Velaxe
AccessGuard — IAM with JWT, MFA, RBAC & SSO (SAML/OIDC) | Velaxe

AccessGuard

Collect KYC documents & review risk flags

Enable KYC on profiles, accept uploads, and track verification outcomes.

24 min Intermediate Risk Ops, Compliance Updated Sep 19, 2025
KYC queue
Verification queue

Overview

Enable KYC on profiles, accept uploads, and track verification outcomes.

Prerequisites

None.

Permissions required

profiles:write profiles:review

Steps (4)

Estimated: 24 min
  1. 1

    Enable KYC section

    Compliance 5 min Back to top

    Settings → Profiles → Enable KYC. Choose required document types.

    Tips

    Validation

    Success criteria

  2. 2

    Collect documents

    End User 7 min Back to top

    Users upload images/PDFs from Profile → Verification. PII is encrypted at rest.

    Tips

    Validation

    Success criteria

  3. 3

    Review & decide

    Risk Ops 8 min Back to top

    Open Verification Queue. Approve/Reject and add notes; apply risk flags if needed.

    Tips

    Validation

    Success criteria

    • Status updated and audit trail recorded for each case.
  4. 4

    Retention & purge

    Compliance 4 min Back to top

    Configure retention windows; schedule automatic purge for expired artifacts.

    Tips

    Validation

    Success criteria

About this guide

AccessGuard secures apps and external sites with hosted authentication and short-lived JWTs. Enable MFA, define RBAC permissions, and connect enterprise identity via SAML or OIDC. A lightweight HMAC bridge lets you embed login, registration, and token refresh flows on any domain without CORS pain.

Admins manage users, sessions, connections, and policies from one console. Profiles consolidate verified emails/phones, consents, KYC docs, and risk flags. Events and metrics provide visibility for security and ops.

Designed for velocity and safety: opinionated defaults, least-privilege keys, Prometheus counters, and exportable audit logs.