taler-www

Main taler.net website
Log | Files | Refs | Submodules | README | LICENSE

commit 996ff04170f3d34a7f98e2a4068a2239836d1c63
parent 7a02d68d30a8e3ff2b19cffdc00e048df766f80b
Author: Emmanuel Benoist <emmanuel.benoist@bfh.ch>
Date:   Wed, 10 Jul 2024 18:02:26 +0200

Adding the thesis of Yann Doy

Diffstat:
Astatic/papers/doy2024-bachelor-ekyc-thesis.pdf | 0
Astatic/presentations/doy2024-bachelor-ekyc-book.pdf | 0
Astatic/presentations/doy2024-bachelor-ekyc-poster.pdf | 0
Astatic/presentations/doy2024-bachelor-ekyc-presentation.pdf | 0
Atemplate/news/2024-13.html.j2 | 46++++++++++++++++++++++++++++++++++++++++++++++
5 files changed, 46 insertions(+), 0 deletions(-)

diff --git a/static/papers/doy2024-bachelor-ekyc-thesis.pdf b/static/papers/doy2024-bachelor-ekyc-thesis.pdf Binary files differ. diff --git a/static/presentations/doy2024-bachelor-ekyc-book.pdf b/static/presentations/doy2024-bachelor-ekyc-book.pdf Binary files differ. diff --git a/static/presentations/doy2024-bachelor-ekyc-poster.pdf b/static/presentations/doy2024-bachelor-ekyc-poster.pdf Binary files differ. diff --git a/static/presentations/doy2024-bachelor-ekyc-presentation.pdf b/static/presentations/doy2024-bachelor-ekyc-presentation.pdf Binary files differ. diff --git a/template/news/2024-13.html.j2 b/template/news/2024-13.html.j2 @@ -0,0 +1,46 @@ +{% extends "common/news.j2" %} +{% block body_content %} + +<h1>2024-13: &quot;KYCID, an operational OAuth2 integration of eKYC&quot;</h1> +<p> +In this bachelor thesis Yann Doy presents his implementation of a concept of eKYC (electronic Knwo Your Customer procedure). +</p> +<h2>Introduction video</h2> +<p> +<video id="video" poster="/images/logo-2021.svg" autobuffer="" height="360" width="640" controls="controls"> + <source src="/videos/doy2024-bachelor-ekyc-video.mp4" type="video/mp4" /> +</video> +</p> +<h2>Abstract</h2> +<p> +This bachelor’s thesis, carried out by Mr Yann Mickael DOY and advised by Mr Emanuel BENOIST with the expertise of Mr Daniel VOISARD, explores the creation of an identity verification service platform (Know your customer, eKYC) called KYCID for "Know your customer’s ID". +</p> +<p> +The service enables third-party applications (client apps), such as GNU Taler, a payment platform, to perform eKYC procedures, which verify either the telephone number via a code sent by SMS, or by checking identity papers, or both. +</p> +<p> +ID papers verification is carried out by taking a photograph of the ID card or passport and other images of the person in different positions using his camera or webcam. This enables an administrator to verify that the documents in question belong to the indi- vidual in question and to validate their account. +</p> +<p> +In light of the aforementioned considerations, it is clear that security is of paramount importance. This is why the integration between the client app and KYCID is done with OAuth2. OAuth2 is a protocol and a set of specialised practices for delegating autho- risation over HTTPS. In its version 2, it is technically mature and widely used in the industry. +</p> +<p> +OAuth2 enables third parties (client applications) to request access to a protected re- source on a service. In this case, the resource is the user’s identity, and the service is KYCID. OAuth2 is not merely a protocol; it is also a framework that provides the tech- nical knowledge to enable its implementation in a secure manner. +</p> +<p> +Furthermore, KYCID incorporates a comprehensive array of security measures, includ- ing password protection, an anti-brute force system, and filters to prevent SMS plump- ing, which involves the use of premium rate numbers to extort money from the service. +</p> +<p> +The KYCID functionality enables customers to register with an email address and verify it (to prevent the use of fake emails), verify a phone number and verify identity docu- ments. Furthermore, KYCID allows customers to carry out an eKYC procedure without first creating an account. This account will be created automatically at the end of the eKYC procedure. +</p> +<p> +The code has been developed in accordance with the principles of clean architecture, which facilitates scalability and testability. This has been achieved by implementing a comprehensive suite of automated unit, acceptance, and integration tests.</p> +<h2>Links</h2> +<ul> +<li><a href="/papers/doy2024-bachelor-ekyc-thesis.pdf">Thesis PDF</a></li> +<li><a href="/presentations/doy2024-bachelor-ekyc-poster.pdf">Poster PDF</a></li> +<li><a href="/presentations/doy2024-bachelor-ekyc-book.pdf">Book PDF</a></li> +<li><a href="/presentations/doy2024-bachelor-ekyc-presentation.pdf">Presentation PDF</a></li> +<li><a href="https://git.taler.net/ekyc.git/">eKYC Git repository</a></li> +</ul> +{% endblock body_content %}