
Sourced, resolved, cited.
WhiteIntel fuses 41 public and licensed sources into one graph of 171.2M+ entities — every claim carries the record behind it. Here's exactly where the data comes from, how the same entity is resolved across sources, and how it's secured.
Honesty by construction
Editorial principlesA source on every claim
Every entity, edge and risk flag links to the registry or leak record behind it. Nothing is asserted without provenance.
Absent ≠ non-existent
A missing ownership edge means “not yet observed in our sources”, not “does not exist”. We never imply completeness we don't have.
Decision-support, not a verdict
Risk levels are heuristic investigative leads. WhiteIntel is not a legal determination of beneficial ownership.
Unscored shown honestly
Where an entity isn't yet risk-scored we say “Unscored” rather than defaulting it to low.

Where the data comes from
41 sourcesOpenOwnership
OpenGLEIF
OpenACRA Singapore
OpenICIJ Offshore Leaks
OpenSEC EDGAR
OpenFAA
OpenOFAC · EU · UK OFSI · UN
OpenUK Companies House
OpenFrance SIRENE
OpenBrazil RFB
OpenOpenSanctions
OpenPoland KRS
OpenADGM · DIFC
OpenGibraltar UBO
GatedOBRS Belize · Anguilla · St Vincent · Luxembourg
GatedMethod and security
Resolution · controls
The same entity, across sources
Matches collapse into one cluster_id; the dossier shows every record in the cluster.
Identifier join
Exact strong-id match (LEI, sanctions id, company number, NIP, UEN, SEC CIK).
Name-block
Name + jurisdiction, only where a block spans ≥2 registries.
Sanctions bridge
Links null-jurisdiction sanctioned parties onto same-name registry/leak records.

Locked down by construction
What we operate behind the corpus — described plainly.
Access control
Row-Level Security is enforced on every corpus table; the public API reads through a single locked-down service role, never a broad database credential.
Least privilege
Read, ingest and mutation each run under a separate scoped role. Write functions are execute-revoked from anonymous callers.
Encryption
TLS in transit on every request; data encrypted at rest by the managed Postgres platform.
Data retention
One-off dossier exports stay re-downloadable for 90 days, then expire. Guest checkout keeps an email for delivery only.
Commitments we stand behind
Our wordEvery claim is sourced
Each entity, edge and flag links back to the registry or leak record behind it. If we can't cite it, we don't assert it.
Leads, not determinations
Risk levels are heuristic investigative leads — never a legal finding of beneficial ownership, sanction or wrongdoing.
Corrections on request
Flag a sourced error or request a lawful removal and we correct it; the fix propagates on the next ingest.
No fabricated data
We never invent entities, edges or figures to fill a gap. Absent means “not yet observed in our sources”, and is shown as such.
Corrections, removals and disclosure
intel@whiteintel.devQuestions, answered
FAQSee it for yourself.
Open any entity — every claim on the dossier links back to its source.