Accessibility Transparency Statement
Last updated: 12th August 2026.
At Mistho, we are committed to ensuring our products and services are accessible, transparent, and secure for all users. As part of our participation in the UK digital verification services (DVS) trust framework, we follow the principles of accessibility, user consent, and accountability.
Accessibility
- Mistho's user-facing applications, including the Mistho App and dashboard, are tested against the Web Content Accessibility Guidelines (WCAG) 2.2, Level AA.
- Our most recent accessibility audit was completed on 7 July 2026. It covered every consumer-facing surface of the verification journey, exercised end to end, together with our published legal pages, and assessed the service as conforming to WCAG 2.2 Level AA, with zero outstanding findings on production across all severities. There are no known non-conformances outstanding, and so no remediation dates are pending.
- The audit uses two independent methods: automated rule-set scanning, and manual checks that scanners cannot perform — keyboard-only navigation with focus-visibility inspection, and measured colour contrast of every rendered text node. It is conducted in-house rather than as a third-party certification, and it does not currently include screen-reader testing with users of assistive technology.
- We repeat the audit annually. The next one is scheduled for July 2027.
- If you encounter any barriers using our service, please contact us at support@mistho.io. We will respond within 5 business days and provide alternative ways to complete your verification where feasible. This address is for accessibility barriers and requests for assistance; formal complaints go to complaints@mistho.io, as set out under Transparency below. We welcome feedback on how we can improve accessibility.
Transparency
- Mistho only processes your personal data with your explicit consent and solely for the purpose of verifying income and employment information.
- We do not use your data for marketing, profiling, or any unrelated purposes.
- We provide provenance for all attributes (including the source system and timestamp) to ensure accuracy and trust.
- Data is retained only as long as necessary for verification and securely deleted in line with our Privacy Policy.
- Complaints can be raised via complaints@mistho.io, and we will acknowledge them within 24 hours. If you are not satisfied with our response, you may escalate the matter — for data protection concerns, to the Information Commissioner's Office (ICO); and, in relation to our certified service under the UK digital verification services (DVS) trust framework, to the Office for Digital Identities and Attributes (OfDIA) and/or our certification body, the Kantara Initiative.
Commitment
We review this statement and our accessibility practices annually as part of our compliance with the UK digital verification services (DVS) trust framework.