The trust problem

Banks, insurers, merchants and government services each independently verify facts a mobile network may already know — who controls a phone number, whether a SIM has recently changed, whether a device is the one normally associated with a customer. Each builds its own process, sometimes sharing portions of the underlying information and increasing exposure in doing so.

Who could act as the Trust Authority

The mobile network operator (MNO), for facts within its own area of authority — number ownership, SIM status, device association, and, where appropriate, location.

Who is the Trust Consumer

Banks, insurers, merchants and government services that currently verify these facts independently, often against records that are less current than what the network itself holds.

What trusted outcome is required

A specific answer — such as whether the person requesting a transaction controls the number associated with the account — rather than a copy of the MNO's customer database or government records.

What changes when trust becomes reusable

GSMA Open Gateway APIs (Number Verification, SIM Swap, KYC Match, device information, location verification) already provide a working example: South African operators have introduced standard Number Verification and SIM Swap APIs that let banks verify customer information directly with the network, rather than every institution solving the problem independently.

This page reflects Gwirio's existing thinking on GSMA Open Gateway and mobile network trust. It describes a proposed application of Trust Infrastructure, not an existing Gwirio deployment or named customer relationship.