Skip to content

Identity verification

Audience: domain, product
Status: specced
Owns: product + backend
Depends on: Domain entities, Policies

  • Candidates must verify identity (initially via NIN) before submitting an application.
  • After verification, identity-linked personal details become immutable for that application path.
  • Module should stay provider-agnostic so NIN is not hard-wired forever.
  • Provider/API choice is open — see Policies POL-04.

Identity records belong on the User, with support for multiple identification methods over time (POL-08).