Patent Pending · Provisional Filed 2026

Stop Fraud at the Moment of Transaction

SafeAuth binds a biometric liveness token to every high-value payment — making SIM swap, deepfake, and social-engineering attacks cryptographically impossible to succeed.

View Live Demo How It Works
9
Security checks per transaction
5
Patent provisionals filed
11+
Fraud scenarios covered
<800ms
End-to-end verification
The Problem
Authentication is broken for high-value transactions
OTP, passwords, and even legacy biometrics fail against modern fraud — because they authenticate the device or session, not the transaction itself.
📱

SIM Swap Fraud

Attackers port your phone number in minutes, intercept OTPs, and drain accounts before banks detect anything.

🎭

Deepfake Identity

AI-generated video and voice bypass passive liveness checks that rely on motion or photo detection.

📞

Social Engineering

Victims are manipulated into authorizing transfers themselves — making traditional fraud detection blind.

🌐

Cross-Channel Gaps

Attackers pivot from mobile to web to branch — exploiting the gap between siloed authentication systems.

The Platform
Four interlocking layers of protection
Each product is independently deployable and patent-protected. Together they form a complete fraud prevention stack.
Core

SafeAuth Core

ECDSA-P256 liveness token bound to a 23-field canonical transaction digest. Nine cryptographic checks run before any payment is released.

Liveness Token ECDSA-P256 9-Check Gate
Carrier

CarrierGuard

Pre-transaction SIM swap check via live carrier API (Vonage / GSMA CAMARA). Flags compromised SIMs before the payment even reaches authorization.

Vonage API GSMA CAMARA US + EU Live
Branch

BranchGuard

AI-powered dual-gate for in-branch transactions. BARS risk scoring detects insider collusion and forged-document fraud at the teller level.

AI Risk Score Dual-Gate Insider Detection
Web

SA-Web

Cross-channel SafeHold extends transaction authorization to web and browser sessions — closing the pivot gap attackers exploit after a SIM swap.

Cross-Channel SafeHold Web Recovery
A transaction is authorized in four steps
01

Carrier Check

CarrierGuard queries the carrier API in real time. If the SIM was swapped in the last 4 hours, the transaction is held before biometrics are even requested.

02

Liveness Capture

The user completes an active liveness challenge on their enrolled device. Challenge parameters are ephemeral and transaction-bound — not replayable.

03

Token Signing

The device signs a canonical digest of 23 transaction fields with the user's private key. The token is cryptographically bound to amount, recipient, and timestamp.

04

9-Check Gate

The server runs nine sequential checks — signature, liveness, carrier, time-skew, replay, amount, device binding, cross-channel hold, and policy — before releasing funds.

Intellectual Property
Five provisional patents filed in 2026
All provisionals filed with the USPTO. Non-provisional filing roadmap in progress with patent counsel.

SafeAuth Core

Biometric liveness token · 23-field digest · 9-check framework

App# 64/094,306

BranchGuard vNext + BARS

AI dual-gate · behavioral risk scoring · insider collusion detection

Filed Jul 11, 2026

CarrierGuard

Pre-transaction SIM attestation · carrier release gate · eSIM detection

Filed Jul 2026

SA-Web · Cross-Channel

Cross-channel SafeHold · web enrollment · closed-loop recovery

App# 64/104,873

SA-AI / SAARS

AI-assisted authorization · adaptive risk scoring · temporal weighting

Filed Jul 2026

Let's talk

We're in early discussions with banks and fintech partners in Southeast Asia and the US. Reach out for a demo or partnership inquiry.

✉ support@saonlinedemo.com
Live prototype available at demo.saonlinedemo.com/app