Legal Repository Explore docs
Ackaia CorporationCore Documentsv1.00.002026-09-22

Oneway™ Attestation, Verification and Attribute Issuance Policy#

Ackaia Corporation v1.00.00 September 22, 2026 1233 York Avenue, Apt. 301 New York, NY 10065 United States of America www.ackaia.com

Effective Date: September 22, 2026

Entity: Ackaia Corporation, 1233 York Avenue, Apt. 301, New York, NY 10065, United States

(“Ackaia”, “Ackaia Corp.”, “we”, “our”, “us”)

Applies To: Oneway™ Attestations, attribute verification performed through Ackaia ID, Oneway™ Attestation Documents, the public Oneway™ verification service, and related issuance, validation, expiration, revocation, audit, security, and support processes.

Document Owner: Ackaia Corp. Legal / Privacy / Security

Primary Legal Contact: legal@ackaia.com

Primary Privacy Contact: privacy@ackaia.com

---

Revision History#

VersionChangesDate
1.00.00Initial publication. Establishes the Oneway™ trust framework for attribute verification, attestation issuance, Attestation Documents, public verification, expiration, revocation, privacy, relying-party responsibilities, and Ackaia's role as issuer and attestation authority.09/22/2026

---

1. Purpose#

This Oneway™ Attestation, Verification and Attribute Issuance Policy (“Policy”) establishes the rules under which Ackaia verifies factual attributes associated with an Ackaia ID, records an attestation decision, issues a Oneway™ Attestation, and enables a user or independent relying party to verify the authenticity and current status of an Attestation Document.

Oneway™ Attestations are intended to let a person prove a limited fact without unnecessarily disclosing the underlying evidence used to verify that fact. For example, a user may be able to prove that Ackaia verified that the user is over a specified age threshold without disclosing a copy of the identity document that was reviewed.

This Policy also defines the scope of Ackaia's authority. Ackaia acts as the issuer and attestation authority for Oneway™ Attestations issued by Ackaia. That authority means Ackaia is responsible for defining the applicable verification procedure, determining whether the evidence satisfies that procedure, issuing and signing the resulting attestation, and maintaining the official status information used to determine whether the attestation remains valid. It does not make Ackaia a government authority, public root certificate authority, notary, licensed identity provider, or regulated trust-service provider unless Ackaia expressly states otherwise for a specific service and jurisdiction.

2. Scope#

This Policy applies to:

  • verification requests used to establish an attribute for Oneway™;
  • evidence and sources reviewed for an attribute decision;
  • Oneway™ attribute records associated with an Ackaia ID;
  • issuance, signing, expiration, suspension where supported, and revocation of Oneway™ Attestations;
  • user-generated exports or official Oneway™ Attestation Documents, including PDF presentations;
  • public authenticity and status verification through https://ackaia.com/oneway/verify and successor verification endpoints designated by Ackaia;
  • audit, security, fraud-prevention, dispute, and correction processes related to Oneway™ Attestations; and
  • use of Oneway™ Attestations by users and independent relying parties.

This Policy does not govern Oneway™ passwordless sign-in except where the sign-in credential, account security, or Oneway™ infrastructure is relevant to the integrity of an attestation. Oneway™ passwordless sign-in is a separate certificate-based authentication feature of Ackaia ID.

3. Relationship to Other Ackaia Policies#

This Policy supplements the Ackaia Corporation General Terms of Service, General Privacy Policy, Information Security Policy, and other applicable Ackaia policies.

The General Privacy Policy governs Ackaia's processing of personal information, including identity and credential verification information. This Policy provides additional rules specific to Oneway™ attribute verification, attestation issuance, and public verification.

If this Policy conflicts with a more specific written agreement governing a particular institutional verification program, that agreement controls for that program to the extent of the conflict. Mandatory law always controls where it cannot lawfully be varied by contract or policy.

4. Definitions#

For purposes of this Policy:

“Attribute” means a limited factual proposition or status about a person that Ackaia has chosen to support within Oneway™, such as whether the person is over a specified age threshold, has a verified student status, or has a verified press status.

“Attribute Evidence” means the document, credential, record, confirmation, account information, authoritative response, or other information used to evaluate an Attribute.

“Attestation” or “Oneway™ Attestation” means Ackaia's signed assertion that, according to the verification method, evidence, scope, and date identified in the attestation record, Ackaia verified the stated Attribute for the identified Ackaia ID subject.

“Attestation Document” means an official presentation generated through Ackaia ID, which may be provided as a PDF and may contain the subject's name, email address, verified Attributes, relevant dates, verification-source description, validity information, document identifier, integrity information, and a link or QR code to the public verification service.

“Attestation Record” means the canonical Ackaia-controlled record from which a Oneway™ Attestation and its verification status are derived.

“Attestation Authority” means Ackaia in its role as the entity that establishes Oneway™ verification rules and issues, signs, expires, and revokes Oneway™ Attestations. This term describes Ackaia's role inside the Oneway™ trust framework and does not by itself imply governmental, statutory, accreditation, public-key infrastructure, or regulated trust-service status.

“Issuer” means Ackaia Corporation when issuing a Oneway™ Attestation.

“Relying Party” or “Verifier” means a person or organization that receives an Attestation Document or verification result and decides whether and how to rely on it.

“Subject” means the Ackaia ID account holder to whom an Attribute and Oneway™ Attestation relate.

“Verification Source” means the category or origin of evidence used to support an Attribute, which may include a user-submitted document, an organizational credential, a prior Ackaia verification request, an authoritative source, or another source identified by Ackaia.

“Verification Service” means the official Ackaia-operated public service used to confirm the authenticity and current status of an Attestation Document or Oneway™ Attestation.

5. Oneway™ Trust Model#

Oneway™ uses an issuer-based trust model.

A relying party does not need to possess the evidence originally reviewed by Ackaia. Instead, the relying party may evaluate whether to trust Ackaia as issuer and may use the Verification Service to confirm that:

  • the attestation was issued by Ackaia;
  • the presented attestation or document corresponds to an authentic Ackaia record;
  • the attested Attribute has not been altered in the presented verification context;
  • the attestation is within its stated validity period; and
  • the attestation has not been revoked or otherwise marked invalid by Ackaia.

The trust decision remains with the relying party. A valid Oneway™ verification result confirms what Ackaia attested and the current status of that attestation. It does not require a third party to accept the attestation for a particular legal, regulatory, contractual, financial, employment, access-control, or eligibility purpose.

6. Ackaia's Role as Issuer and Attestation Authority#

For Oneway™ Attestations that it issues, Ackaia is the authoritative source for:

  • whether the attestation was issued by Ackaia;
  • the Attribute or Attributes Ackaia attested;
  • the verification date and, where applicable, issuance and expiration dates;
  • the verification-source category recorded by Ackaia;
  • whether the attestation remains active, has expired, has been revoked, or is otherwise invalid; and
  • the integrity and authenticity status returned by the Verification Service.

Ackaia's authority is limited to its own verification and issuance act. Ackaia does not become the original issuer of a passport, driver license, student credential, press credential, government record, employer credential, or other third-party evidence merely because Ackaia reviewed that evidence.

Where an attestation states that an Attribute was verified from a particular type of source, the statement means Ackaia used that source category as part of its verification process. It does not transfer the source issuer's authority to Ackaia.

7. Supported Attributes#

Ackaia determines which Attributes may be verified and attested through Oneway™.

Supported Attributes may include, without limitation:

  • age-threshold status, such as over_18;
  • student status, such as student;
  • press or journalist status, such as press; and
  • other factual or eligibility Attributes introduced by Ackaia through documented verification procedures.

An Attribute should be interpreted narrowly according to its displayed description. For example, an over_18 attestation means that Ackaia verified that the Subject satisfied the stated age threshold under the applicable verification process. It is not a general certification of identity, legal capacity, citizenship, residency, criminal history, or any fact not expressly included in the attestation.

8. Verification Requests and Sources#

An Attribute may be established through an Ackaia ID verification request or another Ackaia-approved verification workflow.

Depending on the Attribute, Ackaia may review:

  • a government-issued identity document;
  • a passport or driver license;
  • a student credential or proof of enrollment;
  • a press credential or evidence of journalistic affiliation;
  • an organizational or professional credential;
  • an authoritative or official record or response;
  • account information previously verified by Ackaia; or
  • another source reasonably appropriate to the Attribute and identified in the verification request.

The fact that a source is accepted for one Attribute does not mean it is sufficient for another Attribute.

9. Evidence Evaluation#

Ackaia evaluates evidence according to the Attribute being requested, the source presented, the apparent integrity and relevance of the evidence, the applicable verification procedure, and security or fraud-prevention controls.

Ackaia may reject, defer, request replacement evidence, require additional verification, or decline to issue an Attestation where:

  • the evidence is incomplete, unreadable, expired, altered, inconsistent, or outside the accepted scope;
  • the evidence does not establish the requested Attribute;
  • the source cannot reasonably be authenticated or evaluated;
  • account-security or fraud signals materially affect confidence in the request;
  • the user does not complete required account or MFA checks;
  • the verification request has expired or been cancelled; or
  • issuance would violate law, Ackaia policy, or the rights of another person.

10. Human Review and Automated Processing#

Where document review is required, Ackaia's current Ackaia ID verification process uses authorized human review for submitted documents. Ackaia may use automated systems for security, integrity, routing, eligibility checks, rate limiting, fraud prevention, or validation that does not by itself replace a required human decision.

Unless Ackaia provides a separate notice, Oneway™ does not use facial recognition or automated biometric matching to establish an Attribute.

Ackaia may change verification methods as technology, law, risk, or product design evolves. Material changes that affect the meaning or reliability of an Attribute will be reflected in applicable documentation or policy.

11. Attribute Decision and Persistence#

When Ackaia determines that the applicable verification requirements are satisfied, it may create or update an Attribute record associated with the Subject's Ackaia ID.

An Attribute record may include:

  • the Attribute identifier and human-readable description;
  • status;
  • verification date;
  • issuance date where applicable;
  • expiration date or a designation that the Attribute remains valid until revoked or re-evaluated;
  • the verification-source category;
  • the verification method or internal policy version;
  • references necessary to audit the decision; and
  • revocation, replacement, or supersession information.

The verified Attribute is logically separate from an Oneway™ client certificate used for passwordless sign-in. Expiration, replacement, or revocation of a passwordless sign-in certificate does not by itself erase an otherwise valid Attribute record.

12. Attribute Validity Periods#

Ackaia may issue an Attribute as:

  • time-limited, with a defined expiration date;
  • valid until a known underlying credential expires;
  • valid until a specified re-verification date; or
  • persistent until revoked, superseded, or otherwise re-evaluated, where appropriate for the Attribute.

The applicable period is determined by Ackaia based on the nature of the Attribute, the underlying evidence, risk, program requirements, and applicable law.

A relying party must evaluate the current status rather than assume that a previously exported Attestation Document remains valid indefinitely.

13. Issuance of a Oneway™ Attestation#

A Oneway™ Attestation may be issued only after the required Attribute verification has been completed and the Attribute is eligible for attestation.

The issued attestation is bound to an Ackaia-controlled subject identifier and to the Attribute data represented in the canonical attestation record. User-facing presentations may display identity information such as name and email address where appropriate to enable the relying party to associate the attestation with the person presenting it.

Ackaia signs the canonical attestation data or associated verification payload using cryptographic signing material controlled by Ackaia. The signature is intended to provide evidence of issuer authenticity and data integrity within the Oneway™ trust framework.

14. Attestation Documents#

A Subject may be able to export an official Attestation Document from Ackaia ID.

An Attestation Document may contain:

  • the name associated with the relevant Ackaia ID;
  • the email address associated with the relevant Ackaia ID;
  • one or more verified Attributes;
  • verification, issuance, and expiration dates as applicable;
  • a general description of the Verification Source;
  • Ackaia's identity as issuer;
  • a unique document or verification reference;
  • a cryptographic digest, signature reference, or other integrity information;
  • a QR code or link to the Verification Service; and
  • notices necessary to explain the document's scope and limits.

The Attestation Document is a presentation of the underlying Oneway™ Attestation. The canonical status maintained by Ackaia and returned by the Verification Service controls if a static document conflicts with a later expiration, revocation, correction, or supersession event.

A digital signature associated with an Attestation Document proves Ackaia's issuance and integrity of the signed attestation data. It does not, by itself, convert the PDF into a government-issued identity document, notarized instrument, qualified electronic signature, or universally recognized legal credential.

15. Public Verification Service#

Ackaia operates a public verification service at https://ackaia.com/oneway/verify or a successor URL designated by Ackaia.

A verifier may use the document's verification reference, link, QR code, or other supported method to retrieve the current authenticity and status result.

The Verification Service may display only information reasonably necessary to verify the attestation, such as:

  • whether the attestation is authentic;
  • Ackaia as issuer;
  • the attested Attribute or Attributes;
  • verification or issuance date;
  • expiration date where applicable;
  • current status, including active, expired, revoked, superseded, or invalid;
  • Verification Source category where included in the attestation; and
  • integrity information needed to compare the presented document with the Ackaia record.

The Verification Service is not intended to expose the underlying identity document or other sensitive evidence used during verification.

16. Meaning of a Successful Verification#

A successful Oneway™ verification means that, at the time of the verification response:

  • Ackaia recognizes the attestation or verification reference as one it issued;
  • the verified presentation corresponds to the Ackaia-controlled attestation record or signed payload;
  • the attestation has not expired according to its recorded validity period; and
  • Ackaia has not revoked or otherwise marked the attestation invalid.

A successful result does not mean that:

  • Ackaia guarantees the Subject's present circumstances have not changed after verification;
  • the underlying evidence can never have been fraudulent or incorrectly issued despite reasonable verification;
  • the Attestation is legally sufficient for every purpose;
  • the verifier has satisfied its own legal or regulatory obligations; or
  • Ackaia endorses the Subject, the relying party, or the transaction in which the Attestation is used.

17. Expiration#

An Attestation expires when its stated validity period ends.

After expiration, the Verification Service may continue to confirm that the attestation was historically issued by Ackaia while clearly identifying it as expired. An expired Attestation must not be represented as currently valid.

Expiration may reflect the passage of time, expiration of underlying evidence, program rules, security policy, or a requirement for periodic re-verification.

18. Revocation, Supersession, and Invalidation#

Ackaia may revoke, supersede, suspend where supported, or otherwise invalidate a Oneway™ Attestation before its scheduled expiration where reasonably necessary.

Reasons may include:

  • evidence that the Attestation was issued based on false, altered, stolen, or materially inaccurate information;
  • discovery of a material verification error;
  • a correction to the Subject's identity or Attribute;
  • loss or termination of the status represented by an Attribute where continuing validity depends on that status;
  • account compromise, impersonation, fraud, or abuse affecting the Attestation;
  • compromise or suspected compromise of Ackaia signing infrastructure relevant to the Attestation;
  • legal obligation or valid legal process;
  • violation of applicable Ackaia terms or policies directly affecting the integrity or lawful use of the Attestation; or
  • replacement by a corrected or re-issued Attestation.

Revocation is effective according to Ackaia's current status record. A static PDF cannot override a revocation recorded by the Verification Service.

19. Correction and Re-Verification#

A Subject who believes an Attribute or Attestation is inaccurate may request review through Ackaia Support or another process made available in Ackaia ID.

Ackaia may require re-verification before correcting or re-issuing an Attribute. Where a correction materially changes an attested fact, Ackaia may revoke or supersede the prior Attestation and issue a new one.

Ackaia may also require periodic re-verification for Attributes whose reliability diminishes over time.

20. User Control and Disclosure#

Oneway™ Attestations are designed so that the Subject decides when to export or present an Attestation Document to a third party, except where disclosure is otherwise required by law or expressly authorized by the Subject.

Users should disclose only the Attestation Document necessary for the intended purpose and should avoid sending the underlying verification evidence unless independently required and appropriate.

Once a user provides an Attestation Document to a third party, that third party's processing of the copy is outside Ackaia's direct control and may be governed by the third party's own privacy notice and legal obligations.

21. Subject Responsibilities#

A Subject using Oneway™ Attestations must:

  • provide truthful and lawfully obtained evidence;
  • not alter, forge, falsify, or misrepresent an Attestation Document or verification result;
  • not present an expired, revoked, superseded, or invalid Attestation as current;
  • not use another person's Attestation without authorization;
  • protect the Ackaia ID and credentials used to access Attestation features;
  • promptly report suspected compromise, false issuance, or material inaccuracy; and
  • comply with applicable law and Ackaia policies.

22. Relying-Party Responsibilities#

A relying party should:

  • use the official Verification Service rather than relying only on the visual appearance of a PDF;
  • confirm that the verified Attribute is relevant to the decision being made;
  • confirm that the Attestation is active and unexpired at the time of reliance;
  • evaluate whether additional evidence is required by law, regulation, contract, or its own risk policy;
  • process personal information contained in the Attestation lawfully and proportionately;
  • avoid retaining the Attestation longer than necessary; and
  • avoid representing that Ackaia made a decision that belongs to the relying party.

Ackaia does not make the relying party's eligibility, onboarding, access, employment, credit, insurance, regulatory, or other independent decision merely by issuing an Attestation.

23. No Mandatory Acceptance or Government Status#

A Oneway™ Attestation is an Ackaia-issued private attestation.

Unless Ackaia expressly states otherwise in a separate legally binding notice, a Oneway™ Attestation is not:

  • a passport, driver license, national identity card, residence document, or other government-issued identification;
  • a notarization;
  • a government certification;
  • a qualified electronic signature or qualified electronic seal;
  • a qualified trust service under eIDAS or an equivalent regulated designation;
  • a certificate issued by a public root certificate authority for general Internet trust;
  • a professional license; or
  • a guarantee that any court, regulator, business, platform, or organization must accept the Attestation.

Nothing prevents a relying party from accepting a Oneway™ Attestation where it considers the Attestation appropriate and lawful for its purpose.

24. Relationship to Oneway™ Passwordless Certificates#

Oneway™ passwordless sign-in uses client TLS certificates and mutual TLS to authenticate eligible users to Ackaia ID. Those client certificates are authentication credentials and are separate from Oneway™ Attestations.

A passwordless Oneway™ certificate represents an Ackaia ID for authentication. A Oneway™ Attestation represents a verified Attribute under this Policy.

Ackaia does not retain the private key of a user's Oneway™ passwordless client certificate for later recovery. Passwordless certificate expiration or revocation affects authentication with that credential but does not automatically revoke every Attribute or Attestation associated with the Ackaia ID.

25. Cryptographic Integrity and Signing#

Ackaia uses cryptographic signing to protect the authenticity and integrity of Oneway™ Attestation data.

Signing keys used for Attestations are controlled by Ackaia and are logically separated from user-held Oneway™ passwordless private keys. Ackaia may rotate, replace, retire, or revoke signing material according to security policy.

Ackaia may publish or expose verification information needed to validate an Attestation without exposing private signing keys.

The cryptographic signature establishes that the signed data was issued under Ackaia's Oneway™ Attestation system and has not been altered without detection. It does not independently prove that every real-world fact remains unchanged after the verification date.

26. Security Controls#

Ackaia applies risk-based technical, administrative, and organizational safeguards to Oneway™ Attestations and their supporting verification processes.

Controls may include:

  • authenticated access to issuance and account features;
  • MFA or step-up authentication for sensitive actions where applicable;
  • role-based and least-privilege access for authorized reviewers;
  • encryption in transit and at rest;
  • controlled handling of verification documents;
  • cryptographic signing and integrity validation;
  • issuance, review, access, verification, expiration, and revocation audit events;
  • rate limiting and abuse prevention for public verification endpoints;
  • signing-key lifecycle management; and
  • incident-response and revocation procedures.

No system or verification process eliminates all risk.

27. Privacy and Data Minimization#

Oneway™ is designed to reduce unnecessary disclosure of underlying verification evidence.

Ackaia may process personal information necessary to verify an Attribute, create and maintain the Attestation Record, generate an Attestation Document, prevent fraud and abuse, operate the Verification Service, and comply with law.

The Attestation Document and Verification Service are intended to disclose the verified result rather than the underlying document whenever the underlying evidence is not necessary for the relying party's purpose.

Ackaia's processing of verification documents and other personal information is governed by the Ackaia Corporation General Privacy Policy and applicable law.

28. Verification Evidence Retention#

Where a Oneway™ Attribute is established through the Ackaia ID document-verification system, the underlying submitted document follows the retention and cryptographic-destruction lifecycle described in the Ackaia Corporation General Privacy Policy.

The destruction of underlying evidence does not necessarily require deletion of the resulting Attribute or Attestation. Ackaia may retain the minimum attestation record, verification decision, dates, source category, status, audit evidence, and cryptographic information reasonably necessary to operate, verify, defend, revoke, or demonstrate the integrity of the Attestation.

Retention periods may differ for the original evidence, the verification decision, the Attestation Record, security logs, and public status information because those records serve different purposes.

29. Public Verification Privacy#

The Verification Service is public by design, but Ackaia seeks to minimize unnecessary exposure.

A verification response should disclose only the information reasonably necessary to establish authenticity and current status. The service is not intended to provide public access to the Subject's original verification evidence or unrelated Ackaia ID account information.

Ackaia may apply technical measures such as unguessable verification references, access controls where appropriate, rate limits, anti-automation measures, logging, and no-store or equivalent cache controls to reduce abuse and unintended persistence.

A person who receives a verification link or Attestation Document should treat it as personal information where it identifies or relates to an individual.

30. Fraud, Forgery, and Misuse#

Users and third parties must not:

  • forge or alter an Attestation Document;
  • manipulate a verification reference or verification response;
  • reproduce Ackaia marks in a manner intended to create a false Attestation;
  • present another person's Attestation as their own;
  • circumvent revocation, expiration, rate limits, or verification controls;
  • use the Verification Service for unlawful profiling, harvesting, surveillance, discrimination, or unrelated bulk data collection; or
  • falsely state that Ackaia approved a transaction, organization, or legal conclusion merely because an Attestation is valid.

Ackaia may restrict access, revoke affected Attestations, preserve relevant evidence, or take other proportionate action where misuse threatens users, third parties, or the integrity of Oneway™.

31. Signing-Key or System Compromise#

If Ackaia determines that signing material, verification infrastructure, or another material component of the Oneway™ Attestation system has been compromised or may no longer provide the required assurance, Ackaia may:

  • suspend issuance;
  • rotate or revoke signing material;
  • mark affected Attestations for re-verification;
  • revoke or supersede affected Attestations;
  • require re-issuance;
  • notify affected users or relying parties where reasonably appropriate or legally required; and
  • publish status or incident information where doing so improves safety without creating additional security risk.

32. Availability and Verification Continuity#

Ackaia seeks to keep the Verification Service available, but does not guarantee uninterrupted or permanent availability.

A relying party making a material decision should verify the Attestation as close as reasonably practicable to the time of reliance. A cached, printed, screenshotted, or previously observed result may no longer reflect the current status.

A temporary inability to reach the Verification Service should not be interpreted as evidence that an Attestation is valid or invalid.

A Oneway™ Attestation may provide evidence that Ackaia performed the stated verification and issued the stated assertion. The legal weight or admissibility of that evidence depends on the jurisdiction, purpose, applicable law, contractual context, and decision-maker.

This Policy does not guarantee that a Oneway™ Attestation satisfies a statutory identity-verification, age-assurance, know-your-customer, anti-money-laundering, employment, licensing, notarization, electronic-signature, or other regulated requirement.

A relying party is responsible for determining whether Oneway™ is sufficient for its specific legal obligations.

34. Warranties and Limitations#

Oneway™ Attestations are subject to the disclaimers, warranty exclusions, and limitations of liability in the Ackaia Corporation General Terms of Service to the maximum extent permitted by law.

Without limiting those Terms, Ackaia does not warrant that:

  • every fraudulent or altered source can be detected;
  • every third-party issuer or data source is error-free;
  • an Attribute will remain factually unchanged after the verification date;
  • every relying party will accept a Oneway™ Attestation;
  • an Attestation satisfies every legal, regulatory, professional, contractual, or business requirement; or
  • the Verification Service will be uninterrupted or permanently available.

Nothing in this Policy excludes rights, warranties, remedies, or liabilities that cannot lawfully be excluded or limited.

Ackaia may preserve, disclose, restrict, or process Oneway™ Attestation information where required or permitted by applicable law, valid legal process, protection of users or third parties, prevention of fraud or abuse, or establishment, exercise, or defense of legal claims.

Ackaia's approach to legal requests is described in the Ackaia Corporation Legal Request Response Policy.

36. Suspension or Termination of Oneway™ Attestation Features#

Ackaia may modify, restrict, suspend, or discontinue an Attribute type, issuance pathway, verification method, or Oneway™ Attestation feature where reasonably necessary for security, legal compliance, product integrity, abuse prevention, or service operation.

Where reasonably practicable, Ackaia will provide notice of material changes that affect existing valid Attestations. Ackaia may act without advance notice where necessary to respond to an urgent security, fraud, legal, or integrity risk.

37. Changes to this Policy#

Ackaia may update this Policy to reflect changes in law, verification methods, Attributes, security architecture, product operation, or the Oneway™ trust framework.

The revision history and effective date identify the current version. For material changes, Ackaia will provide notice where reasonably required through the Legal Repository, Ackaia ID, email, or another appropriate channel.

A policy update does not retroactively change the historical fact that a particular Attestation was issued under a prior verification policy. Ackaia may, however, require re-verification or revoke an existing Attestation where continued reliance would create a material security, integrity, or legal risk.

38. Contact and Disputes#

Questions about the legal meaning, status, or use of a Oneway™ Attestation may be directed to:

Legal: legal@ackaia.com Privacy: privacy@ackaia.com Security: security@ackaia.com Support: https://support.ackaia.com/ Website: www.ackaia.com Address: 1233 York Avenue, Apt. 301, New York, NY 10065, United States of America

Disputes concerning use of the Services remain subject to the Ackaia Corporation General Terms of Service and any mandatory rights that apply to the user or relying party.

---

End of Oneway™ Attestation, Verification and Attribute Issuance Policy