Skip to main content
KYC is a core system of record with hotel operational and guest PII data, and thus takes security very seriously. We trust that you do, too. Please use maximum care and validation when interacting with the KYC API and report any issues or concerns to Secrurity@KYCHospitality.com - note that penetration or security testing is not permitted without proper authorization from KYC. In particular, your API client should always validate our SSL certificates and pin them, if you can. The API only supports SSLv3 and high-security ciphers.