# Unico

**Canonical:** https://apis.io/providers/unico/  
**Website:** https://www.unico.io  
**APIs profiled:** 3

Unico (unico IDtech) is a Brazilian identity-technology company whose IDCloud platform performs facial-biometric identity verification, liveness detection, document capture and OCR, and fraud-risk decisioning for customer onboarding, step-up authentication and card-not-present payment verification. Founded out of Acesso Digital and headquartered in Sao Paulo with offices in Mexico City, Londrina and Menlo Park, it has raised roughly $338M across four rounds and states it processes 150M+ transactions per month on Google Cloud. Its public developer surface is two REST contracts — an API contract where the integrator owns the camera and sends the selfie in the request, and a Web & SDK contract where Unico hosts the whole verification journey — plus an outbound webhook, four native capture SDKs, and three published Postman collections. It publishes no OpenAPI: the developer portal's own OpenAPI page reads "Placeholder OpenAPI specification."

## Kin Score — 55.2 / 100 (strong)

Scored 2026-09-02 under rubric 0.18.0.

| Facet | Score |
|---|---|
| Discoverability | 74.1 |
| Contract Quality | 41.6 |
| Governance | 18.2 |
| Contract Governance | 18.2 |
| Operational Transparency | 76.3 |
| Developer Ergonomics | 76.2 |
| Commercial Clarity | 50.0 |
| Access Clarity | 50.0 |

## Agent readiness — 34.3 (agent-ready)

| Dimension | Value |
|---|---|
| Spec Presence | yes |
| Agentic Access | no |
| Reversibility Documented | no |
| MCP Server | documented |
| Auth Clarity | served |
| Idempotency | no |
| Error Semantics | documented |
| OpenAPI Examples | no |
| Rate Limit Signal | documented |
| Event Surface Described | yes |
| Agent Skills | no |
| Well Known Catalog | no |
| Consent Identity | no |
| Agent Card | no |
| Dry Run Mode | no |
| Delegated Identity | served |
| Protected Resource Metadata | no |
| Dynamic Client Registration | no |
| Agentic Commerce | no |

## APIs (3)

- **Unico IDCloud API** — The API contract (internally TCA / Check.Integration) — used when the integrator's own application owns the biometric capture and sends the image directly in the request. The ve...
- **Unico IDCloud Web & SDK API** — The Web & SDK contract — used when Unico hosts the verification journey. The process is created before capture; the response carries a userRedirectUrl the end user is sent to by...
- **Unico Identity OAuth2** — The OAuth2 token service every IDCloud contract authenticates against. Implements the RFC 7523 JWT-bearer grant with an RS256-signed assertion exchanged for a one-hour access to...

## MCP servers (1)

- **Unico MCP Server**

## Security (4)

- **Unico Authentication** — 0 schemes
- **Unico Domain Security** — TLSv1.3 · HSTS · DMARC
- **Unico Vulnerability Disclosure** — Hackerone · contact published
- **Unico Trust Center** — SOC 2 Type 2, GDPR, ISO/IEC 42001, iBeta Level 1 (Presentation Attack Detection), iBeta Level 2 (Presentation Attack Detection), BixeLab Level 1 (Presentation Attack Detection),...

## Plans (1)

- **Unico Plans Pricing**

## Tags

Identity Verification, Biometrics, Facial Recognition, Liveness Detection, KYC, Fraud Prevention, Onboarding, Authentication, AML, Age Verification, Document Verification, Identity, Brazil, Latin America

---

Profiled by [API Evangelist](https://apievangelist.com) and published on [APIs.io](https://apis.io/providers/unico/). Scores are computed from the provider's own public artifacts under a published rubric.
