FAQ
Questions, answered plainly
What AMLPRO screens, how matching works, the API, plans, security — and what it doesn’t do.
The product
What is AMLPRO?
AMLPRO screens people, companies and organizations against sanctions, PEP, watchlist and adverse-media data — from a console your team uses and an API your systems call, under matching rules you write yourself. Every search is kept on record with a PDF report.
What kinds of search are there?
Four: individual, company, organization and adverse media. An individual, company or organization search checks sanctions, PEP and watchlist data together. Adverse media is its own search, and can run in the same search on plans that include it.
Which lists do you screen against?
Hundreds of sources — among them the US OFAC SDN list, the UN Security Council consolidated list, the EU Financial Sanctions Files, the UK HMT/OFSI and FCDO lists, INTERPOL Red Notices, the FBI Most Wanted, the World Bank debarment list and Wikidata PEPs. The Sources page in your console lists every source your account screens against, by country.
Does AMLPRO monitor our customers after onboarding?
No. A screening runs when you ask for one. To review customers again, re-screen them through the API on the schedule your policy sets — each result filed under your own reference.
Does AMLPRO give each customer a risk score?
No. Each match comes with its evidence — which name matched, a match score, topics, sources and the full record — and your team applies your own risk rating. The match score measures how close the name is, not how risky the person is.
Do you verify identity documents or screen wallet addresses?
No. AMLPRO screens names. Identity-document checks, wallet screening and transaction monitoring come from specialist tools that sit alongside it.
Matching and rules
How do you keep false positives down?
Three ways: a match threshold (the lowest score that comes back), a result limit, and your workflow, which compares details such as date of birth, country, passport or registration number and drops look-alikes before anyone reviews them. A detail you don’t send is simply skipped.
What is a workflow?
A chain of steps you build for each kind of search. The name match always comes first; you decide what each later step compares and where records go when it matches or doesn’t. Every search follows it, in the console and through the API. See the workflow builder.
What does “matched on” mean?
Which of the record’s names your search hit: the listed name, one of its aliases, or a weak alias the list itself marks as low-quality.
API and integration
How does the API work?
Your system signs each request with your key’s secret, time-stamps it, and sends a name with any details your workflow compares. It gets back each matching record with its sources and score, and a link to the PDF report. How a call works.
Can we limit what a key can do?
Yes. Each key can be limited to screening, to report downloads or both, to the addresses you list, and to an end date. Each key also has its own rate limit.
Is there a sandbox?
There’s no separate sandbox. Every account starts on a free plan with individual screening, so you can build and test the integration against the real service before you buy anything.
What happens when a call is refused?
It says why — a missing field, a signature or timestamp that doesn’t check out, an address that isn’t allowed, a plan or key that doesn’t cover the search, not enough balance, or too many calls too quickly.
Plans and billing
Is there a free plan?
Yes. Every account starts on a free plan that includes individual screening. Company and organization screening, adverse media, workflows and team features come with a paid plan. See plans.
How does billing work?
Top up a prepaid balance and each search is charged at your plan’s price. AML and adverse media are priced separately, and a search that runs both is charged for both. On Pay as you go, what you use is invoiced to you afterwards instead.
Is a search that finds nothing charged?
Yes. A clear result is still a screening: it’s kept on record, it has a report, and it’s charged like any other search.
Security and team
How do you protect our account?
Passwords are kept only as salted PBKDF2 hashes, anyone can add an authenticator code to their sign-in, the console signs itself out after ten idle minutes, and roles are enforced by the server. More on security.
Can our whole team use one account?
Yes. Invite colleagues by email and give each a role. Your plan includes a number of seats; extra seats are invoiced separately, never taken from your screening balance.
What is kept about each search?
What was asked, what was found, what it cost, and where it came from — the time, the key and the address — with a PDF report for each one.
Getting started
How do I get started?
Create an account, and you’re on the free plan straight away. Screen from the console, or create a key and call the API. If you’d rather talk it through first, get in touch.
Can I talk to someone?
Yes. Customers can message our team from inside the console and see replies as they arrive, and anyone can reach us through the contact page.
No question matches that. Try another word, or ask us directly.
Still have a question?We’ll answer for your case.
Contact us
