Skip to content

iGaming Platform KYC, AML & Fraud Controls

Identity checks, transaction monitoring and player-fraud controls can sit in the platform, an integrated service or the operator's own stack. This comparison keeps that delivery boundary visible and separates detection from the casework and audit controls needed to operate it.

Last updated August 20, 2026

Availability is not ownership or quality

A single KYC label can conceal several systems: registration rules, document and biometric checks, sanctions screening, transaction monitoring, device intelligence, risk decisions and manual review. Named modules appear only where their mapped product scope includes these controls. An integrated capability is not relabelled as native, and an AI label is not treated as measured performance.

12/18

named control surfaces

8/18

specific underlying KYC supplier named

17/18

KYC and fraud casework established or partial

17/18

audit-log capability established

Counts describe the current structured conclusions; they are not a feature score. Provider order follows the same holistic editorial score used across the site.

Provider control matrix

Each value retains its field-level boundary. Unresolved stays unresolved rather than becoming No. Product names identify the closest mapped surface, not an assertion that every listed control belongs to that module or ships in every deployment.

Named product / module

  • Bonus Guardian
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC partners

EveryMatrix Identity Verification suite plus integrated third-party partners

The stack covers facial and document verification, 1,000+ sanctions lists and 3,000+ risk databases; the complete underlying vendor set remains unresolved.

Transaction monitoring

Yes

Age verification

Yes

Device fingerprinting

Yes

Bonus Guardian cross-references device data and fingerprints, IP patterns, registration velocity, and behavioral signals to detect multi-accounting and coordinated abuse.

AI-labelled fraud

Yes

Bonus Guardian is the clearest shipped AI fraud capability; payment risk also includes rules-based monitoring.

Bonus abuse

Yes

Multi-account detection

Yes

KYC casework

Yes

Fraud casework

Yes

Rules, alerts, role-based actions, manual review, and Bonus Guardian restrictions are supported.

Audit logs

Yes

Named product / module

  • PAM+ SaaS Ecosystem
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

Delivered through integrated partners rather than a Playtech-built engine.

KYC partners

LexisNexis, RiskNarrative, Jumio, GBG, SEON, Acuris Risk Intelligence, Checkin.com, TrueLayer

Integrations available through Playtech Open Platform, not all live for every operator.

Transaction monitoring

Yes

Age verification

Yes

Device fingerprinting

Yes

AI-labelled fraud

Yes

Bonus abuse

Yes

Multi-account detection

Yes

KYC casework

Yes

Fraud casework

Yes

Real-time fraud detection runs through the Featurespace ARIC engine built into IMS, which flags deposits, withdrawals and account changes for review.

Audit logs

Yes

Named product / module

  • Managed Services
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC partners

Configurable integrations

KYC runs through configurable third-party integrations rather than one bundled vendor; no default provider is established.

Transaction monitoring

Yes

Covers AML and payment-system abuse through platform triggers and the anti-fraud team. Payment abuse and money laundering each made up roughly 10 percent of fraud the team stopped.

Age verification

Yes

Device fingerprinting

No

AI-labelled fraud

Yes

Machine learning flags suspicious cases in near real time and sends them to the anti-fraud team, which makes the final call. Not a fully automated decision engine.

Bonus abuse

Yes

Bonus abuse is the biggest category the anti-fraud team handles, around 70 percent of fraud it stops.

Multi-account detection

Yes

Covers duplicate-account blocking and collusion investigation.

KYC casework

Yes

Fraud casework

Yes

Integrated anti-fraud system with automated triggers. Deeper case investigation is largely handled through the optional Managed Services anti-fraud team.

Audit logs

Yes

Named product / module

  • Regulation & Compliance
Delivery boundary

Mixed platform and integrated controls

A platform workflow is established alongside external identity or risk services; ownership is resolved field by field.

KYC / AML

Yes

Platform has a built-in KYC, AML and fraud control module. Rule-based KYC, device fingerprinting, and AML workflows aligned to EU 5AMLD and Brazil's 2025 decree, plus integrations with third-party ID verification providers.

KYC partners

Signicat; ComplyAdvantage; GBG; IDnow; HooYu; iDenfy; other integrated providers

Transaction monitoring

Yes

AML transaction monitoring aligned to EU 5AMLD and Brazil's 2025 decree.

Age verification

Yes

Required regulated flows can use external identity providers; exact native workflow depth remains unresolved.

Device fingerprinting

Yes

Available through selected external fraud and identity integrations; universal native coverage was not established.

AI-labelled fraud

Yes

AI depth comes from selected external risk tools; the native fraud module's model stack remains unresolved.

Bonus abuse

Yes

Bonus rules and integrated fraud tools can detect abuse; no native model specification was established.

Multi-account detection

Unresolved

No specific native multi-account detection control was established.

KYC casework

Partial

Core KYC controls and integrations are present; native case-management depth remains unresolved.

Fraud casework

Partial

Core fraud rules and integrations are present; native case-management depth remains unresolved.

Audit logs

Yes

Historical data, dictionary and lineage support operational and regulatory audits.

Named product / module

  • Managed Services
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

Yes — integrated KYC and AML plus optional managed operations.

KYC partners

Unresolved

The PAM integrates third-party KYC services; the provider roster is project-specific.

Transaction monitoring

Yes

Age verification

Yes

Device fingerprinting

Unresolved

No current named device-intelligence capability or supplier is established.

AI-labelled fraud

Unresolved

Fraud monitoring is available, but AI-specific detection is not established in the retained PAM.

Bonus abuse

Yes

Managed risk and fraud operations support bonus-abuse controls; the rules and product boundary remain unresolved.

Multi-account detection

Yes

Managed fraud operations and regulated PAM controls support multi-account detection; exact methods remain unresolved.

KYC casework

Partial

KYC integrations and managed compliance support case handling, but the tooling may be third-party and varies by deployment.

Fraud casework

Partial

Managed fraud operations support case handling, but the tooling may be third-party and varies by deployment.

Audit logs

Yes

Regulated PAM and lottery operations support auditable event records; exact operator-visible coverage remains unresolved.

Named product / module

  • Turnkey Sportsbook
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC partners

Sumsub

Transaction monitoring

Yes

The PAM includes ongoing fraud and transaction monitoring.

Age verification

Yes

Sumsub document and liveness verification supports age verification; the exact age-check workflow remains unresolved.

Device fingerprinting

Unresolved

Shared-IP and account-event monitoring do not establish device fingerprinting.

AI-labelled fraud

Yes

AI fraud-prevention, match-fixing and automated-AML applications operate alongside behavioural fraud controls. The exact production models and decision boundaries remain unresolved.

Bonus abuse

Yes

The native bonus engine includes automated abuse detection and behavioural analysis that identifies suspicious patterns and blocks fraud. Detection precision and false-positive rates remain unresolved.

Multi-account detection

Yes

Shared-IP, failed-payment and sensitive-account-change monitoring provide defensible cross-account detection signals; exact matching logic remains unresolved.

KYC casework

Yes

Fraud casework

Yes

Audit logs

Yes

The current retail stack includes full audit tracking for settlements, reprints, adjustments and voids, and jurisdictional reporting maintains clean data trails. Retention and tamper-protection specifications remain unresolved.

Named product / module

  • Full-service PAM
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

The optional Kambi PAM explicitly includes KYC and identity verification; wagering-side profiling, fraud and integrity monitoring complement payment AML controls.

KYC partners

Experian, GBG, GeoComply, Hooyu, IDComply, Iovation, Shufti Pro, Sumsub, Trulioo and others

The inherited integration estate includes 17 KYC providers. Operators choose the relevant stack by market.

Transaction monitoring

Yes

Kambi profiles betting activity and risk in real time, while the PAM and integrated payments layer cover account and transaction controls.

Age verification

Yes

Identity verification is part of the optional Kambi PAM; external-PAM operators retain their own age-verification workflow.

Device fingerprinting

Yes

Kambi processes unique device identifiers, operating system, browser, language, timezone, broad location and interaction history for access, risk and fraud purposes.

AI-labelled fraud

Yes

AI-assisted detection of arbitrage, bonus abuse and suspicious betting patterns.

Bonus abuse

Yes

AI trading and risk flag bonus abuse and arbitrage before/around bet acceptance.

Multi-account detection

Yes

Part of player-profiling and risk on the betting side; player-identity dedup ultimately ties to the operator's PAM.

KYC casework

Yes

KYC and identity verification are explicit PAM functions, with vendor integrations selected by the operator.

Fraud casework

Yes

Core sportsbook controls include liability management, stake acceptance, player profiling and 24/7 integrity monitoring; the optional PAM adds account, KYC and payment-case context.

Audit logs

Unresolved

Retained audit-log fields, access model and retention term remain unresolved.

Named product / module

No named module established

Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

Yes through third-party integrations and OPS workflows.

KYC partners

Multiple market-specific providers

Transaction monitoring

Yes

Supported through payments/risk integrations.

Age verification

Yes

Yes through KYC integrations.

Device fingerprinting

Yes

Available through fraud/geolocation integrations.

AI-labelled fraud

Yes

Third-party integration; no native L&W AI model is established.

Bonus abuse

Yes

Through operator/risk integrations.

Multi-account detection

Yes

Through KYC/fraud integrations.

KYC casework

Partial

Via integrated KYC providers and OPS workflows.

Fraud casework

Partial

Via third-party risk integrations and OPS tooling.

Audit logs

Yes

Named product / module

No named module established

Delivery boundary

Operator/PAM-side

Identity, AML and player-fraud controls sit outside this supplier's established product scope.

KYC / AML

No

No — operator/PAM responsibility.

KYC partners

Unresolved

No KYC product.

Transaction monitoring

No

No operator AML/payment monitoring.

Age verification

No

No — operator/PAM responsibility.

Device fingerprinting

No

No native player-fraud product.

AI-labelled fraud

No

Bonus abuse

No

No — operator risk stack responsibility.

Multi-account detection

No

No — operator KYC/fraud stack responsibility.

KYC casework

Unresolved

Operator/PAM responsibility.

Fraud casework

Unresolved

Operator/risk-stack responsibility.

Audit logs

Yes

Yes for regulated administrative and game-system operations.

Named product / module

No named module established

Delivery boundary

Mixed platform and integrated controls

A platform workflow is established alongside external identity or risk services; ownership is resolved field by field.

KYC / AML

Yes

KYC partners

Digitain native KYC workflow plus configurable third-party integrations; provider selection varies by project

Built-in identity and document handling works with third-party compliance integrations; the KYC provider and market-by-market matrix remain unresolved.

Transaction monitoring

Yes

Age verification

Yes

Built-in KYC/AML and regulated-market onboarding include age checks; exact provider and coverage are deployment-specific.

Device fingerprinting

Yes

Device and payment-method checks use prior fraud and abuse history; the fingerprinting vendor remains unavailable.

AI-labelled fraud

No

Fraud controls use advanced algorithms and real-time pattern detection, but an AI classification is not established.

Bonus abuse

Yes

The casino stack includes real-time bonus-fraud detection.

Multi-account detection

Yes

KYC casework

Yes

Fraud casework

Yes

Audit logs

Yes

Named product / module

  • Managed Operations & Compliance
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

Electronic identity verification, AML controls and managed compliance are part of the platform/service.

KYC partners

Shufti plus White Hat eIDV/AML workflows

The Shufti relationship was extended in December 2025; White Hat remains responsible for orchestration and licensed-operator controls.

Transaction monitoring

Yes

Age verification

Yes

Required across White Hat's licensed and supplier-approved regulated deployments.

Device fingerprinting

Unresolved

Document and face verification are established, but device fingerprinting in the deployed PAM stack is unresolved.

AI-labelled fraud

Yes

AI-assisted fraud prevention is available through the integrated Shufti identity and biometric stack. It is partner-delivered rather than White Hat-native.

Bonus abuse

Yes

The bonus engine, withdrawal rules and risk monitoring support abuse controls; the exact rule set remains unresolved.

Multi-account detection

Yes

White Hat maintains duplicate-identity controls, but 2021 name-matching defects contributed to operator settlements.

KYC casework

Yes

Electronic ID verification, AML workflows, Shufti document/biometric checks and managed compliance are integrated.

Fraud casework

Yes

Real-time risk alerts and managed risk/fraud services support investigation workflows; detailed queues and rules remain unresolved.

Audit logs

Yes

Regulated operations and end-to-end interaction traceability require durable records; exact admin-log coverage remains unresolved.

Named product / module

  • Managed Trading Services
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC partners

GR8 orchestration; underlying identity vendors unresolved

Transaction monitoring

Yes

Age verification

Yes

Device fingerprinting

Yes

Trusted-device, IP/phone-country and multi-account risk signals are available; the fingerprinting provider and exact signal set are contract-specific.

AI-labelled fraud

Yes

Bonus abuse

Yes

Multi-account detection

Yes

KYC casework

Yes

KYCAid and SumSub multiforms allow an individually rejected document to be resubmitted without restarting the complete verification flow.

Fraud casework

Yes

Audit logs

Yes

GiG

6.8

Named product / module

  • ServiceX
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC partners

Crucial Compliance, KYCP and market-specific identity/KYC partners through GiG Broker

Transaction monitoring

Yes

Age verification

Yes

Device fingerprinting

Yes

AI-labelled fraud

Yes

Bonus abuse

Yes

Multi-account detection

Yes

KYC casework

Yes

CoreX and ServiceX support KYC/EDD case handling and integrate automated risk scoring.

Fraud casework

Yes

Audit logs

Yes

Named product / module

No named module established

Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC partners

Third-party KYC tools integrated; the standard provider set is contract-specific

Transaction monitoring

Yes

Yes — AML/payment monitoring.

Age verification

Yes

Yes as part of KYC/onboarding.

Device fingerprinting

Yes

Third-party risk tooling can be integrated; no named native device-fingerprint product.

AI-labelled fraud

No

Rules and behavioural monitoring are current; AI-specific depth is not established.

Bonus abuse

Yes

Fraud/risk rules can flag bonus abuse.

Multi-account detection

Yes

KYC, account and fraud rules support duplicate-account detection.

KYC casework

Yes

Yes — KYC tools and player-protection workflows are part of the PAM.

Fraud casework

Yes

Yes — fraud and risk rules operate in the PAM.

Audit logs

Yes

Named product / module

  • Telegram Casino
  • Platform engagement, BI and risk modules
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC partners

Slotegrator workflow; external identity-verification vendor unresolved

Transaction monitoring

Yes

Age verification

Yes

Age requirements can be configured in KYC; the external verification provider remains unresolved.

Device fingerprinting

Yes

Device signals are used for duplicate and multi-account detection.

AI-labelled fraud

No

The shipped AI assistant summarizes existing risk metrics; fraud detection itself remains rule-, behavior-, IP- and device-based.

Bonus abuse

Yes

Multi-account detection

Yes

Detection uses IP, personal and device signals.

KYC casework

Yes

KYC case management includes configurable documents, risk requirements, ongoing monitoring and stored results.

Fraud casework

Yes

Risk categories, rules, alerts and player-level actions are supported; AI mainly summarizes existing signals.

Audit logs

Yes

Histories and action notes exist; immutability and retention specifications are private.

Named product / module

No named module established

Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC partners

BetConstruct Umbrella; external identity vendor not named

Umbrella provides the rules, risk scoring, case data and workflow. The document and biometric verification engine remains unresolved, so not every identity check can be treated as built in-house.

Transaction monitoring

Yes

Age verification

Yes

Comes through identity KYC at registration rather than a separately named age check.

Device fingerprinting

Yes

The Swarm API includes an AFEC device-fingerprint parameter in session data; Umbrella also detects linked and multiple accounts.

AI-labelled fraud

Yes

Bonus abuse

Yes

Multi-account detection

Yes

KYC casework

Yes

Fraud casework

Yes

Audit logs

Yes

Named product / module

No named module established

Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC and fraud checks run through a Sumsub integration rather than a built-in engine.

KYC partners

Sumsub

Transaction monitoring

Yes

Covered through Sumsub payment fraud prevention and player behavior monitoring. AML transaction monitoring is not named separately by the vendor.

Age verification

Yes

Handled as part of the Sumsub KYC identity checks.

Device fingerprinting

Yes

Partial through Sumsub and fraud partners.

AI-labelled fraud

Yes

Comes from the Sumsub integration and the sportsbook AI risk engine, not a single in-house module.

Bonus abuse

Yes

Multi-account detection

Yes

Yes through identity checks and bonus-abuse controls.

KYC casework

Partial

Staff can review player documents and set a KYC level, but SoftGamings leaves the actual KYC verification vendor to the operator.

Fraud casework

Partial

The payment layer includes fraud resistance; dedicated fraud case-management and investigation tooling is not established.

Audit logs

Yes

Named product / module

  • KYC & Risk
  • PAM
Delivery boundary

Platform-orchestrated integrations

The platform connects identity or risk services. Integration does not make the underlying engine proprietary.

KYC / AML

Yes

KYC partners

Entrust/Onfido, SEON

Entrust/Onfido handles document and facial identity verification; SEON handles digital-footprint, device, and fraud-risk signals.

Transaction monitoring

Yes

Age verification

Yes

Entrust/Onfido verifies government ID and selfie/face match. Consistent application across every linked brand remains disputed.

Device fingerprinting

Yes

SEON device intelligence is integrated into login and fraud workflows.

AI-labelled fraud

Yes

SEON provides real-time risk scoring at registration, login and deposit.

Bonus abuse

Yes

SEON detects multi-accounting and welcome-offer exploitation.

Multi-account detection

Yes

KYC casework

Yes

Fraud casework

Yes

Audit logs

Yes

The operating decision is wider than the integration list

Decision ownership

Define which checks auto-pass, auto-reject, pause or escalate, and which party can change the policy.

Case operations

Specify queues, evidence, notes, reason codes, four-eyes review, escalation and service responsibility.

Data and audit

Contract the event trail, decision inputs, retention, export, access, residency and regulator-ready reporting.

Model control

For AI-labelled controls, establish model purpose, human review, false-positive handling, monitoring and change governance.

Related operator decisions

KYC, AML and fraud controls FAQ

Does KYC/AML availability mean the provider owns the verification engine?
No. A platform can own the workflow and case controls while identity, document, biometric, sanctions, device or risk checks run through integrated services. The product boundary and the underlying providers must be established separately.
Does an AI fraud field measure detection quality?
No. It records whether an AI- or machine-learning-labelled fraud capability is established and preserves its scope. It does not establish precision, recall, false-positive rate, explainability, automation level or production performance.
Why are KYC casework and fraud casework separate?
Identity review normally handles documents, verification status, enhanced due diligence and remediation. Fraud work can cover payment abuse, bonus abuse, linked accounts, devices, collusion and behavioral signals. A platform can support one workflow more deeply than the other.
Does a named KYC partner apply to every operator and market?
No. Partner availability, data flows, checks, decision rules and residency can change by product, contract and jurisdiction. A name in the integration layer does not establish that it is enabled in a specific deployment.
Does this comparison establish regulatory readiness?
No. Market readiness also requires the correct operator and supplier entities, permissions, technical approvals, reporting, retention, local workflows and a production deployment for the target product and jurisdiction.