Get in touch.

Always open to interesting conversations and collaborations.

Research
Apr 2026Research

SOMA: a protocol for distinguishing humans from machines when every external credential has fallen

A summary of the SOMA Research / OpenCrew whitepaper, Proof of Human (V1.0, April 2026). Read the full paper →

Abstract

AI can now clone a human voice from three seconds of audio, generate photorealistic deepfake video from a single photograph, and pass identity verification with higher accuracy than legitimate users. Every external authentication method (passwords, SMS 2FA, voice biometrics, CAPTCHA, facial recognition, fingerprint, liveness detection) has either been defeated or is actively failing. SOMA proposes that cryptographic identity derived from the continuous biological signals of a living human body is the only structurally undefeatable solution, and is building this as an open protocol layer for the internet.

The architectural failure

Every credential humans have built so far exists outside the body: stored, transmitted, photographable, or recordable. That externality is the failure mode AI now exploits at industrial scale.

MethodPrimary attack vectorStatus
PasswordsBrute force, phishing, credential stuffingDefeated
Security questionsSocial engineering, public data miningDefeated
SMS 2FASIM swap, SS7 protocol interceptionDefeated
Voice biometricsReal-time clone from 3-sec sampleDefeated
CAPTCHAAI 99.8% accuracy vs humans 50–84%Defeated
Facial recognitionAI faces, deepfake video injectionCompromised
FingerprintSynthetic prints from photographsCompromised
Liveness detectionAdversarial ML, API-level injectionFailing
Behavioral biometricsAI behavioral modeling from minimal dataAt risk

The CAPTCHA case is the cleanest illustration: a system designed to distinguish humans from machines now performs the task in reverse. It identifies humans by their inferiority at it.

The scale is not theoretical. US deepfake fraud losses hit $1.1B in 2025 (3× the prior year). Deepfake-enabled vishing surged over 1,600% in Q1 2025. Circulating deepfake files are projected at 8M by 2025: ~900% annual growth, doubling time under six months. In one Arup case in February 2024, a finance worker wired $25M after a video call where every participant other than him was an AI deepfake.

ANATOMY OF A VOICE CLONING ATTACKSTAGE 01Sample3 sec from socialsSTAGE 02AI Modelclone in <20 minSTAGE 03Call Target85% voice matchOUTCOMEFunds wired$1.1B per yeartotal cost to attacker: under one dollar · total skill required: none

The three properties of biology

The continuous signals of a living human body have three properties no synthetic credential can match:

  1. Irreducible complexity. Signals emerge from billions of cells operating in concert. The full state of a living system cannot be modeled in real time.
  2. Continuous variability. Signals change moment to moment while preserving individual-specific invariants. A recorded sample is immediately stale.
  3. Physical inseparability. The signals cannot be removed from the body. No database to breach, no token to steal. If the body is not present, the key does not exist.

Architectural comparison

EXTERNAL CREDENTIALCREDENTIAL●●●●●●●●●●DATABASEstored at restattacker (AI)copies · replays · forges✕ separable from body✕ stored, breachable✕ static across sessions✕ replayable from interceptBODY-BOUND IDENTITY · SOMAbodyKEY7f3a 9c2e 84b1ephemeral · 256-bitZK PROOFno biologynothing stored, nothing in transit✓ inseparable from body✓ no database, no breach✓ regenerated each use✓ replay impossible

Protocol

SOMA transforms biological signals into cryptographic proof of identity in three stages. No biometric data is ever stored, transmitted, or accessible to any external party.

01 SIGNAL CAPTUREBiosensorcontinuous, on-devicecardiac + vascular02 KEY DERIVATIONFuzzy Extractoron-device only256-bit ephemeral key03 VERIFICATIONZK Proofdecentralized networkno biology revealedno biometric data stored · no central authority · no replay possible

A miniaturized biosensor captures continuous cardiac (ECG) and vascular (PPG) signals. They are fed through a fuzzy extractor [Dodis–Reyzin–Smith, EUROCRYPT 2004], a cryptographic primitive that derives stable keys from noisy biometric input. The same person reliably produces the same 256-bit key. A different person produces a different one. The key exists only during generation and is destroyed immediately after use. Verification is broadcast as a zero-knowledge proof to a decentralized network. No central registry, no biometric database.

Cryptographic properties

PropertyDescription
DeterministicSame person, same key, across sessions
UniqueDifferent person, different key, negligible collision
EphemeralKey exists only during generation, never stored
Non-extractableBiological signal cannot be reverse-engineered from public key
Liveness-boundGeneration requires continuous signal; body separates, it stops
Zero-knowledgeProves humanness without revealing biology

Applications

  • Authentication. Replaces the entire stack with a single biological proof. Onboarding, KYC, age verification.
  • Communication integrity. Every call, message, and video carries cryptographic proof a verified human created it. Deepfake calls become instantly identifiable as unsigned.
  • Financial authorization. Transactions signed by a living-human key. No amount of stolen data can replicate the proof.
  • Proof of personhood. Verified human status anchored to biology. Bots, farms, and synthetic identities become structurally impossible. Social, marketplaces, voting, reviews.

Why now

Three forces converge. Biosensor miniaturization, low-power cryptographic processing, and body-area networking have made biologically-derived cryptography technically feasible for the first time. Deepfake content is growing at 900% annually, and the window between AI can fool some systems and AI can fool all systems is closing. Meanwhile, institutions are responding to the crisis by mandating centralized digital identity: databases linking biometrics to government credentials, which create single points of failure and concentrate control over identity itself. Centralized identity creates centralized vulnerability.

Design principles

  • Body-bound. If the body is not present, the key does not exist.
  • Zero-knowledge. Proof of humanness without revealing biology.
  • Decentralized. No single entity holds unilateral control over issuance, verification, or revocation.
  • Minimalist. Proves exactly what needs to be proven, nothing more.
  • Continuous. Body separates, authentication ceases.
  • Open protocol. Global standard, not proprietary product.

Conclusion

The infrastructure for verified human identity does not exist yet. No system in operation today can provide cryptographic proof that a digital interaction originates from a living human being. SOMA is building that protocol layer, grounded in one insight: the living human body is the only source of identity that AI cannot forge.


Read the full whitepaper at proofofhuman.world/paper.

Pages
Sections
Journal
Research
Links
navigateopen