Skip to main content

What is Legl's DIATF certification?

What DIATF certification means at Legl, which CDD products it covers, and what it means for your firm and your clients.

Written by Ula Moyse-White

Overview

Legl is a certified Identity Service Provider against the UK government's Digital Identity and Attributes Trust Framework (DIATF), gamma version. Both Standard CDD and Enhanced CDD are DIATF-certified products in Legl. This article explains what the certification covers and what it means for your firm.

ℹ️ Important

DIATF-certified checks are not enabled by default. To add DIATF certification to your firm's plan, speak to your Account Manager or contact our Support team.


What you can use DIATF certification for

Firms on a DIATF-certified plan can:

  • Demonstrate that their identity verification process meets a UK government-endorsed standard

  • Use a CDD product that includes an additional fraud check against the SIRA national fraud database

  • Reference a defensible, auditable certification level (M1A for Standard CDD, H1A for Enhanced CDD) when documenting their CDD process


How DIATF certification works in Legl

DIATF certification applies at firm level, not at workflow or matter level. It is set on the firm's plan when DIATF-certified CDD is purchased. Once enabled, all Standard CDD and Enhanced CDD checks run by the firm automatically use the certified version of the product. There is no per-workflow toggle and fee earners do not need to choose between certified and non-certified versions when sending a request.

The two certified products are mapped to specific identity profiles within the framework:

  • Standard CDD is certified at identity profile M1A (Medium confidence)

  • Enhanced CDD is certified at identity profile H1A (High confidence)


What the fraud check adds

The DIATF-certified products include a check against the SIRA national fraud database. This is the same database used by major UK banks and insurers when assessing applicants for mortgages and loans. If a client's identity has been previously reported for fraudulent activity, the fraud check will return a result that flags this for the firm's review.

ℹ️ Further guidance

For detail on what fraud check results mean and what to do when one returns Consider, see Understanding fraud check results.


What this means for fee earners, compliance teams, and clients

For fee earners, there is no change to the day-to-day experience. The fraud check appears as an additional section within the CDD report alongside the existing checks. There is no extra step in the workflow builder, no separate report type, and no additional review step.

For compliance teams reviewing CDD reports, an Identity fraud screening section now appears in reports for firms on a DIATF-certified plan. Compliance teams should review any Consider results in this section and follow the guidance in Understanding fraud check results.

For clients completing a Standard CDD check on a DIATF-certified plan, there is one change: clients must take a live photo of their ID document on their mobile device during the check. They cannot upload a pre-taken image. This live capture requirement is part of the M1A certification standard. For most clients, it adds minimal friction to the process.

For clients completing an Enhanced CDD check on a DIATF-certified plan, live capture is enforced via NFC passport scan. The client scans the chip in their passport using their mobile device as part of the H1A certification standard.


How to activate your firm on a DIATF-certified plan

DIATF certification is activated at firm level. To get your firm onto a DIATF-certified plan, speak to your Account Manager. They will update your firm settings and guide you through the process, including the short contractual amendment required as part of the framework.


Permissions and access

DIATF-certified CDD is enabled at firm level on a per-plan basis. There are no user-level permissions to configure. Once the firm is on a certified plan, all users running Standard CDD or Enhanced CDD automatically use the certified version.


Important information

  • DIATF certification applies to Standard CDD and Enhanced CDD only. Basic CDD and In-Person CDD are not part of the certification.

  • The fraud check only appears in CDD reports for firms on a DIATF-certified plan.

  • For Standard CDD on a DIATF-certified plan, clients must take a live photo of their ID document on their mobile device. They cannot upload a pre-taken image.

  • For Enhanced CDD on a DIATF-certified plan, live capture is enforced via NFC passport scan.

  • Firms moving onto a DIATF-certified plan are required to sign a short contractual amendment as part of the framework. Your Account Manager will guide you through this.

  • Legl is certified against the gamma version of the DIATF framework.

Did this answer your question?