Kvorum ID
- Digital Identification
- OAuth 2.0 / SSO
- Personal Accounts
- Audit Log
- Offer Control
For VTB Registrar, we developed a group of services for digital identification and user profile management: OAuth 2.0 / SSO module, personal accounts for individuals and legal entities, administrative panel, audit log, and offer control subsystem.
The system is currently in beta testing and preparing for launch for a wide range of users. Core functionality has been implemented and accepted.
Kvorum ID — what was done:
Authorization service — users log in through Gosuslugi, VTB ID, or standard login/password
Individual personal account — created a secure account with storage of personal data, documents, and bank details
Legal entity personal account — created an account with management of details, documents, CEO designation, and employee access
Administration panel — centralized user and system settings management
Data verification — automatic relevance check with the ability to confirm online or offline
Brute force protection — detection of suspicious login attempts with automatic blocking
Logging subsystem — audit log of all user and administrator actions for security service employees
Offer acceptance control — the system blocks access until the current document version is confirmed, consent is recorded in a legally significant manner
Implementation Details
A full authorization cycle has been implemented with support for federated authentication through state and corporate identification services, as well as standard login and password entry. The user chooses the convenient method themselves. Built-in protection against automated attacks with security service alerting.
The profile is synchronized with the state identification system — data relevance is displayed in the interface in real time. Data confirmation is available both through online authorization and offline validation — the system supports both scenarios without data integrity loss.
Storage of a complete package of corporate data: details, bank accounts, documents, executive body information. A role-based employee access model has been implemented with rights separation at the level of individual system functions.
Centralized administration tool with access separation for authorized employees. All critical operations are performed in a secure environment with full audit.
The subsystem records all system events: authorizations, data changes, administrative actions. Operates independently of main services and does not affect their performance. Notifications about significant events reach responsible employees in real time.
Flexible offer management system with document versioning and two types of blocking — authorization prohibition or restriction of specific actions. Users receive notifications about new versions. Acceptance is recorded cryptographically and stored securely, guaranteeing record immutability and authenticity.
Ready to discuss your project?
Describe the task to us — we will propose the optimal work model
We always fix
Cost
Deadlines
Scope of Work