Online safety for all ages: k-ID is making age awareness an infrastructure layer for consumer apps and games
The internet was never built for children. They enter digital environments with no mechanism to know they are there, no reliable way to obtain consent from a parent, and no guardrails calibrated to their age. What results is not a fringe problem but a structural one.
That gap remains. A developer shipping an app or game globally today must navigate dozens of conflicting legal definitions of a minor, different parental consent thresholds, and data handling obligations across hundreds of jurisdictions. These vary not just by country but by platform and age bracket. What companies currently solve through manual, market-by-market workarounds is becoming an engineering problem.
k-ID positions itself as an install-once, ship-everywhere global compliance platform built to solve that problem.
k-ID founders
The Regulatory Inflection Point
Legislative momentum behind children’s online safety is accelerating. Australia became the first country to ban under-16s from social media last year[1]. The UK followed in June 2026, announcing a similar ban with fines for non-compliant platforms. Canada, France, and several Southeast Asian markets are developing comparable frameworks.
Each regime defines minors differently, sets different consent thresholds, regulates different product features by age and imposes different data handling obligations. For companies building products children may use online, that complexity cannot be solved by legal teams alone.
What k-ID Is Actually Building
k-ID’s ambition is to make every consumer app, game and online experience age-aware, serving the right content and experiences to each user based on their age and local legal requirements, while protecting their privacy. App builders and studios should be able to keep a child anywhere in the world safe based on their age and jurisdiction, while preserving more mature experiences for teens and adults – without requiring parents to navigate a different consent process in every app. In practice, that means age-aware infrastructure that handles age assurance, parental consent, and compliance orchestration across 200+ markets, with regulatory logic baked into the architecture rather than bolted on.
The practical unlock is significant. Rather than building separate compliance workflows for each market, developers can launch globally with localised consent flows and regulatory requirements handled through a single integration. Product teams can integrate once and ship globally with auto-updated regulatory compliance. Developers can focus on building instead of compliance refactoring.
CEO and co-founder Kieran Donovan presenting a live demo
But behind the infrastructure play is a simpler motivation. For CEO and co-founder Kieran Donovan, k-ID’s mission is personal. As he recalls, “I was that kid. I went online and the first interaction I had was that I learned how to lie. I saw a pop-up that said, ‘I confirm I’m over 13.’ I was nine, and I clicked through.” The anecdote illustrates a structural weakness that has persisted for decades: age gates based on self-reported birthdates provide no reliable way to determine whether a child is actually present.
What replaces the old self-reported birthdate is a layered system. Depending on the jurisdiction, k-ID can draw on several verification methods. These include digital footprint analysis, which assesses signals associated with an email address to estimate an age range without requiring an ID or selfie, alongside on-device facial age estimation, parental verification and trusted third-party identity sources. The platform automatically selects the most appropriate approach for each regulatory context. That is what makes it more reliable: a self-declared birthdate has no mechanism to catch a lie, while cross-referencing independent signals closes that gap by design.
The stakes extend beyond compliance. When k-ID was integrated into a VR platform, it replaced blanket age bans and self-reported birthdates with verified, age-appropriate access. Children who had previously been excluded, or who had entered by misrepresenting their age, could now participate with accurate profiles, matched to appropriate peer groups. For the VR game studio it preserved all ages as an addressable market while becoming compliant globally, and building trust with parents.
Building Global Infrastructure from Singapore
Singapore’s position as a neutral hub between east and west, paired with a mature regulatory environment, gives it credibility. For k-ID’s clients, data stored and processed under Singapore’s framework eases the anxieties that typically slow enterprise integrations.
Singapore has built a strong reputation for developing trusted digital infrastructure, from financial systems to digital government. For k-ID, building from Singapore reflects that same emphasis on trust, interoperability and global standards.
For Donovan, the institutional backing matters beyond the capital. “Having the support of EDBI and SG Growth Capital is a signal to the world that Singapore is leading the development of digital infrastructure for the next generation of the internet — for AI, for age-aware experiences, and for everything that means for the platforms we’re building,” he said.
CEO and co-founder Kieran Donovan presenting on stage
The Interoperability Imperative
The harder challenge is building something durable enough to absorb tomorrow’s rules, not just today’s. Regulatory frameworks and definitions of who counts as a minor will keep evolving. AI-native experiences will create risk categories regulation hasn’t yet contemplated. Interoperable infrastructure requires more than technical compatibility. It requires regulatory relationships, cross-border data frameworks, and standards that in some cases don’t yet exist globally. The long game isn’t compliance coverage alone; it’s becoming the layer others build on by default.
What This Signals
The age verification gap has had measurable consequences: in algorithmic harm, data misuse, children accessing spaces never designed for them. The UK ban and similar measures worldwide are corrective actions, but legislation without the infrastructure to enforce it cannot scale.
Trusted digital systems, for age, identity, and consent, are foundational to safe online spaces for all. The companies building them are defining the conditions under which the next generation experiences the internet.
k-ID is building a missing layer of the internet. That it is happening from Singapore says something about where the next generation of trusted digital infrastructure is being built and by whom.