0kyc.io
Directory
Methodology

How we verify & grade

Every grade on this site is reconstructible. This page documents exactly what we check, how each score is computed, and what "verified" does and doesn't mean — so you can judge a listing on evidence, not on our word.

01Principles

Three rules govern everything below.

  • Evidence over claims. A service saying it has no KYC is a claim. We record it as such until we confirm it independently. Confirmed and claimed are shown differently, never merged.
  • Reconstructible scores. No opaque letter grades. Every axis score derives from stated criteria and public evidence, and the weights are published here. Given the same inputs, you'd reach the same number.
  • Freshness is a feature. A correct listing that's six months stale is a liability. Every verified attribute carries its own timestamp — when we last confirmed it and how — and each has an expiry suited to how fast it changes: a KYC posture can flip with one terms edit, a legal entity rarely moves. When a critical attribute outlives its window, its green mark demotes to amber on the page and the grade takes a small, capped penalty until we re-verify. Staleness is our failure, not the service's — so it costs points rather than triggering a ceiling.
Why this matters. Most directories publish self-reported data and leave blanks as "not stated". A blank that looks like a fact is worse than no data. We mark unverified fields as unverified, on purpose.

02Verification pipeline

A listing moves from submitted to verified through a fixed sequence. Automated checks run every 24 hours; manual review happens on submission and on any material change.

1
Intake
Service is submitted or added from our watchlist. We record its stated posture: KYC, custody, fees, assets, networks, jurisdiction.
2
Reachability
Automated probes confirm the clearnet and Tor/I2P endpoints respond, and that the quote/order flow actually loads. Sets live status.
3
Claim testing
Where testable, we verify claims against behaviour: does a swap complete without an account, is JavaScript truly optional, are the advertised assets quotable.
4
Reputation sweep
We scan public incident history — exit-scam reports, prolonged outages, frozen-funds complaints — and weight verified user reviews.
5
Grade & timestamp
Axis scores are computed and the weighted grade is assigned. Every confirmed attribute gets its own verification record: the date, the method (document fetched, source inspected, on-chain observation, automated probe) and, where possible, a link to the evidence. The listing goes green.
6
Re-verification
Each attribute ages against its own expiry window. A daily audit surfaces anything past due; machine-checkable attributes (live status) re-confirm automatically from the probes, the rest queue for a fresh human check. Expired attributes show as stale on the page until re-verified.
A service that fails step 2 or 3 doesn't get a bad grade automatically — it stays unverified (amber) until we can confirm it. Down services are flagged red and drop in ranking.

03Criteria collected

Each listing records the following. Fields we've confirmed are marked verified; the rest stay unverified until a future sweep.

Privacy & KYC

  • KYC level — none / email / rare / tiered / full
  • Account required, data collected, logging policy, JavaScript requirement

Custody & security

  • Custodial or non-custodial, swap type (atomic / bridge / order-book / instant)
  • Liquidity model — own book, third-party providers, or mixed — with the providers we've actually observed settling swaps, not the operator's partner list
  • Frozen-funds / AML posture, open-source status
  • Incident history — each entry recorded with its severity, kind (policy / event / allegation) and resolution

Operational

  • Supported assets, trade pairs, min/max limits, fee range, settlement speed
  • Blocked jurisdictions, available networks (clearnet / Tor / I2P)

Reliability signals

  • Per-attribute verification timestamps and methods, live status, observed 30-day uptime, API availability

04Scoring model

Each service gets a set of axis scores from 0 to 100; the overall is their weighted average. The axes are per type: what makes a good exchange isn't what makes a good VPN. Every type shares three common axes (~40%) so any two services stay comparable, plus type-specific axes (~60%) that judge it on its own terms.

Common axes — every service (~40%)

AxisWeightComputed from
Privacy / KYC20%KYC level, account requirement, logging, data collected, JS optionality, Tor/I2P, type privacy signals
Reliability12%30-day uptime, live status, years operating, incident history
Reputation8%Time in operation, exit-scam/hack record, open-source

User reviews are not open yet. The plan is to accept them only when backed by proof of a real transaction — a hash or order ID we confirm before anything publishes — because an unverified review section is the same astroturfing noise this site exists to cut through.

Rather than ship a review form whose "verified" badge we couldn't stand behind, it stays closed until that check is real. Every grade you see today comes from the objective criteria above; the Reputation axis currently scores on time in operation, incident record and open-source status alone.

07Live status

Independent of grade, every service shows a real-time availability state from the last reachability probe.

live — endpoints responding, flow loads degraded — reachable but slow or partial down — unreachable or swaps paused

Down services stay listed — hiding them would erase the warning — but they drop to the bottom and carry a red flag. This is the check most directories skip, and the reason stale, dead services keep appearing on them.

08Limits & conflicts of interest

Honesty about what we can't guarantee is part of the methodology.

  • Verification is point-in-time. "Verified" means our check passed on the stated date — and every attribute shows its own date and method, so you never have to guess which part of a listing is fresh. Attributes past their expiry window are marked stale on the page rather than left looking current.
  • Some claims aren't testable without transacting at scale. Where we can't confirm, we say unverified rather than guess.
  • Nobody pays to be here. There are no affiliate links, no paid placement and no sponsored listings on this site. No service can pay to be listed, delisted, moved up or moved down, and none has been asked to. If that ever changes it will be stated here and in the footer before it goes live, not after.
  • We are not a financial adviser. Grades are information, not advice. Confirm the rules in your own jurisdiction before using any service.