Instant sanctions, PEP and adverse-media checks for EU & Cyprus compliance teams — scored, explained, and delivered as an audit-ready report. Built and operated by a licensed Cyprus law firm.
If you must run customer due diligence under EU or Cyprus AML law, FIRMCY does the check and gives you the paper trail.
Every subject checked against global sanctions lists and a worldwide politically-exposed-persons database, in seconds. Weighted plausibility cuts the false positives a name-only match throws.
An AI analyst sweeps news and official registers for financial crime, corruption, fraud and organised-crime exposure — every finding tied to a retained source page, disambiguated to your subject.
Sanctions, PEP and adverse media in one run, scored to a single risk band, delivered as a complete, downloadable report your file and your regulator can rely on.
A single-use capture link collects the documents; guided camera and forensics (MRZ, tamper analysis) test them; every claim is corroborated against the screening. Reviewer sign-off closes the case as a filed PDF.
Order the official Registrar of Companies file on any Cyprus entity from inside a screening — directors, shareholders and charges mapped straight into the subject's dossier and network view.
Your whole book re-screened on the schedule you set, daily to yearly. You're alerted only when something changes — a new listing, a new story — and the schedule manages itself.
Go beyond a single name: build an entity's ownership and control network from the registry, trace it to the people behind it, screen everyone in the chain, and see where the risk actually concentrates — with a synthesised report.
Matching is deliberately name-broad, so nothing slips through on a typo or a transliteration. Then four identity signals put a verdict on every match — instead of a wall of false positives.
Designed around real AML obligations by Ioannou & Sharpe LLC — not a generic data vendor.
Hosted in the EU, GDPR-aligned, with a clear controller/processor split and a signed DPA.
Date of birth, nationality, gender and place of birth score each match — fewer false positives, never a hidden true one.
Every risk call shows its reasons and its sources. No black box a reviewer can't defend.
Source pages snapshotted to write-once (WORM) storage, so the evidence still exists when the audit comes.
Every screen, decision and reviewer action logged in a tamper-evident record.
Name, and optionally date of birth, nationality, gender or place of birth for sharper matching.
Choose an instant sanctions & PEP check or a full assessment with adverse media. Results are scored and explained.
Download an audit-ready PDF, record your decision, and keep the evidence — all in one place.
Open a KYC case, pick the documents you need, and send your customer a single-use link. They photograph their documents on their phone — guided, quality-checked, verified before a reviewer ever opens the file.
No app, no account for the customer. The link expires on your schedule and works exactly once — passport, ID, proof of address, bank statement.
Blur, glare and cropped edges are caught at capture time — not discovered by your team three days later.
Malware scan, passport MRZ cross-checks and image-tamper analysis run before a human opens anything — and the extracted identity is corroborated against your screening subject.
A compliance officer reviews the case and signs it off; the complete file — documents, checks, decisions — exports as one audit-ready PDF. 12 credits per case, screening included.
Screening a name checks that name. An investigation follows the ownership and control structure behind a corporate client to the people who actually control it — and screens the whole chain, not just the front company.
Pull the official registry file and map the ownership and control links outward — parents, subsidiaries, shared officers — into one network view.
Follow the chain through nominees and offshore layers to the people who ultimately control the entity — not just the name on the front door.
Every party in the network is checked against sanctions, PEP and adverse media — so risk anywhere in the structure surfaces, not only on your subject.
The investigation is synthesised into a judgment over the whole structure — which entity or person carries the risk, with the reasoning shown, not a black box.
Every check FIRMCY runs is a REST API. Embed sanctions, PEP and adverse-media screening directly into your onboarding, KYC or client-management flow — same results, same evidence, same audit trail as the app.
Clean endpoints — /v1/screen (sanctions + PEP), /v1/assess (combined), adverse media, and monitoring & alerts.
Per-product scopes, DPA-gated and EU-hosted. Rotate and revoke without touching your integration.
Screen at onboarding, then monitor continuously — get an alert when a subject picks up a new sanctions, PEP or adverse-media hit.
FIRMCY supports the customer-due-diligence and ongoing-monitoring duties that EU and Cyprus AML rules place on regulated entities.
Informational only — not legal advice. FIRMCY is a screening tool that supports, and does not replace, your own compliance judgement.
Credit-based, no lock-in. Credits never expire and are only spent when a screening completes.
Yes. Every new organisation gets 100 welcome credits on signup — enough for 100 sanctions & PEP screenings — with no card required. And unlike most "free checker" sites, the result is the full match detail with an audit-ready report, not a teaser behind a paywall. How the free check works →
Global sanctions regimes (incl. UN, EU, OFAC, UK), a worldwide politically-exposed-persons database, and — for adverse media — live news plus official registers (court, regulator and enforcement sources). Every adverse finding is tied to a retained source page.
Yes. Data is hosted in the EU, with a clear controller/processor split (your organisation is the controller; we act as processor under a signed DPA), lawful-basis handling and data-minimisation by design.
FIRMCY supports the customer-due-diligence, screening and ongoing-monitoring duties under the EU AML Directives and Cyprus AML Law 188(I)/2007, with a documented, repeatable process and a retained evidence trail. It supports — and does not replace — your own compliance judgement.
Matching is name-broad for recall, then an identity-plausibility layer weighs each match on date of birth, nationality, gender and place of birth, and labels it — corroborated, partial, mismatch or unverified — with the matching reasons shown. A mismatch is surfaced for review; it is never used to silently hide a true hit or lower the risk band.
Yes. Source pages are snapshotted to write-once (WORM) storage and every screen, decision and reviewer action is recorded in a tamper-evident audit log — so the evidence exists when a supervisor asks.
Yes. Open a KYC case and send your customer a single-use capture link — they photograph their passport, ID or proof of address on their phone with guided, instant quality checks. Every file is malware-scanned and checked for tampering, passport MRZ data is cross-validated, and the extracted identity is corroborated against your screening subject before a compliance officer signs the case off. The whole case exports as one audit-ready PDF (12 credits per case, screening included).
Batch screening and continuous monitoring (with change alerts) are available for teams. Talk to us about volume credit packs and onboarding.
Yes. Every check is available as a REST API — /v1/screen for sanctions & PEP, /v1/assess for a combined assessment, plus adverse media. Use scoped, DPA-gated API keys to embed screening in your own onboarding or KYC flow. Ask us for API access and docs.
Tell us about your screening needs and we'll get back to you — usually within one business day.
Ioannou & Sharpe LLC
Griva Digeni, Limassol Center, Block B, 3rd Floor, Office 304
3095 Limassol, Cyprus
[email protected]