Why KYC is everywhere and why it frustrates so many Indians

India has built one of the most sophisticated digital identity systems in the world. You can open a bank account without visiting a branch. You can invest, trade, insure, borrow, all from your phone.

Your identity, at least in theory, is verified once and usable everywhere. And yet, in practice, the experience feels very different.

You open a bank account and complete your KYC. Then you invest in a mutual fund, KYC again. You sign up on a fintech app, KYC again.

Months later, you are asked to ‘update’ your KYC for an account you already verified. For millions of Indians, identity verification has quietly turned into a repetitive, never-ending process.

At the centre of this contradiction lies a system that was meant to fix it all — Central Know Your Customer, or CKYC.

WHAT IS CKYC AND WHAT IT PROMISED?

CKYC was introduced to solve one of the most basic inefficiencies in India’s financial system: duplication.

Instead of submitting identity documents separately to every bank, insurer, mutual fund or broker, a user would complete KYC once. That information would be stored in a central registry managed by CERSAI, and institutions could access it using a unique 14-digit CKYC number.

(Photo: PwC) FI – all entities governed/regulated by the Government of India/or different regulators (RBI, SEBI, IRDA and PFRDA)—for example, banks, asset management companies (AMCs), insurance companies and pension funds.

A PwC report notes that the objective was to create a single, standardised KYC record that could be reused across the entire financial ecosystem, reducing paperwork, improving efficiency, and making onboarding faster.

In simple terms, CKYC was meant to do for identity what UPI did for payments — create a common, interoperable layer.

But unlike UPI, CKYC has not delivered that seamless experience.

WHY KYC IS EVERYWHERE IN THE FIRST PLACE

To understand why duplication persists, it helps to first understand why KYC exists at all.

“KYC has effectively become the entry point to the formal financial system,” said Mayank Arora, Partner at The Chambers of Bharat Chugh.

He explained that KYC requirements come from global anti-money laundering standards set by the Financial Action Task Force, which India follows through laws like the Prevention of Money Laundering Act and sectoral regulations.

Over time, the scope of KYC has expanded.

What started with banks now includes:

mutual funds, insurance companies, stock brokers, fintech platforms, digital wallets

As the financial system digitised, regulators extended KYC requirements to ensure traceability, reduce fraud, and maintain oversight.

But this expansion also created a new problem, repetition.

IF CKYC EXISTS, WHY DOES DUPLICATION STILL HAPPEN?

This is where theory and reality diverge.

(Source: PwC)

Even though CKYC exists, institutions cannot simply rely on it.

“The law does not permit an entity to rely entirely on another institution’s verification,” Arora said. “Each entity must conduct its own due diligence, maintain its own records, and remain accountable if something goes wrong.”

This is a fundamental design feature of the system.

Every bank, insurer or platform is independently responsible for:

verifying customer identity, storing KYC records, ensuring compliance

So even if your KYC exists in a central registry, the institution onboarding you still needs to validate it.

That is why the same documents are often collected again.

CKYC: A GOOD IDEA HELD BACK BY REAL-WORLD GAPS

CKYC, in principle, should still reduce duplication. But in practice, several structural issues limit its effectiveness.

“CKYC was conceived to eliminate duplication,” Arora said. “However, data quality and completeness remain inconsistent, and different regulators require different levels of information.”

The PwC report echoes this gap between design and execution.

It points out that while CKYC has created a central repository, its adoption across sectors remains uneven, and integration with other KYC systems is still incomplete.

Some of the key challenges include:

inconsistent or outdated customer records

lack of standardisation across regulators

limited interoperability between systems

operational delays in updating KYC data

In many cases, institutions find it easier, and safer from a compliance standpoint, to simply redo KYC rather than rely on existing records.

INDIA HAS DIGITAL INFRASTRUCTURE, SO WHAT’S MISSING?

India’s digital public infrastructure story is often seen as a global benchmark.

Aadhaar enables identity verification.

DigiLocker enables document sharing.

CKYC enables centralised storage.

So why don’t these systems work together seamlessly?

The answer lies within legal, technical and regulatory boundaries.

Aadhaar-based KYC, for instance, is subject to restrictions following Supreme Court rulings. Its use is not universal across all sectors.

DigiLocker, while useful, is only a document repository — it does not validate identity in itself.

CKYC, meanwhile, is a registry — but not a fully integrated verification system.

The PwC report highlights that a truly unified KYC system would require deep integration across these platforms, along with standardised protocols and regulatory alignment.

“The unavailability of a link between the CERSAI’s CKYC system and Sebi-registered KRAs is perceived as the main reason for complications and a slower than envisaged rate of implementation. The data about non-individuals still rests with SEBI and there are no guidelines yet on how this data is to be included in the CKYC repository,” said PwC.

That integration is still evolving.

THE HIDDEN LAYER: KYC AS A DATA SYSTEM

There is also a commercial dimension to KYC that often goes unnoticed.

“KYC is not just a compliance exercise,” Arora said. “It is also a way to collect data, demographics, behaviour patterns, which can be used for profiling and cross-selling.”

In a digital economy, customer data has become a valuable asset.

Repeated KYC allows institutions to:

update customer profiles

refine risk models

build marketing insights

This does not mean duplication is intentional — but it does mean KYC serves more than one purpose.

HAS KYC ACTUALLY IMPROVED SAFETY?

It helps track transactions, identify suspicious behaviour, create audit trails.

But it is not a complete solution.

“Mule accounts, identity misuse and organised fraud continue to operate within the KYC framework,” Arora said. “In some cases, KYC data itself becomes a target for misuse.”

This reflects a broader reality — KYC improves traceability, but does not eliminate risk.

In fact, as more institutions collect sensitive data, the system itself becomes more complex — and potentially more vulnerable.

THE COST OF REPETITION: KYC FATIGUE

For users, the issue is not policy — it is experience.

KYC has become repetitive, time-consuming and often confusing.

“Is India overdoing KYC? I think yes,” Arora said.

He pointed out that in many cases, the level of verification demanded may not always match the risk of the transaction.

This leads to what many users now experience as KYC fatigue — a sense that the system is asking for the same information again and again without clear justification.

THE PRIVACY QUESTION

Repeated KYC also raises deeper concerns about data protection.

Every time a user completes KYC, they share:

identity documents

addresses

financial details

And this data is stored across multiple institutions.

“Commercial exploitation of KYC data can lead to data leaks, spam and increased vulnerability to fraud,” Arora warned.

The more fragmented the system, the greater the surface area for potential misuse.

While India has introduced the Digital Personal Data Protection Act, 2023, its effectiveness will depend on how well institutions implement safeguards in practice.

WHAT A BETTER SYSTEM COULD LOOK LIKE

The problem is not KYC itself.

It is how it is implemented.

Both experts and industry reports point in the same direction — integration and standardisation.

According to PwC, a more effective system would involve:

a fully interoperable CKYC framework

standardised KYC requirements across regulators

real-time updating of customer records

seamless integration with Aadhaar and DigiLocker

strong data governance and privacy safeguards

Arora agrees.

“A centralised system like CKYC needs stronger standardisation and data quality protocols so that it can truly be used across entities,” he said.

The goal is not to remove KYC — but to make it portable, reliable and trusted across the ecosystem.

India has already shown that it can build population-scale digital systems.

UPI transformed payments, Aadhaar transformed identity, CKYC was meant to transform verification.

But until institutions begin to trust shared infrastructure, and regulators align their frameworks, the burden of proving identity will remain with the user.

India may have built the rails for one-time identity verification, but until the system learns to use them, KYC will remain less about convenience and more about repetition — one form, one upload, one verification at a time.

Latest

PPF: Can a Public Provident Fund account be closed prematurely?

While the PPF carries a mandatory 15-year lock-in, accounts can be closed after five full financial years, but only under specific circumstances

From pension disbursal system to auto settlement, how EPFO 3.0 reforms have improved user experience

EPFO 3.0 represents a comprehensive digital overhaul of the retirement fund's IT infrastructure, with full implementation expected by mid-2026

Venu Srinivasan quits Bai Hirabai Charitable Trust after questions over his eligibility, cites other commitments

Venu Srinivasan has quit Bai Hirabai Charitable Trust after Mehli Mistry, former trustee of three-key trusts, formally challenged his appointment in the BHJTNCI

8th Pay Commission: From old pension scheme to improved questionnaire – full list of demands by Govt staff body

The Staff Side of the NC JCM has urged the 8th Pay Commission to improve the memorandum submission process, among other demands. List of all nine demands here.

OpenAI undergoes dramatic C-suite overhaul ahead of IPO — CMO to step down for cancer recovery, COO moves on to new role

The major leadership shakeup comes amid a pivotal time for OpenAI, with the company gearing up for a possible initial public offering. OpenAI's product chief Fi

Topics

UP board mandates NCERT and authorised books for Classes 9 to 12 in 2026-27

The Uttar Pradesh Madhyamik Shiksha Parishad has issued a...

Is Australia making student visas tougher for Indian applicants?

Recent visa policy changes increase scrutiny for Indian students applying to Australia

6.9% drop in Indian student numbers in US. Is the American dream fading?

Indian students in the US fell by nearly 7 percent as stricter visa scrutiny, social media checks, and fewer F-1 approvals made visas harder to obtain. Data sha

Soha Ali Khan reveals her ‘game changer’ drink: Check its full recipe and benefits

Soha Ali Khan has revealed the morning drink she has been consuming for better gut health. She also shared the recipe of the drink and benefits of what has been

Himachal Class 10 answer sheets modified after exam? Forensic report raises questions

A government school in Himachal Pradesh is under scrutiny after families alleged that Class 10 answer sheets from 2025 were altered, citing procedural lapses, d

Samsung, Mistral AI discuss cooperation in AI memory sector

Samsung Electronics and Mistral AI explored AI memory collaboration and chip supply partnerships. CEO Arthur Mensch met executives in Korea to secure semiconduc

Delhi High Court says RTE gives admission, not choice of school

The Delhi High Court ruled that the Right to Education Act guarantees access to education but does not give children the right to choose a specific school. It a

How simple daily fitness habits can transform your health and well-being

A fit and healthy lifestyle doesn’t require extreme diet restrictions or fitness routines. It just requires consistent small habits to create long-lasting cha
spot_img

Related Articles

Popular Categories

spot_imgspot_img