TL;DR: Biometric identity stacks are being pushed toward always-on verification as agentic AI and deepfake fraud increase pressure on identity assurance, according to Incode. Its stack was named a 2026 Prism Refractor and Resilient Trust Leader, with the Prism report highlighting seven billion trust checks, 400 million identity profiles, and the governance lesson that identity assurance now has to hold across onboarding, authentication, and high-risk transactions, not just at initial enrollment.
NHIMG editorial — based on content published by Incode: Incode named a 2026 Prism Refractor and Resilient Trust Leader
By the numbers:
- Incode's proprietary AI models have performed more than seven billion identity trust checks as of August 2026.
- The platform supports over 400 million identity profiles worldwide.
- NHIs outnumber human identities by 25x to 50x in modern enterprises.
Questions worth separating out
Q: How should organisations design identity verification flows for higher fraud risk?
A: They should use risk-based routing so the verification journey matches the transaction’s sensitivity.
Q: Why do synthetic identities complicate biometric verification programmes?
A: Synthetic identities can look valid at enrollment because the attacker is manufacturing a believable person, not stealing an existing one.
Q: What breaks when privacy and fraud controls are treated separately?
A: Teams either over-collect identity data to fight fraud or under-collect and miss risky patterns.
Practitioner guidance
- Map verification checkpoints to transaction risk Place stronger identity checks at account recovery, payment, beneficiary change, and other high-risk steps rather than relying on enrollment alone.
- Review data minimisation in the IDV stack Inventory where biometric, document, and liveness data is stored, who can access it, and which systems retain it beyond operational need.
- Combine multiple fraud signals Use liveness detection, document authentication, and network intelligence together so one failed control does not decide trust on its own.
What's in the full article
Incode's full post covers the operational detail this analysis intentionally leaves for the source:
- The Prism report’s full scoring context for the Core Identity Technology Beam and the Resilient Trust Leader designation.
- The platform architecture details behind biometric verification, liveness detection, document authentication, and fraud intelligence.
- The privacy-by-design and network intelligence mechanics that support cross-institution fraud detection without exposing customer data.
- The Interac collaboration context and the practical role of liveness plus network-level fraud signals.
👉 Read Incode's analysis of Prism recognition and resilient trust in IDV →
Biometric digital identity and continuous trust: what changes now?
Explore further
Biometric digital identity is moving from point verification to continuous assurance. The article’s strongest signal is that a single enrollment decision no longer carries enough security value when AI-generated fraud can re-enter the flow at any later point. Continuous trust is now a governance requirement because verification, authentication, and transaction approval are collapsing into one risk surface. Practitioners should treat identity assurance as a repeated control, not a one-time event.
A question worth separating out:
Q: How do AI-driven transaction flows change identity governance?
A: They reduce the reliability of assuming a human is only present at login. If AI can trigger actions, identity governance has to decide when a fresh human confirmation is required and which events should force revalidation before the workflow continues.
👉 Read our full editorial: Biometric digital identity now needs continuous trust and privacy