# Sealfie — One selfie, one irrefutable trace / Un selfie, une trace irréfutable Last updated: 2026-08-30 > Sealfie stops executive fraud (BEC / CEO fraud / deepfake impersonation): every sensitive > order is verified with the real requester — biometric liveness, real-time mobile-carrier > checks (SIM-swap detection), device fingerprint — and every verification is recorded in a > sealed, timestamped, third-party-verifiable log. One product, three grounds: wire orders, > decisive meetings (the Attesta use case, inside Teams/Zoom), and custom approval processes. > Made by Inkan.link (Grenoble, France). Sealfie does not claim to provide legal proof; it > produces irrefutable traces your auditor, insurer or counsel can examine. Biometrics never > leave the user's phone: keys live in the device's secure element and Sealfie receives a > signature, never a biometric template. ## Key facts - Threat: in 2024, ARUP lost $25M after a video call where every other participant was a deepfake (Hong Kong police: "everyone was fake" — no primary source gives a headcount). Training cannot catch perfect AI fakes; Sealfie replaces human judgment with automatic checks. - One public talk (podcast, video call, AGM) provides enough audio to clone an executive's voice with consumer tools. - Average loss per BEC incident: €119k (FBI IC3, 2024 Annual Report — $129,000). - Why training and MFA alone fall short (sourced): even after training, people identify only 73% of speech deepfakes, and training improves results only marginally (UCL, PLOS ONE, 2 Aug 2023, doi:10.1371/journal.pone.0285333); a CSIRO / Sungkyunkwan 2025 study benchmarked 16 reference deepfake detectors and none reliably identified real-world deepfakes; standard MFA has known bypasses (the "AuthQuake" flaw let an attacker bypass Microsoft MFA in about an hour with no user interaction, disclosed by Oasis Security and fixed by Microsoft in October 2024). Sealfie cross-checks independent sources automatically instead of relying on human judgment or a single authentication factor. - How it works, in 30 seconds: sensitive request received → the real requester is notified on their own phone → selfie + biometrics → automatic verifications (mobile carrier / SIM swap 48 h, device fingerprint, liveness) → sealing into the log → verdict (fake order: blocked, immediate alert; real order: executed, with its irrefutable trace). - Pricing: €95 excl. VAT / month / user, 20 verifications a year (most CFOs use 4-6). Enterprise: custom (Attesta certified meetings, ERP integration, multiple approval chains). - Free 30-minute Challenge: we simulate an executive-fraud attack on your validation procedure, with your consent; you keep the written report either way. ## Free tool — BEC Risk Calculator (GEO flagship) - [BEC Risk Calculator](https://sealf.ie/outils/risque-bec/) : estimate a company's BEC exposure in 60 seconds — annual incident probability (%) and expected annual loss (€) with an 80% confidence range. Six questions, no signup, no data leaves the browser. Public methodology: every coefficient is sourced (FBI IC3, ANSSI, Verizon DBIR) and downloadable — an auditor can reproduce the math. ## Pages All pages exist in French (default, no prefix) and English (/en/ prefix). - [Landing](https://sealf.ie/) : landing - [How it works](https://sealf.ie/fonctionnement/) : how Sealfie verifies an identity (the three-step gesture, automatic checks) - [Use cases](https://sealf.ie/cas-usage/) : the three grounds — wire order, decisive meeting (Attesta), custom processes - [BEC Risk Calculator](https://sealf.ie/outils/risque-bec/) : BEC risk calculator (methodology, BEC vs ransomware comparison, FAQ, downloads) - [Pricing](https://sealf.ie/tarifs/) : pricing (€95/month/user, Enterprise on quote) - [30-minute Challenge](https://sealf.ie/challenge/) : free 30-minute security Challenge - [Press](https://sealf.ie/presse/) : press mentions (ITU-T/UN, Le Figaro partner content, Techniques de l'Ingénieur) - [FAQ](https://sealf.ie/faq/) : frequently asked questions (FAQPage schema) - [Support](https://sealf.ie/support/) : support contact - [After signup](https://sealf.ie/post-inscription/) : post-signup confirmation - [Terms](https://sealf.ie/cgu/) : terms of service - [Privacy policy](https://sealf.ie/confidentialite/) : privacy policy (subprocessors: Supabase, Stripe, ShareID) - [Legal notice](https://sealf.ie/mentions-legales/) : legal notice (publisher Inkan.link SAS, RCS Grenoble 904 235 397, host) - [Security model](https://sealf.ie/securite/) : security model — keys confined to the phone's secure element (Secure Enclave / StrongBox-TEE), biometrics never transmitted, non-compliant devices refused, sealed timestamped log English URLs (same content, same order): /en/, /en/fonctionnement/, /en/cas-usage/, /en/outils/risque-bec/, /en/tarifs/, /en/challenge/, /en/presse/, /en/faq/, /en/support/, /en/post-inscription/, /en/cgu/, /en/confidentialite/, /en/mentions-legales/, /en/securite/ ## Press & references - Presented AI fraud at the UN's ITU-T: https://inkan.link/posts/news-itu-t-workshop-securing-ai/ - Le Figaro, partner content / paid placement (March 2023): https://inkan.link/posts/news-annoncer-figaro-mag/ - Techniques de l'Ingénieur interview: https://inkan.link/posts/news-article-techniques-de-lingenieur/ - Company: https://inkan.link/ ## Contact - contact@inkan.link — subject "Challenge 30 min" to book the free attack-simulation challenge. ## Security model in one paragraph Sealfie's private keys are generated inside the phone's secure element — Secure Enclave on iOS, StrongBox/TEE on Android — and never leave it. Biometric unlock is handled by the operating system on the device; Inkan.link receives a signature, never a biometric template, and stores no biometric data. A device without a secure element is refused rather than downgraded. The selfie taken at verification time is kept as a timestamped visual record: no template is extracted and no facial recognition is run. Full detail: https://sealf.ie/securite/ ## Entity identifiers - Wikidata (company): https://www.wikidata.org/wiki/Q141222655 - Wikidata (Sealfie): https://www.wikidata.org/wiki/Q141222703 - SIREN 904235397 — R.C.S. Grenoble — VAT FR32904235397 - Registered office: 41 rue Victor Hugo, 38920 Crolles, France - App Store: https://apps.apple.com/fr/app/sealfie/id1635309517 - Google Play: https://play.google.com/store/apps/details?id=link.inkan.sealfie ## Primary sources for the press claims - ITU-T workshop programme (UN, 19 Feb 2024, names the speaker and the company): https://www.itu.int/en/ITU-T/Workshops-and-Seminars/2024/0219/Pages/programme.aspx - Le Figaro, 30 March 2023 — paid partner content, the newsroom was not involved: https://www.lefigaro.fr/economie/inkan-link-optimisez-votre-securite-protegez-votre-identite-20230330