About ZOLOZ
ZOLOZ is an identity verification supplier built around artificial intelligence. It offers electronic KYC checks, biometric authentication and fraud prevention tools. Clients span financial services firms, digital wallets and other regulated online platforms.
The company began life as EyeVerify, a biometrics start-up based in Kansas City. Ant Financial bought the business in 2016. It was rebranded under the ZOLOZ name not long after.
ZOLOZ now operates within Ant Group’s wider technology arm. Its verification system combines document checks, facial matching and liveness detection. Anti-spoofing checks feed into automated onboarding and risk decisions, cutting the need for manual KYC and AML review.
Adoption has been strongest across Southeast and South Asia. E-wallet operators and banks rely on ZOLOZ for electronic identity checks. Clients include GCash in the Philippines, Touch n Go Digital in Malaysia and Bank Mandiri in Indonesia.
In 2024 the company launched ZOLOZ Deeper. This product targets the growing risk of AI-generated face swaps in facial recognition checks. It reflects a broader shift toward detecting synthetic media rather than just verifying genuine documents.
| Founded | 2012 (as EyeVerify; rebranded ZOLOZ in 2016) |
|---|---|
| Headquarters | Hong Kong (international HQ, established April 2025) |
| Parent Company | Ant Digital Technologies (Ant Group) |
| Core Service | Identity verification (eKYC), biometric authentication and fraud prevention |
| Verification Methods | Document recognition, facial recognition, liveness detection, anti-spoofing |
| Industries Served | Financial services, digital wallets, fintech and other regulated digital platforms |
| iGaming Focus | General provider; relevant to onboarding, age and identity checks |
Integration & Operator Fit
ZOLOZ says it complies with PCI-DSS, ISO 27001 and ISO 27701. According to the company, it completed a SOC 2 Type II audit in 2022. A linked facility called Ant Phecda Lab runs biometric security testing. This includes checks for presentation attacks used in mobile device authentication.
Deployment so far has centred on banks and e-wallet operators. Licensed gambling brands are not a prominent part of its published client list. That matters for procurement teams weighing it against suppliers built specifically for the sector.
For iGaming compliance teams, integration depth matters more than sheer coverage. The system relies on API and SDK based workflows. This suits operators with technical teams able to build biometric checks into registration and withdrawal flows. Operators should weigh the deepfake detection capability against the absence of a public iGaming track record. Given the supplier’s links to a Chinese parent group, procurement teams may also want to confirm jurisdiction specific data handling terms before integration.