Plugin Directory

Token of Trust: AI Identity Verification, Age Verification, and KYC

Token of Trust: AI Identity Verification, Age Verification, and KYC



Your customers will check out faster with Token of Trust.

Seamlessly integrate within the WooCommerce checkout process or WordPress account registration. Token of Trust is used for:


  • Database Check First – Verify age without collecting images (US only).
  • ID Document Verification when needed – over 5000 ID types from 240+ countries.
  • Selfie-match optional.
  • See Verification Results in your WooCommerce Order Summary.
  • Returning Customers skip repeat verifications for 90 days.
  • Trigger verification by product, location, or shipping methods.
  • Support for multilingual and internationalization.


  1. You set the rules (ie. Age is 21+, person is from XYZ country, billing and shipping address match, etc)
  2. Token of Trust modal captures data and/or images within our secure platform
  3. Users will be automatically verified or (optionally) manually approved by an administrator. Those who are rejected can be reviewed. Those rejected are given an explanation for their rejection and an opportunity to correct the problem.
  4. A verification summary for each user can be accessed from the WordPress/WooCommerce admin dashboard or from Token of Trust’s web portal dashboard.


Token of Trust uses the latest security and encryption techniques to keep your business compliant and your consumer’s data private. Token of Trust is compliant with the following privacy regulations:

  • GDPR (UK & EU)
  • CCPA
  • LGPD


If you have questions about setting up Token of Trust, contact us on our Get Help form.

This plugin requires an active Token of Trust account. To create an account, download the Token of Trust WordPress plugin and click the “Get Started Now” button within the plugin in WordPress/WooCommerce.


The Token of Trust plugin for WordPress works best alongside member management plugins that establish user profiles and account settings pages within WordPress. The most commonly used member management plugins by our customers are:

  • BuddyPress
  • Ultimate Member


See Token of Trust’s WordPress Integration options and scenarios for details on all the ways you can use Token of Trust with WordPress.


Token of Trust has been translated into the following languages:

  • English (US)
  • Spanish
  • French
  • Other languages available upon request


We’re on a mission to help people make safe and smart decisions online. If you have an idea for how we can improve our plugin or platform, Send us a Message.


  • The ‘account connector’ is an embeddable component that invokes the Token of Trust verification workflow. The ‘reputation summary’ is an embeddable component that represents the current state of verification for a given user.
  • Token of Trust: AI Identity Verification, Age Verification, and KYC for WordPress works with WordPress core and also has deeper integrations with select WordPress Member Management Plugins.
  • The Token of Trust settings page is where website admins can enter their License Key and check the integration status with the Token of Trust Platform.


From your WordPress dashboard

  1. Visit Plugins > Add New
  2. Search for Token of Trust
  3. Activate the Token of Trust plugin from your Plugins page.
  4. Navigate to the new Token of Trust settings page in the WordPress admin menu
  5. Complete the fields for production domain and your API keys.

From WordPress.org or GitHub

  1. Upload the Token of Trust plugin folder to:
  2. Activate the Token of Trust plugin from your Plugins page.
  3. Navigate to the new Token of Trust settings page in the WordPress admin menu
  4. Complete the fields for production domain and your API keys.

Once complete, the WordPress dashboard will contain an Account Connector widget. Any BuddyPress or Ultimate Member profiles will contain a Verifications tab and new shortcodes will be available.

For additional help and documentation for integrating Token of Trust components on WordPress sites, please visit the WordPress Plugin Docs on our website.

Widget Shortcodes

You can use the shortcodes below to render tot widgets where you want them. Short codes will default to the currently logged-in user.

Account Connector

Allows the logged in user to connect their account to token of trust. After connecting this shows their reputation (much like the Reputation Summary below) and allows navigation to Token of Trust to improve their reputation and configure their user.

Please Note: For security reasons this widget should only be shown on password protected pages for the intended user!

[tot-wp-embed tot-widget="accountConnector"][/tot-wp-embed]

To show the account connector using to the person API.

[tot-wp-embed tot-widget="accountConnector" verification-model="person"][/tot-wp-embed]

Reputation Summary

Displays a summary view of the user’s reputation.

[tot-wp-embed tot-widget="reputationSummary"][/tot-wp-embed]

Profile Photo

Displays a given user’s selected token of trust photo.

[tot-wp-embed tot-widget="profilePhoto"][/tot-wp-embed]

Verified Indicator

Displays a small indication of how far the user has gone through token of trust verification process.

[tot-wp-embed tot-widget="verifiedIndicator"][/tot-wp-embed]

To show this indication when members are not verified, use with this additional attribute.

[tot-wp-embed tot-widget="verifiedIndicator" tot-show-when-not-verified="true"][/tot-wp-embed]

Additional Settings

You can override any short code user by passing additional attributes as follows:

[tot-wp-embed wp-userid="EXAMPLE" tot-widget="reputationSummary"][/tot-wp-embed]

Render in templates/PHP

The easiest way to render widgets from templates is to use shortcodes just like in the WordPress admin interface


echo do_shortcode('[tot-wp-embed tot-widget="reputationSummary"][/tot-wp-embed]');


Is Token of Trust compliant with the EU’s General Data Protection Regulation (GDPR)?

Yes, Token of Trust maintains compliance with GDPR as a “Data Processor”. You may request Token of Trust’s Data Processing Addendum (DPA) by emailing support@tokenoftrust.com.

Do I have to create a Token of Trust account before using this plugin?

Yes. This plugin connects your Token of Trust account to your WordPress site using a license key and requires that you create a Token of Trust account to get started. A credit card is not required to try it out. All Token of Trust accounts start in test-mode, allowing free testing without affecting your live data. You can switch from test-mode to live-mode whenever you’re ready for launch.

Does Token of Trust support age verification?

Yes. Token of Trust is capable of confirming a person’s identity, determining their age, and checking if they meet a specific age criteria (e.g. 21+). Token of Trust can support websites with minimum age requirements. This may apply to e-commerce merchants selling age-restricted products, such as alcohol, tobacco, vape and firearms.

Does Token of Trust verify government-issued photo IDs like a Passport?

Yes. Official government IDs like a Passport or National ID Card can be captured and analyzed within Token of Trust’s verification workflow.

Can I choose where verification displays for an advanced or custom application?

Yes. We do support advanced shortcodes, javascript embeds and manual PHP rendering tools. See our website for more details on Token of Trust’s WordPress Integration options and scenarios.

What integrations do you support for building communities, marketplaces and other types of member management?

  • BuddyPress
  • Ultimate Member

What factors contribute to a member’s identity verification?

Token of Trust verification looks at a variety of attributes across multiple social networks and real world IDs like driver’s licenses. Some attributes include:

  • Account age
  • Activity location, geo tags and meta other metadata
  • Age verification
  • Name verification
  • Social fraud network scans
  • Government fraud lists
  • ID property consistency and security features
  • Electronic ID Verification (eIDV)

Can I run Token of Trust from localhost?

Yes we currently support running from any of the following localhost ports with our test keys: 80, 443, 3000, 3001, 3443, 7888, 8000, 8080, 8888, 32080, 32443, or 33080.

The Token of Trust plugin automatically detects when you’re running on localhost so no configuration change is required – your Live Site always remains your production site.


21 آگسٽ 2023
We’ve used Token of Trust for a couple of years now and love both the service and ease of use. If you use Age Verification then give them a shot!
2 ڊسمبر 2021
We installed the plugin, we had questions and went to their website, then they asked for information before answering, where they refused to offer any information before taking more details about our platforms, claiming that is a trust-building issue argument which we do not buy. That was enough for us to uninstall and move to the next plugin. This is our experience, so good luck with others to share more information with you.
3 جُون 2021
This was the perfect solution for age restricted e-commerce. Super quick age and ID verification. The support and implementation team are great to work with as well!
14 مَي 2020 1 reply
I installed it and clicked on the General Settings link, then clicked on the Start Configuring button, and all I get is a “Sorry, you are not allowed to access this page.”
13 نومبر 2018
After a lot of research, I found that when themes and plugins build a “verified user” feature, the solution is never quite right — Token of Trust is the exception. After trying Ultimate Member’s Verified User Extension and RentalsClub for the WP Rentals theme, I realized how cumbersome verification processes could be for both admins and users of a site. While all the options I explored had a nice visual interface for communicating the verified status of my users, they didn’t handle the verification process for evaluating new user accounts in a smooth, automated, and safe way. Some of the approaches I found even enabled users to upload their identification documents to WordPress, but I never felt comfortable storing sensitive personal data on our WordPress site — it introduced more liability than I wanted to deal with. And even if we had access to those identity documents, I thought “how will I ever have the time to accurately review the authenticity of every document?” I realized that this wasn’t an easy problem to solve and that it was going to require a lot of custom development to build the right solution. Fortunately, I learned about Token of Trust’s platform for handling all of the concerns I had been running into. Their platform does both the deep automated analysis of user identities while also offering visual interface for communicating the verification status of every user. Best of all, they have a WP Plugin that saved our developers months of integration effort. We’ve been using the Token of Trust platform and their plugin for over a year on our vacation rental booking website and I’ve been impressed with the constant flow of improvements. I thought it was great to begin with and it just keeps getting better!
14 مَي 2018
The team at Token of Trust taught us a lot about best practices for KYC/AML and privacy concerns for global consumers. Before working with Token of Trust, I hadn’t given much thought to the liability and risks we would have faced if we had tried to build this ourselves, or even use another plugin that does everything just within WordPress. These guys are hardcore about protecting end user privacy and make sure that their customers don’t have to worry about taking on unnecessary risks. I would use Token of Trust again and again for any site or application needing identity verification, fraud prevention, or KYC/AML.
جمع: سڀ 11 تبصرا پڙهو

تعاون ڪندڙ & ڊولپرز

“Token of Trust: AI Identity Verification, Age Verification, and KYC” اوپن سورس سافٽ ويئر آهي. ھيٺين ماڻھن ھن پلگ ان ۾ حصو ورتو آھي.

تعاون ڪندڙ

لاگ تبدیل ڪريو


  • Changes to make the plugin compatible with WooCommerce High-Performance Order Storage (HPOS).


  • Minor change to fix a button event listener related to analytic events.


  • Improved the Connect screen to ensure styling is consistent with TOT standards.


  • Fix a bug where WordPress wasn’t pulling product details from TOT backend.


  • ProductSync on WordPress now supports product variations.


  • Changed a hook to ensure that we only auto-update minor releases of the major release you’re currently on.


  • TOT now supports server side confirmation of cleared status ensuring that verification requirement cannot be bypassed by the client side prior to payment.


  • Increased “Tested up to”.


  • Update to the build process to allow change to display images.


  • Fixes for labels and validation for ProductSync.


  • use appUserId if there’s no transactionId with orders


  • Removing the first-time activation notice


  • Remove the ‘TOT Not Activated’ on admin panel since it is not 100% true.


  • Build related fix.


  • refresh api keys by webhook


  • attach process_order function to more woocommerce hooks


  • increase the priority of process_order function in TOT


  • use options for debug_mode instead of transients


  • handling transient with caching plugins


  • Fixes to turn off some overly verbose logging.


  • Downgrade php dependencies related to error capture. Changed a php timeout.


  • Updates to Verification Required screen


  • Fixed a build problem.


  • Fixed some issues on the QuickStart page.


  • We now have links to ‘learn more’ and ‘get started’ links in wordpress quickstart.
  • Removed link that directed customers to HQ without a use case.


  • Improved error handling.


  • Improved error handling.


  • Ensure that tot-log isn’t indicated for cache.


  • Fixed a defect in the UX related to setup of verification gates in QuickStart.


  • Updates to fix installation / activation problem.


  • Updates to QuickStart.


  • Fix for when there’s more than one transactionLine with the same product.


  • Now detecting the document type so we need to ask for it less likely.


  • Non-functional fixes.


  • HQ setting page supports activation / deactivation of back of ID.


  • Disable sentry logging for now.


  • Minor non-functional fixes.


  • UX Improvements, simplifying the verification and improving conversion rates.
  • Made back of Drivers License, Selfie compare optional.
  • Bug fixes.


  • Fix a crash condition for tax collection when a user is logged in and has no roles assigned.


  • Simplified the verification process.
  • Updated copy on our initial screens that indicate to the consumer why they are going thru verification.
  • We have made no selfie, no back of dl and no name match the default configuration when customers sign up via self serve.
  • Added the option to do remote logging support for premium support customers.
  • Fixed a UX bug surround improperly tagging products


  • Minor bug fixes.


  • Fixed a build related issue that was causing the plugin to not be recognized by the ‘Add Plugin’ screen.


  • Build fix. Non-functional.


  • Fix internal build. Non-functional change.


  • Refactor of authentication for verifications so everything goes thru the steps. Removed re-use of verifications when there is no user record because it caused issues for user later. Improved logging around authentication.
  • Fixed defect where product selection in woo-commerce was not skipping consultative questions and providing the correct pricing plans.


  • Non-critical bug fixes.


  • Fixed build issues (non-functional).


  • Minor copy edits.


  • Minor fixes to quickstart.


  • Added a Quickstart menu so that it’s more clear what to do after you get started.


  • Minor fix to readme.


  • We introduced a feature that empowers consumers to resubmit their documents multiple times, guided by the feedback they receive on their document capture.


  • Fixed links out to Token of Trust.


  • Fixed an issue related to dynamic selection of api server.


  • Minor: Fixed some release notes problems.


  • New and improved demo that shows what Token of Trust can recognize from an ID. Available on Token of Trust’s HQ page after WordPress registration and connection.


  • Add a link to direct the user to tokenoftrust.com from the FAQ page.


  • Temporarily reset release to version 1.6.32.


  • Product Sync: is configurable and off by default.


  • Product Sync: Requires that when new products are created we collect attributes related to excise taxes and synchronizes those with Token of Trust to ensure we can collect excise taxes in real time.
  • Product Sync: Support for Import and Export
  • Add an FAQ page natively in WordPress so that vendors don’t need to direct users to Token of Trust to get answers to common questions.


Updates for opt-in for charity:
– Allow configuration of the checkbox to default to opt-in OR not opt-in.
– Added reporting on what was collected for charity.
– Added export csv report on what was collected for charity.
– Fixed some styling issues.


  • Fix a critical error when an invalid live site domain is entered.
  • Fix an issue where we were incorrectly labelling some transactions Not Activated.


  • Tested up to WordPress 6.2.
  • Beta release of ‘Round up for Charity’.
  • Ensure the appUserid is passed along when user is signed in.
  • Fix to ensure that if test servers are down – production api keys can still be fetched.


Tax collection fixes:

  • Fixed to ensure wholesale transactions are always tagged as such.
  • Fix to ensure traceIds don’t change through the transaction.


Tax collection fixes:

  • Fixed an issue where disabling verifications also disabled checkout tax collection.
  • Added tax collection amounts to orders in a separate field.
  • Fixed an issue where post-order ‘audit’ always failed California since it was looking for the wrong label.
  • Fixed an issue where _tot_ordertype was not set to wholesale when a wholesaler was signed in.


  • Reverted to 1.6.25 – we’re seeing an issue where excise tax collection is turned off for some customers


  • Added advanced setting for those using excise tax feature.


  • Use the labels returned from the Core Product so that we can conform to CECET and other tax labelling requirements.
  • Send the transactional sales price to the backend for tax calculations.
  • Fix to wholesaler, retailer role matching.


  • Fixed source_url included in links out to tokenoftrust.com that broke auto-connection.
  • Fixed links out to sandbox that caused bad license registrations.
  • Fixed a caching issue at checkout.


  • Added a number of advanced options to support wholesale vs retail for excise tax calculations.
  • Added ability to order on behalf of a customer on the admin page and include excise taxes.


  • Display warning to admin if attempt is made to use the API key on an invalid domain.
  • Revamp to passing transactionId and traceId along with Woo Commerce transactions to facilitate better logic to troubleshoot orders.
  • Fix to a problem where the tot-status was incorrectly attributed to the latest post – which was often but not always correct.


  • Fixes anchor to get started.


  • Ensure traceId is stable from cart through fulfillment.
  • Fix an issue where ‘Connecting’ from TOT didn’t appear to work in some cases and didn’t provide adequate feedback.


  • Reverted to 1.6.17 from 1.6.18 which will come again in 1.6.20


  • Made getting started more clear for new installs: how to proceed (Get Started) by hiding unnecessary detail and providing admin level visibility when TOT is not setup.
  • Fixed an issue where TOT api was called in a loop – we now cache on the client side.
  • Bust cache on plugin browser side includes.


  • Support for improved onboarding experience from Token of Trust – HQ screen.
  • Improved uniqueness of trace-id on shopping carts.


  • Moved more logging toward new debug logging mechanism and increased timeout to 45 minutes.
  • Added an advanced option to allow optional debounce of the payment button in case people are mashing it multiple times and the payment plugin isn’t properly handling it. WARNING: this option may cause problems with payment providers that depend up simulated button clicks.


  • Tested through 6.0.0 and fixed a couple minor warnings.


  • Fix an issue where givenName and familyName were not getting set correctly and could come to TOT as ‘0’ or ‘1’.


  • Fix an issue where order of products in cart could cause verification to not trigger on mixed goods cart.


  • Fixes post-checkout verification.


  • Minor fix – make traceId unique to allow better issue tracking.


  • Adds support to specify pages to include or exclude from verification by multi-select.
  • Also added support to exempt accounts from verification based upon roles – allowing admins, etc to get to protected pages without verification.


  • Links to TOT include conversion_source=WordPress to give better context to WordPress and WooCommerce users when signing up.
  • Ability to exempt orders based upon roles (admin, etc) – allowing trusted agents to place orders without verification.


  • Updated the stable tag related to the plugin release.


  • The Token of Trust plugin will now keep your users’ verifications even if they switch email addresses in your system.


  • Excise Taxes will not calculate on bundles of other items, but rather the items themselves in the bundle.


  • Better excise error handling


  • Improved API Connection testing to provide better feedback in the Admin dashboard.


  • Better reporting on ToT’s performance within WooCommmerce.


  • Added the ability for Token of Trust users to add excise taxes to the shopping card process. Contact our success team for more info.