A record is only useful if it can't be faked.
Anyone can write a date on a spreadsheet. What makes a ResidenceSafe record stand up is what happens the moment you take the selfie: three independent layers, each closing a different attack vector. If any layer detects an anomaly, the record is rejected. See how a check-in works.
What real proof needs
The four dimensions, protected
A proof has to answer four things: where, when, who, and whether it holds up. Three independent technical layers lock the first three; eIDAS 2 certification secures the fourth. Together, forgery becomes virtually impossible.
- Who
Biometric verification
Confirms it's really you, not a photo, video, or deepfake. Your face is your password.
- Where
Certified geolocation
GPS cross-checked with Wi-Fi, cellular networks, and anti-spoofing analysis. Not just a pin on a map.
- When
Blockchain certification
Hashed, timestamped, and sealed on a distributed ledger. Irreversible by anyone, including us.
- Proof
eIDAS 2 legal validity
The report is PAdES LTA signed, so a tax authority or court can verify it independently.

- Subject identity
- Biometric liveness — verified
- Location
- 42.5063° N, 1.5218° E · Andorra la Vella
- Timestamp
- 2026-07-03 · 09:41 UTC external clock
- Ledger seal
- 0x7af3…e8b1c904
Layer by layer
How each layer closes its attack vector
Biometric verification
The first question any authority asks is: was it really you? Every check-in requires a live selfie, verified in real time and designed to reject photos, replays, and deepfakes. It confirms a present, living person — not a phone someone else is holding — at eIDAS assurance level HIGH, recognised across the EU.
View technical specifications
- Real-time liveness detection blocking photo, video, and deepfake attacks.
- Apple App Attest & Google Play Integrity: hardware-level certification that the app runs unmodified on a real, unrooted device. A jailbroken phone cannot generate a valid check-in.
- eIDAS assurance level: HIGH — the maximum under European regulation, valid across all EU member states.
- AES-256 encryption at rest, TLS 1.2+ in transit for all biometric data.
- Biometric data stored separately from your personal identity, with no association between the two. ResidenceSafe never has access to your raw biometrics.

Certified geolocation
A GPS coordinate alone is easy to fake, so ResidenceSafe never trusts it in isolation. Every check-in cross-references four independent signals — GPS, Wi-Fi, cell tower, and IP — that all have to agree, and the timestamp comes from external servers no device clock can touch.
View technical specifications
- 6-decimal GPS precision + altitude (3D positioning) for every check-in.
- Multi-vector corroboration: GPS cross-referenced with Wi-Fi (SSID, BSSID), cellular (LTE/5G tower data), and IP geolocation. All four must be consistent.
- External NTP timestamp: time sourced from network time protocol servers independent of your device. Even a rooted phone with a manipulated clock cannot alter it.
- Anti-spoofing: simulated-GPS detection, VPN detection, node distance coherence analysis.
- Device fingerprint: model, OS, IP address, unique record hash.
- Geolocated photo with embedded EXIF metadata, coordinates, and timestamp, linked to your biometric verification.

Blockchain certification
Once identity and location are confirmed, the record is hashed and sealed on the Polygon public blockchain — a ledger no one owns and we can't modify. Anyone with the transaction hash can verify it independently. If we shut down tomorrow, every record stays there, still verifiable.
View technical specifications
- Level 1 — Hash integrity: SHA-256 hash of the complete record. Any modification, however small, produces a different hash and invalidates the record.
- Level 2 — Blockchain immutability: the hash is written to the Polygon public ledger, decentralized across thousands of nodes. Once confirmed, it cannot be altered or deleted by any party, including us.
- Level 3 — Immutability certificate: a downloadable certificate carrying the blockchain transaction reference, presentable to tax authorities, courts, and advisors. Anyone can verify it using the hash.
- Private key known only to you. Never stored on any server or database.
- Records survive our existence. If ResidenceSafe shuts down, every sealed record remains on the ledger and independently verifiable.

We protect your data by not having it.
ResidenceSafe is architected so that no single entity, including us, has access to all your data — not as a policy choice, but as a technical constraint.
Zero tracking. Camera and GPS are active only during check-in: less than 30 seconds. No accelerometer, no background location, no continuous monitoring.
End-to-end encryption. AES-256 at rest, TLS 1.2+ in transit. Your blockchain records are encrypted with a private key only you know. We never store it.
Data separation. Biometric data is stored separately from personal identity, with no association between the two. The system that verifies your face has no way to know who you are.
You get the proof. We get nothing else.
Compliance
Built to meet the highest standards
Regulatory compliance is built into every component from the start, not added afterward.
-
eIDAS 2
Qualified electronic seals with PAdES Baseline LTA (Long Term Archival). Biometric assurance level: HIGH. Reports signed with an eIDAS certificate have legal recognition in any EU member state.
-
GDPR
Biometric data stored without association to personal identity. Private key never stored on servers. Explicit user consent for all data processing. Full data portability.
-
ISO 27001
Information security management aligned with international standards. A systematic approach to managing sensitive data across every component of the platform.
-
GSMA Open Gateway
Integration with major telecom operators for double KYC and geolocation confirmation. SIM cloning detection. Full eIDAS chain of custody through the telecom layer.



Legal validity
Does this actually hold up?
Is this legal? Can I actually use these records with tax authorities?
Yes. ResidenceSafe records are signed with a qualified eIDAS electronic seal, which gives them formal legal standing across all EU member states. They are certified supporting documentation — the same category as bank statements or utility bills, but with a tamper-evident chain of custody those documents lack.
Tax authorities do not prescribe a single accepted format for presence evidence. What they assess is reliability: can the record be independently verified, does it have a credible timestamp, and can it be shown to be unaltered? ResidenceSafe records are built to answer yes to all three.
Will a court accept these records?
Courts assess evidence on authenticity and reliability. A ResidenceSafe record carries a qualified electronic seal under eIDAS 2, a blockchain transaction hash on a public ledger, and a multi-signal geolocation verified at the moment of creation. That combination is significantly harder to challenge than a passport stamp or a self-declared spreadsheet.
No documentation system can guarantee the outcome of legal proceedings. What we can tell you is that every layer of these records is designed to withstand exactly the kind of scrutiny a court applies.
Will my tax advisor or accountant accept them?
Most tax advisors dealing with cross-border clients know the problem well: clients claim residency in one country, can't prove continuous presence, and end up in disputes. ResidenceSafe records give them something they can actually work with: a certified, independently verifiable presence log with a clear chain of custody.
The export includes a PDF summary and a CSV with individual records, each carrying its blockchain reference. Advisors can verify any record independently without going through us.
Does this replace a tax advisor?
No, and it's not trying to. Tax residency involves legal analysis of your specific situation, jurisdiction-specific rules, and professional judgment. ResidenceSafe doesn't do any of that.
What it does is give your advisor the raw material they need to do their job properly: a reliable, certified record of where you actually were. Think of it as the evidence layer. Your advisor handles the interpretation.
What happens if ResidenceSafe shuts down? Are my records still valid?
Yes. Every sealed record is written to the Polygon public blockchain, which runs across thousands of independent nodes worldwide and has no owner. If we disappear tomorrow, every record you've created remains on that ledger and independently verifiable using the transaction hash.
Your exported reports are self-contained: they include the blockchain reference and the eIDAS certificate. Anyone can verify them without going through ResidenceSafe.
Can someone challenge the validity of a record?
Anyone can challenge anything. What matters is whether a challenge holds up. To successfully dispute a ResidenceSafe record, someone would need to simultaneously defeat biometric liveness verification, spoof four independent geolocation signals, alter an external NTP timestamp, and forge a blockchain entry on a public decentralized ledger. Each is a serious technical barrier; together they are effectively insurmountable.
The more realistic scenario is the opposite: a tax authority questions your residency, you produce records that answer every one of their verification criteria, and the challenge ends there.
Does this work outside the EU?
The app works anywhere in the world — you can create a check-in from any country. The eIDAS certification standard has formal legal standing within the EU; outside the EU, records still carry the blockchain hash and full chain of custody, which most tax authorities and legal systems recognize as credible evidence even without an explicit eIDAS framework.
If you're in a specific jurisdiction with unusual requirements, your tax advisor can confirm what documentation standards apply to your situation.
Your proof is only as strong as the system behind it.
Download ResidenceSafe and start building certified records that hold up in audits, disputes, and court.

