AML Portal
Counterparty due diligence

Screening you can prove.

Sanctions, PEP, enforcement, adverse-media and registry checks on every counterparty — with a human decision on every match and an immutable trail behind it. Built UAE-first, ready for the world.

200+
Watchlists screened
40+
Jurisdictions
8
Screening blocks
65+
Media languages
24h
Source refresh

Coverage

What we screen against

Every list, where the data originates and how often it refreshes. Aggregated primarily through OpenSanctions, which re-crawls 250+ official sources daily, plus direct registry and media integrations.

UAE Local Terrorist List

Source:
UAE Cabinet / Executive Office resolutions
Dataset:
OpenSanctions · ae_local_terrorists
Daily

UN Security Council Consolidated List

Source:
United Nations Security Council
Dataset:
OpenSanctions · un_sc_sanctions
Daily

Politically Exposed Persons (PEP + RCA)

Source:
Parliaments, official registries, Wikidata
Dataset:
OpenSanctions · role.pep / role.rca
Daily

Enforcement, Debarment & Wanted

Source:
Regulators & law enforcement worldwide
Dataset:
OpenSanctions · debarment / crime / wanted / reg.action
Daily

Global Sanctions

Source:
OFAC, EU, UK HM Treasury + 100+ national lists
Dataset:
OpenSanctions · consolidated
Daily

Adverse Media

Source:
Live web + global news in 65+ languages
Dataset:
OpenAI web search + GDELT news archive
Real-time at screening

ICIJ Offshore Leaks

Source:
Panama / Pandora / Paradise Papers, Bahamas leaks
Dataset:
OpenSanctions · ext_icij_offshoreleaks
As released by ICIJ

GLEIF LEI Registry

Source:
Global Legal Entity Identifier Foundation
Dataset:
GLEIF public API
Continuous

Coverage evolves as new lists are onboarded. Optional lists (Leaks, LEI, UK registry) are controlled per workspace; each source is isolated — if one provider fails, its block is flagged in the report and the rest complete normally.

Methodology

How a check works

A wide net for recall, a policy cut for precision, and a person on every decision.

1

Intake

Name + document (OCR / MRZ)

2

Retrieval

Wide 0.7 net across every list

3

Policy cut

Threshold + enabled blocks

4

Human review

Confirm / dismiss each candidate

5

Risk & verdict

Sanctions→HIGH, PEP→MED+

6

Rescreening

Calendar + ongoing monitoring

Why AML Portal

Built for compliance that holds up

Human-in-the-loop

No verdict without a person. Every candidate is confirmed or dismissed by an analyst with a mandatory comment — never an automatic pass that misses a real match.

UAE-first

The UAE Local Terrorist List, country risk tuned to the FATF position, and a CDD file structure built for CSPs and their regulators — out of the box.

Provable by design

Each check snapshots the exact policy it ran under. Screening runs, decisions and PDF reports (SHA-256 stamped) are immutable — republishing a policy never rewrites the past.

Arabic & transliteration matching

Fuzzy, transliteration-aware name comparison (Mohammed / Muhammad / Mohamed) so regional names are caught, not missed on spelling.

Ongoing monitoring

Your whole book is rescreened on a schedule; alerts fire only on NEW candidates. A counterparty clean today, flagged tomorrow, reaches you the same day.

Minutes to first screen

Register and screen a counterparty in minutes — no procurement cycle, no integration project. Grow into batch, monitoring and the API when you need them.

Security & data

Your data, fenced and provable

Isolation, encryption and an audit trail that stands up to inspection.

Tenant isolation

Every record is scoped to your account at the query layer — a workspace can never read another's data.

Encryption in transit

All traffic over TLS. Sessions are HTTP-only, hashed server-side; passwords are bcrypt.

Immutable audit trail

Append-only log of every action — who screened whom, which list version, who decided and why. Exportable for inspection.

Least-privilege database

The AML service runs under a dedicated role with rights only to its own schema — physically fenced from other systems.

Data-residency ready

One shared instance today, a dedicated database per client on request — the architecture splits cleanly without a rebuild.

Monitoring without PII

Error monitoring is active in production and deliberately carries no personal data in its traces.

Screening you can prove, on every counterparty.

Sanctions, PEP, enforcement, adverse-media and registry coverage — a human decision on every match, and an immutable record behind it.

Decision-support tool — every match is reviewed by your team; the decision is yours.