This seems like a lazy snipe. They clearly state that they receive only an age verification result and none of the personal data. It would take collusion from both sides to silently enable transfer of user data while publicly stating that they don't.
I have used these KYC services before. There is the option to get access to all user data - but unless there is evidence to the contrary, we have to take their word for it, for now.
Wasn't there a purported breach of a huge KYC service, idscan recently? https://www.consumeraffairs.com/news/fbi-investigates-massiv...
Trust them, their totally vetted contracted third-party vendor retains all the good personal data for the taking.
https://krebsonsecurity.com/2026/09/fbi-probes-service-selli...
[dead]
No fucking way I’m sending my biometric data to some sleazy foreign company I know nothing about. The fact that “Yoti” is separate from Anthropic doesnt suddenly make this less gross.