Security Assurance · Independent Verification · Open Source

Audits, Open Source &
Assurance Framework

Full audit reports, open-source dependency licenses, patent filings, and the complete MYIDverified security assurance framework. Nothing hidden.

Security Audits

Last updated: March 2026 · All audits conducted by independent third parties

🔐 MYIDverified has maintained a zero-breach, zero-hack record across all environments since 2017. Every proprietary component is audited before deployment.

0
Security breaches ever
2017
Established & operating
100%
Uptime record
2
USPTO patents filed

Independent Third-Party Audits

✓ Verified
Verichains Security Audit

Independent third-party security audit of the MYIDverified protocol, smart contracts, and Security & Recovery Layer infrastructure by Verichains — a leading blockchain security firm specialising in Substrate-based chains.

Scope: Smart contract logic, key management, RPC layer, wallet integration middleware, and recovery protocol enforcement.

✓ Open Source
SubWallet Framework Audit

The SubWallet open-source framework — which forms the foundation of MYIDverified — has undergone independent third-party security auditing and is publicly available under permissive open-source licenses.

Scope: Browser extension security, private key handling, transaction signing, and phishing protection.

Audit Methodology

All security audits of MYIDverified components follow a structured methodology encompassing:

Continuous Security Practices

Between formal audits, MYIDverified maintains continuous security through:

Patents & IP Filings

Filed with the United States Patent and Trademark Office (USPTO)

📜 MYIDverified's core recovery and identity technologies are protected by two active USPTO patent filings covering novel innovations in blockchain-based identity recovery and stolen asset restitution.

USPTO Filed
US Patent Application 63/801,629

Judicial Recovery Protocol — the proprietary technology enabling real-time stolen asset tracing, freezing, and recovery on-chain. This patent covers the mechanism by which verified identity is used to authorise asset recovery across decentralised networks without requiring seed phrase access.

Filed: 2024 · Status: Active provisional filing · Jurisdiction: USA

USPTO Filed
US Patent Application 63/911,258

Identity-Based Account Recovery & Permanent Address Architecture — additional proprietary innovations covering the permanent wallet address system, biometric-linked account access, and the non-custodial identity verification layer that eliminates seed phrase dependency.

Filed: 2024 · Status: Active provisional filing · Jurisdiction: USA

Intellectual Property Notice

All proprietary technology, protocols, and innovations described in these patent filings are the exclusive intellectual property of ZeroBorder LLC. Unauthorised reproduction, implementation, or commercialisation of these technologies is prohibited.

For licensing enquiries, contact: legal@zbselfbanking.com

Open Source Dependencies

All open-source components used in MYIDverified — with their licenses and audit status

🔓 MYIDverified is built on widely deployed, community-reviewed open-source foundations. Every dependency is tracked, audited, and kept current. Full attribution is provided below.

⛓️
Polkadot.js API & Extension

Provides transaction encoding, RPC calls, and signing functions for Substrate-based chains. Maintained by Parity Technologies with continuous peer review by the global Polkadot community. Used for all on-chain interactions within the MYIDverified protocol.

Apache-2.0 / MIT
🔓
SubWallet Open Source Framework

Publicly available under permissive licenses, providing a transparent community-reviewed foundation that has undergone independent third-party security auditing. Forms the wallet interface layer of MYIDverified.

Open Source (Apache-2.0)
🔌
SubConnect — Wallet Connection Middleware

Open-source MIT library enabling multi-wallet connectivity across browser extensions, hardware devices, and mobile wallets. Hardened for Substrate environments. Enables MYIDverified to work alongside MetaMask, Coinbase Wallet, Trust Wallet, and others.

MIT
🔑
Hardware Wallet SDKs — Ledger & Keystone

Secure SDKs under MIT/Apache licenses, ensuring that private keys never leave secure hardware environments. Industry standard for hardware wallet integration. Used to support hardware wallet users within the MYIDverified security layer.

MIT / Apache-2.0
🛡️
Phishing Protection Lists — ChainPatrol & Polkadot.js

Continuously updated blocklists curated by ecosystem maintainers including ChainPatrol and Polkadot.js — protecting users from known phishing domains in real time. Updated automatically with every release.

Community Maintained
SumSub — KYC/AML Verification

All user identity verification is handled by SumSub, a globally recognised KYC/AML compliance platform trusted by leading financial institutions and crypto exchanges worldwide. SumSub is SOC 2 Type II certified and GDPR compliant.

Commercial (Compliant)

Vulnerability Disclosure

If you discover a vulnerability in any MYIDverified component — proprietary or open-source — please report it responsibly to security@zbselfbanking.com. We respond to all reports within 48 hours.

Security Assurance Framework

The MYIDverified multi-layer security model — how we protect your assets at every level

🏛️ MYIDverified's security model is inspired by constitutional separation of powers — mathematically enforced, architecturally sound, and immune to single points of failure.

Layer 1 — Identity-Based Access Control

Unlike traditional crypto wallets that rely on seed phrases, MYIDverified ties account access to verified government identity via SumSub KYC. This eliminates the single greatest vulnerability in crypto: the loss or theft of a seed phrase.

Layer 2 — Non-Custodial Architecture

MYIDverified is fully non-custodial. ZeroBorder never holds, controls, or has access to user funds. All assets remain under user control at all times, with the MYIDverified layer providing security and recovery capabilities without custody.

Layer 3 — Tripartite Governance

The MYIDverified Protocol operates under a constitutionally inspired, mathematically enforced governance regime modelled on the separation of Executive, Judicial, and Legislative powers.

Layer 4 — Judicial Recovery Protocol

The world's only blockchain-level stolen asset recovery system. When assets are stolen or lost through scams, the Judicial Recovery Protocol enables:

Layer 5 — Cryptographic Enforcement

All protocol rules are enforced cryptographically — not by policy or trust. Unauthorised access is computationally and procedurally infeasible. No single actor or branch can obtain unilateral control.

Compliance & Registrations

ZeroBorder LLC — regulatory registrations and compliance status

🌍 ZeroBorder voluntarily maintains registrations across multiple jurisdictions to provide administrative transparency and a legal interface with regulators and partners worldwide.

✓ Registered
United States — ZeroBorder LLC

Registered in the State of Wyoming, USA. Registration number: 2025-001674991. Wyoming provides a clear legal framework for blockchain and digital asset companies.

Address: Sheridan, WY 82801, USA

✓ Registered
Singapore

Registered in Singapore for Asia-Pacific operations and compliance. Singapore's Monetary Authority (MAS) framework provides a clear regulatory environment for digital payment token services.

✓ Registered
El Salvador

Registered in El Salvador, which has established a comprehensive legal framework for digital assets under the Bitcoin Law and the Digital Assets Issuance Law (CNAD).

✓ Compliant
KYC / AML — SumSub

All user identity verification is handled by SumSub, a globally recognised KYC/AML compliance platform. SumSub is certified to SOC 2 Type II, ISO 27001, and is GDPR compliant. All MYIDverified accounts require verified identity before activation.

Data Protection

MYIDverified handles personal data in accordance with applicable data protection laws including GDPR (EU), PDPA (Singapore), and applicable US state privacy laws. Key principles:

For data protection enquiries: privacy@zbselfbanking.com

Contact for Regulatory Enquiries

Regulators, law enforcement agencies, and compliance officers may contact ZeroBorder directly at legal@zbselfbanking.com. We cooperate fully with lawful requests and maintain records as required by applicable law.