        "title": "ComplyAdvantage vs Trulioo",
        "url": "https://www.anchorterminal.com/compare/complyadvantage-vs-trulioo"
      },
      {
        "json": "https://www.anchorterminal.com/compare/middesk-vs-socure-riskos.json",
        "title": "Middesk vs Socure RiskOS",
        "url": "https://www.anchorterminal.com/compare/middesk-vs-socure-riskos"
      },
      {
        "json": "https://www.anchorterminal.com/compare/middesk-vs-trulioo.json",
        "title": "Middesk vs Trulioo",
        "url": "https://www.anchorterminal.com/compare/middesk-vs-trulioo"
      }
    ],
    "scores": [
      {
        "by": 56,
        "edge": "socure-riskos",
        "key": "reliability",
        "name": "Reliability",
        "socure-riskos": 75,
        "trulioo": 19,
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 3,
        "edge": "trulioo",
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "socure-riskos": 84,
        "trulioo": 87,
        "weight": 13
      },
      {
        "by": 32,
        "edge": "trulioo",
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "socure-riskos": 46,
        "trulioo": 78,
        "weight": 13
      },
      {
        "by": 19,
        "edge": "trulioo",
        "key": "security",
        "name": "Security \u0026 auth",
        "socure-riskos": 60,
        "trulioo": 79,
        "weight": 14
      },
      {
        "by": 17,
        "edge": "socure-riskos",
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "socure-riskos": 35,
        "trulioo": 18,
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 0,
        "edge": "",
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "socure-riskos": 75,
        "trulioo": 75,
        "weight": 7
      },
      {
        "by": 12,
        "edge": "socure-riskos",
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "socure-riskos": 68,
        "trulioo": 56,
        "weight": 7
      }
    ],
    "summary": "Socure RiskOS scores 63.5 (B) on agent readiness against Trulioo's 58.2 (C), and leads in 3 of 7 scored categories. Trulioo leads on agent ergonomics and security \u0026 auth. Both do kyc identity.",
    "verdicts": {
      "socure-riskos": "A public OpenAPI file, llms.txt, 15 documented error codes and dated release notes cover a ten-operation REST API, and Socure Launch publishes prices from $0.80 an evaluation with a free sandbox. API keys carry no scopes, no idempotency header is defined, no service terms are published, and production stays at zero requests until Socure activates it.",
      "trulioo": "The hosted MCP server has OAuth 2.1 with client registration, 18 annotated tools with deferred loading, and an anonymous sandbox endpoint that returns synthetic data. Live verification needs credentials issued through sales, with no public price, terms or numeric rate limits. The MCP server is in early access and the status page requires a login."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/socure-riskos-vs-trulioo",
    "json": "https://www.anchorterminal.com/compare/socure-riskos-vs-trulioo.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/socure-riskos-vs-trulioo.md",
    "slim": "https://www.anchorterminal.com/compare/socure-riskos-vs-trulioo.min.md"
  },
  "markdown": "Socure RiskOS scores 63.5 (B) on agent readiness against Trulioo's 58.2 (C), and leads in 3 of 7 scored categories. Trulioo leads on agent ergonomics and security \u0026 auth. Both do kyc identity.\n\n- Socure RiskOS: grade B, 63.5/100, rank #357 of 842. Markdown https://www.anchorterminal.com/tools/socure-riskos.md · JSON https://www.anchorterminal.com/api/v1/tools/socure-riskos.json\n- Trulioo: grade C, 58.2/100, rank #530 of 842. Markdown https://www.anchorterminal.com/tools/trulioo.md · JSON https://www.anchorterminal.com/api/v1/tools/trulioo.json\n\n## Which one, for what\n\n### Socure RiskOS (B)\n\nGood for: A company in the United States that wants one decision from combined KYC, document, fraud and watchlist checks through a single evaluation call.\n\nAhead on:\n- Reliability, 75 against 19\n- Payments \u0026 pricing, 35 against 18\n- Transparency \u0026 trust, 68 against 56\n\nWatch for: No service agreement or API terms are published. The only terms pages are website terms of use and end-user terms for document capture\n\n### Trulioo (C)\n\nGood for: An agent doing business due diligence (search, verification, ownership, reports) or person checks across many countries for a company that already has a Trulioo contract, and for teams that want to test verification flows against synthetic data first.\n\nAhead on:\n- Agent ergonomics, 78 against 46\n- Security \u0026 auth, 79 against 60\n\nWatch for: No public prices, terms of service or SLA. Live credentials come from Trulioo's sales and support teams\n\n\n## Score by category\n\n| Category | Weight | Socure RiskOS | Trulioo | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 75 | 19 | Socure RiskOS +56 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 84 | 87 | Trulioo +3 |\n| Agent ergonomics | 13% (16.2 this run) | 46 | 78 | Trulioo +32 |\n| Security \u0026 auth | 14% (17.5 this run) | 60 | 79 | Trulioo +19 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 35 | 18 | Socure RiskOS +17 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 75 | 75 | even |\n| Transparency \u0026 trust | 7% (8.8 this run) | 68 | 56 | Socure RiskOS +12 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **63.5 · B** | **58.2 · C** | |\n\n## Facts side by side\n\n| Fact | Socure RiskOS | Trulioo |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Socure Inc. | Trulioo Information Services Inc. |\n| Hosted endpoint | `https://mcp.riskos.socure.com/sandbox` | `https://api.trulioo.com` |\n| Transports | HTTP | HTTP, Streamable HTTP |\n| Auth | API key | OAuth |\n| Pricing | Pay per use | Paid |\n| x402 | no | no |\n| Licence | Proprietary service. No service agreement is published, and the OpenAPI file states its licence as Proprietary | Proprietary service under a customer agreement that isn't public. The MCP plugin and the C# and Java REST SDKs on GitHub are Apache-2.0, and the capture SDKs fall under the Trulioo SDK Licence |\n| Tools exposed | 9 | 18 |\n| Read-only variant documented | no | yes |\n| llms.txt | yes | yes |\n| Last release | 2026-10-06 | 2026-10-07 |\n| Terms last updated | no document linked | no document linked |\n| Privacy policy last updated | no date given | 2025-10-01 |\n| Customer content may train models | yes | yes |\n| Terms restrict automated access |  |  |\n| Terms restrict benchmarking |  |  |\n| Terms or service can change without notice |  |  |\n| Arbitration or class-action waiver |  |  |\n| Popularity | 35k npm/wk | 0 stars, 131 npm/wk |\n\n## Verdicts\n\n**Socure RiskOS.** A public OpenAPI file, llms.txt, 15 documented error codes and dated release notes cover a ten-operation REST API, and Socure Launch publishes prices from $0.80 an evaluation with a free sandbox. API keys carry no scopes, no idempotency header is defined, no service terms are published, and production stays at zero requests until Socure activates it.\n\n**Trulioo.** The hosted MCP server has OAuth 2.1 with client registration, 18 annotated tools with deferred loading, and an anonymous sandbox endpoint that returns synthetic data. Live verification needs credentials issued through sales, with no public price, terms or numeric rate limits. The MCP server is in early access and the status page requires a login.\n\n## Before you call either\n\n### Socure RiskOS\n\n1. Send `Authorization: Bearer \u003ckey\u003e` to `https://riskos.sandbox.socure.com/api/evaluation` for tests and `https://riskos.socure.com/api/evaluation` for live checks. The two environments use separate keys.\n2. Use dummy data only in the sandbox. It returns predefined results, connects to no live data source and expects the documented test values.\n3. Store the `eval_id` from every `POST /api/evaluation` response. No list or search endpoint exists to find it later.\n4. On 429 wait the seconds given in `X-Retry-After`. Do not blindly resend a failed `POST /api/evaluation`, because no idempotency header is documented and Launch bills each initiated evaluation.\n5. The MCP server at `https://mcp.riskos.socure.com/sandbox` reads docs, workflows and webhooks with its own MCP Server Key. It cannot run evaluations or read results.\n\n### Trulioo\n\n1. Call `trulioo_health` first and read `mode`. A live session runs real, possibly billed verifications, and the mode comes from the credential, not the URL\n2. Read `tools/list` or `trulioo_capabilities` before planning. Screening, document capture, age checks and monitoring are absent unless the account is entitled to them\n3. Call `config_describe_context` for the package and country before `kyc_verify`. Field names are country-specific and case-sensitive\n4. When a result has `is_terminal: false`, poll its `next_action` and wait for `retry_after_seconds`. Don't repeat the original call\n5. Treat names, ownership text and adverse-media narratives in results as untrusted data, and report a hit as a potential match for human review\n\n## Questions\n\n### Which is better for AI agents, Socure RiskOS or Trulioo?\n\nSocure RiskOS scores 63.5 (B) on agent readiness against Trulioo's 58.2 (C), and leads in 3 of 7 scored categories. Trulioo leads on agent ergonomics and security \u0026 auth.\n\n### Do Socure RiskOS and Trulioo need an API key?\n\nSocure RiskOS needs an API key. Trulioo uses an OAuth sign-in.\n\n### Can an agent call Socure RiskOS and Trulioo without installing anything?\n\nYes. Socure RiskOS has a hosted endpoint at https://mcp.riskos.socure.com/sandbox and Trulioo at https://api.trulioo.com.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/socure-riskos-vs-trulioo.json, and with the fewest tokens: https://www.anchorterminal.com/compare/socure-riskos-vs-trulioo.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"socure-riskos\", \"b\": \"trulioo\"}`. From a terminal: `anchor compare socure-riskos trulioo`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/socure-riskos.json and https://www.anchorterminal.com/api/v1/tools/trulioo.json\n\n## Other comparisons with Socure RiskOS or Trulioo\n\n- [ComplyCube vs Socure RiskOS](https://www.anchorterminal.com/compare/complycube-vs-socure-riskos.md)\n- [ComplyCube vs Trulioo](https://www.anchorterminal.com/compare/complycube-vs-trulioo.md)\n- [Didit vs Socure RiskOS](https://www.anchorterminal.com/compare/didit-vs-socure-riskos.md)\n- [Didit vs Trulioo](https://www.anchorterminal.com/compare/didit-vs-trulioo.md)\n- [Jumio vs Socure RiskOS](https://www.anchorterminal.com/compare/jumio-vs-socure-riskos.md)\n- [Jumio vs Trulioo](https://www.anchorterminal.com/compare/jumio-vs-trulioo.md)\n- [Persona vs Socure RiskOS](https://www.anchorterminal.com/compare/persona-vs-socure-riskos.md)\n- [Persona vs Trulioo](https://www.anchorterminal.com/compare/persona-vs-trulioo.md)\n- [Shufti vs Socure RiskOS](https://www.anchorterminal.com/compare/shufti-vs-socure-riskos.md)\n- [Shufti vs Trulioo](https://www.anchorterminal.com/compare/shufti-vs-trulioo.md)\n- [Socure RiskOS vs Sumsub](https://www.anchorterminal.com/compare/socure-riskos-vs-sumsub.md)\n- [Socure RiskOS vs Veriff](https://www.anchorterminal.com/compare/socure-riskos-vs-veriff.md)\n- [Sumsub vs Trulioo](https://www.anchorterminal.com/compare/sumsub-vs-trulioo.md)\n- [Trulioo vs Veriff](https://www.anchorterminal.com/compare/trulioo-vs-veriff.md)\n- [ComplyAdvantage vs Socure RiskOS](https://www.anchorterminal.com/compare/complyadvantage-vs-socure-riskos.md)\n- [ComplyAdvantage vs Trulioo](https://www.anchorterminal.com/compare/complyadvantage-vs-trulioo.md)\n- [Middesk vs Socure RiskOS](https://www.anchorterminal.com/compare/middesk-vs-socure-riskos.md)\n- [Middesk vs Trulioo](https://www.anchorterminal.com/compare/middesk-vs-trulioo.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-09",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Socure RiskOS vs Trulioo",
        "url": ""
      }
    ],
    "description": "Socure RiskOS scores 63.5 (B) on agent readiness against Trulioo's 58.2 (C), and leads in 3 of 7 scored categories. Trulioo leads on agent ergonomics and security \u0026 auth. Both do kyc identity. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Socure RiskOS B 63.5",
      "Trulioo C 58.2",
      "scores"
    ],
    "h1": "Socure RiskOS vs Trulioo",
    "image": "https://www.anchorterminal.com/assets/og/compare-socure-riskos-vs-trulioo.png",
    "path": "/compare/socure-riskos-vs-trulioo",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Socure RiskOS vs Trulioo for AI agents, B 63.5 vs C 58.2",
    "toc": null,
    "updated": "2026-10-09",
    "url": "https://www.anchorterminal.com/compare/socure-riskos-vs-trulioo"
  },
  "tokens": {
    "markdown": 2350,
    "slim": 680
  },
  "version": 1
}
