1. Create a session
The public-key browser SDK collects fingerprint layers, environment context and short-lived behavior aggregates.
How Trueonic works
Trueonic combines a browser session with trusted server events. The API enriches evidence, connects identity, evaluates risk and gives investigators the complete history behind the result.
Current analysis
Protected flow
Browser
privacy-conscious signal collection
Server
trusted identity and events
API
one explainable decision
Built for the full investigation
The same evidence powers API decisions and investigator views, so policy changes stay connected to the behavior behind them.
The public-key browser SDK collects fingerprint layers, environment context and short-lived behavior aggregates.
The API evaluates device continuity, rarity, network classification, spoof contradictions and velocity.
Your secret-key backend associates the session with an account and writes identity-graph edges.
Rules, lists, graph links, labels and optional ML join the transparent risk sub-scores.
The operating flow
Protect one real workflow end to end and inspect the returned evidence before enforcing blocks.
Track login failures, purchases, referrals or withdrawals from the trusted backend.
Use labels, cases, rule backtests and risk history to improve policy using your own fraud patterns.
Start with one protected workflow
Create a workspace, follow the SDK setup guide, and test with a single account journey before expanding coverage.