Sealfie logoSealfie
Anti-deepfake verification · signature · irrefutable traces

One selfie, one irrefutable trace — wherever a decision moves your money.

“When I saw this wave coming at the UN, I didn’t write yet another report. I built Sealfie. Because you can’t train humans to spot perfect AI fakes. You need an anti-AI verification that works in 30 seconds. That’s it. That’s Sealfie.”

— Nicolas Thomas, founder · presented AI fraud at the UN’s ITU-T · seen on Figaro TV
Presented at the UN ↗AI fraud exposed at ITU-T — one month before the ARUP wave Seen on Figaro TV ↗Our founder interviewed on executive fraud (French) Techniques de l'Ingénieur ↗Interview: aggregating the traces of every system involved
The reality

Your team would have approved that wire too.

In 2024, at ARUP, a finance employee wired $25M after a video call where all six executives present — including the CFO — were deepfakes. Trained professionals. MFA everywhere. Zero chance of catching the scam.

The lesson is not “train harder”: your cyber-awareness training fights yesterday’s threats while criminals use today’s AI. The lesson is that you need a control that doesn’t depend on human judgment — and that leaves an irrefutable trace.

What actually worries me

“That ARUP attack? Sophisticated enough to fool trained finance professionals — with tools anyone can rent. Six deepfakes on one call. Your CFO gets the same call tomorrow, and approves.”

One public talk
is enough to clone your CEO’s voice
podcast, video call, AGM — consumer tools
€119k
average amount stolen per attack
FBI IC3 · 2024
Zero training
Sealfie stops it. One selfie.
nothing to learn, nothing to social-engineer
A method, not a list of red flags

You take a selfie. We do the rest.

One method. Multiple verifications. Zero human judgment required.

You
  • Take a selfie when asked
  • Confirm with your phone’s biometrics — you already do it twenty times a day
“You know how to take a photo. Congratulations — you know how to use Sealfie.”
Us — automatically
  • We query your mobile carrier in real time: SIM swap in the last 48 h, same line, same device — most “secure” systems never do this; we do, every time
  • We check the device against your registered hardware fingerprint
  • We detect whether it’s a real human or a deepfake (biometric liveness)
  • We seal every check into a timestamped, tamper-evident, third-party-verifiable log
  • We update these controls as new attacks emerge — you never see it, never configure it
The request — 30 seconds, sealed
00 sRequest received
10 sSelfie + biometrics
15 sAuto verifications
25 sSealing
30 sDecider notified
The gesture, for real — Sealfie in under 2 minutes
One product, one gesture — three grounds

The same selfie protects the order, the meeting and your processes.

Sealfie isn’t yet another app: it’s the seal you place wherever a decision commits the company. Email, Slack, Teams, WhatsApp — we don’t change your workflow, we make it fraud-proof.

Use case 02 — Attesta

The decisive meeting

Attesta brings Sealfie into your video calls — Teams, Zoom and the market’s tools. Participants in a sensitive session are identified, not just connected, and the minutes are signed in-session, with the same gesture. No more “+1 555… joined the meeting” that nobody dares to question.

You sign with Sealfie — same selfie, same log
Use case 03

Your own processes

Supplier bank-detail change, document validation, critical access: any approval flow can require the seal. Need a custom integration with your ERP? We’ll build it. Want to stay email-only? That works too.

Verified and signed with Sealfie
The full journey — from request to trace, step by step
The decision — the decider approves or refuses
1Notification received
2Request reviewed
3Selfie + biometrics
4Sealing
Verdict
Approves — executed, irrefutable trace
Refuses — blocked, immediate alert

The requester signs the receipt; the event collection joins your archives — third-party verifiable.

What Sealfie actually does differently

The founder’s voice, unfiltered.

You follow the process, we handle the technical part

“What troubles me: despite the tools and training that already exist, the attacks still get through. BEC is the natural target. I've watched MFA get bypassed for 15 years — SIM swap, phishing, a simple search. Nothing is unbreakable, but you follow your process: Sealfie verifies what a human can't see.”

An audit trail that holds up

“When your auditor asks ‘how do you know the CFO really approved this?’, you show them the log: every verification timestamped, sealed, third-party verifiable — not email forwards.”

Dead simple, by principle

“A protection that requires training has already failed. Nothing to learn also means nothing to social-engineer. No training. No complexity. No excuses.”

Direct access, no tickets

“Your payment workflows don’t fit in a box? Neither does our support: direct access to me and my team. We configure. You just use it.”

Why the trace matters
“No law forces you to verify who gives an order. But one thing is now clear: the bank will not pay in your place. An order given by an authorized person — even a manipulated one — is an authorized order.”

The risk sits with you; the trace must too. Sealfie doesn’t promise you’ll win a lawsuit — no tool can. It guarantees that the day you’re asked to account for a decision — auditor, insurer, judge — you’ll have more to show than an email: irrefutable traces of who verified what, and when.

Free tool — no signup

Your BEC exposure, in euros, in 60 seconds.

Six questions. In return: your annual incident probability and the total expected cost — stolen funds, forensics, legal counsel, crisis communication — in euros, with a confidence range. Public methodology, every coefficient sourced — your auditor can redo the math. Sources: FBI IC3, ANSSI, Verizon DBIR.

Pricing

€95 to avoid an average €119k in stolen funds. Here’s why so little.

Because we don’t watch everything: we verify only what can cost you a fraud. 20 verifications a year — most CFOs use 4 to 6.

Sealfie

To protect your sensitive orders, starting today
€95 excl. VAT / month / user
  • 20 verifications per year
  • Real-time mobile-carrier verification — nobody else does this
  • Sealed, timestamped, exportable log
  • Up and running in 30 minutes. Not 30 days.
  • We configure. You just use it.

Enterprise

Certified meetings (Attesta), ERP, multiple approval chains
Custom quote
  • Meetings use case: certified sessions in Teams/Zoom
  • Multiple approval chains, custom verification sources
  • ERP/accounting integration — if you want it; works without too
  • Add capabilities when you need them, not all at once
  • Direct access to the founder and the team — no ticket system
The counter-proof

Before you believe us, put us to the test.

Step 1 — 30 minutes

A video call with our team. You describe your validation circuit as it exists today.

Step 2 — Simulation

We simulate an executive-fraud attack on your procedure — with your consent, without touching your systems.

Step 3 — The report

You leave with a written report of the weaknesses found. It’s yours, whether you sign or not.

Book the Challenge — free, report included