Registry entry
New Zealand RealMe Verified Identity — Enrolment
First-time enrolment for a RealMe verified identity, the New Zealand government-issued digital identity (an 'electronic identity credential' under the Electronic Identity Verification Act 2012) that lets a person prove who they are online to participating service providers — for example to open a bank account or apply for a replacement driver licence. It is issued by the Department of Internal Affairs (DIA) as part of the wider RealMe service and requires an existing RealMe login as a precondition. This models the online application: choosing an identity record to rely on, the document-specific details DIA collects for that record, the applicant photo/identity check, an identity referee if DIA determines one is required, and final consent. It does not model a plain RealMe login (no verified identity), the separate renewal process for an existing verified identity, or the automatic use of a verified identity once issued.
Registry entry
nz/dia/realme-verified-identity
GovSchema spec v0.3
Authoritative source RealMe verified identity — application guidance; Identity Verification Service Privacy Statement; Identity verification service terms of use; Tips for taking your photo online
Machine access
- Schema document
registry/nz/dia/realme-verified-identity/1.0.0/schema.jsonapplication/schema+json- Verification record
registry/nz/dia/realme-verified-identity/1.0.0/VERIFICATION.mdtext/markdown- Registry catalog
registry/index.jsonone record per schema id
Field reference
23 fields across 5 steps, read from the published schema.json — names, types, requiredness, and validation as the document states them. The live government form remains the authoritative source.
Before you apply
-
applicantAgedFourteenOrOverboolean requiredAny individual may apply for a RealMe verified identity, but an applicant aged 13 or under needs a parent or legal guardian to approve the application (see parentOrGuardianConsentProvided). This field is the precise complement of that '13 or under' threshold named in the source.
Tell us who you are
-
identityDocumentTypeenum requiredThe single identity record the applicant chooses to supply for the application. nz_passport may be an expired New Zealand passport. Each choice gates a different set of document-specific fields collected below.
enum: nz_passport | nz_birth_certificate | nz_citizenship_certificate | nz_immigration_record -
fullNamestring requiredApplicant's full name, as recorded on the identity record chosen in identityDocumentType. The privacy statement describes this as a single 'full name' collected for every identity-record choice, not separate given/family-name boxes; modelled at that sourcing grain rather than split into components not named in the source.
length: 1–200classification: sensitive-pii -
passportNumberstring optionalNumber of the New Zealand passport relied on, which may be expired.
patternclassification: sensitive-pii -
citizenshipCertificateNumberstring optionalCertificate number of the New Zealand citizenship record relied on.
length: 1–50 -
overseasPassportNumberstring optionalNumber of the applicant's overseas passport, collected when relying on an immigration record.
length: 1–30classification: sensitive-pii -
visaOrPermitNumberstring optionalNumber of the New Zealand visa or permit forming the immigration record relied on.
length: 1–30 -
dateOfBirthdate optionalFull date, YYYY-MM-DD. Collected only when relying on an immigration record or a New Zealand birth registration; the privacy statement does not name date of birth as separately collected for the passport or citizenship-certificate choices (presumably because those records are matched by document number instead).
classification: sensitive-pii -
placeOfBirthstring optionalCollected only when relying on an immigration record or a New Zealand birth registration; see dateOfBirth.
length: 1–150 -
genderstring optionalAs recorded on the immigration record or birth registration relied on. The source names 'gender' as a collected field but does not publish a closed code list for this specific service, so no enum is asserted here — unlike gender fields sourced from a form that prints its own code list (e.g. nz/dia/passport-renewal-adult's M/F/X).
length: 1–20 -
parentMotherNamestring optionalCollected only when relying on a New Zealand birth registration.
length: 1–200 -
parentFatherNamestring optionalCollected only when relying on a New Zealand birth registration, and only 'if applicable' per the source — unlike parentMotherName, this field is never made required by identityDocumentType alone, reflecting the source's own qualifier.
length: 1–200
Take a photo
-
identityCheckMethodenum requiredonline_device_photo = take your own photo online using your device's camera as part of the application; realme_partner_store = have your photo taken free of charge, and any required original documents shown, at a RealMe partner store instead.
enum: online_device_photo | realme_partner_store -
onlinePhotofile optionalA photo taken in a well-lit area with no shadows on your face, in front of a plain background with no people or objects behind you, facing the camera with a neutral expression and mouth closed, not wearing a hat, tinted or thick-rimmed glasses, or anything else that covers your face (a head covering is allowed only for religious or medical reasons). Up to 5 attempts are allowed; after 5 unsuccessful attempts the applicant must wait 14 days and start a new application, or use a RealMe partner store instead.
Provide an identity referee, if required
-
refereeFullNamestring optionalPersonal information of a third party; handle as sensitive data. Provide only if DIA determines the application requires an identity referee (the source describes this as DIA-initiated: 'We may need you to provide an identity referee'), not a choice the applicant makes upfront — a real difference from nz/dia/passport-renewal-adult, whose identity referee is unconditionally required. When required, the referee must be aged 16 or over, have known the applicant for more than 1 year, hold a current or expired New Zealand passport, agree to act as referee, not be part of the applicant's immediate or extended family (including cousins, in-laws, and ex-spouses), and not live at the applicant's address.
length: 1–200 -
refereeDateOfBirthdate optionalPersonal information of a third party; handle as sensitive data. Full date, YYYY-MM-DD. See refereeFullName for when this is collected.
classification: sensitive-pii -
refereePassportNumberstring optionalPersonal information of a third party; handle as sensitive data. The referee must hold a current or expired New Zealand passport. See refereeFullName for when this is collected.
patternclassification: sensitive-pii -
refereeAddressstring optionalPersonal information of a third party; handle as sensitive data. See refereeFullName for when this is collected. The referee must not live at the same address as the applicant.
length: 1–250 -
refereePhonestring optionalPersonal information of a third party; handle as sensitive data. In international E.164 format, e.g. +6421234567. See refereeFullName for when this is collected.
pattern -
refereeEmailstring optionalPersonal information of a third party; handle as sensitive data. See refereeFullName for when this is collected.
length: 0–254 -
refereeYearsKnowninteger optionalThe referee must have known the applicant for more than 1 year. See refereeFullName for when this is collected.
range: 0–120
Submit your application
-
agreesToTermsOfUseboolean requiredConfirms the applicant has read and agrees to DIA's Identity verification service terms of use and Identity Verification Service Privacy Statement, and consents to the collection, use, and disclosure of their personal information under the Electronic Identity Verification Act 2012, as required to submit the application.
-
parentOrGuardianConsentProvidedboolean optionalFor an applicant aged 13 or under, a parent or legal guardian must give consent by completing the printed 'Declaration of consent form for a RealMe application' and providing it, along with any other requested documents, at a RealMe partner store visit.
Verification record
This file is the source-review record for this document version, per the manual-source-review-v1 practice.
Current claim
status:draftverification.method:manual-source-review-v1verification.lastVerifiedAt:2026-07-02
draft, not verified, because the live application form itself sits behind an authenticated RealMe login (account.home.realme.govt.nz) this environment cannot pass without genuine New Zealand identity documents — see "What was not done" below. This schema is instead sourced from DIA's own published guidance and, notably, its statutory privacy statement, which names the exact personal-information fields collected per identity-record choice.
Sources examined
- Document
(id, version):nz/dia/realme-verified-identity/1.0.0 - Spec version: GovSchema
0.3.0 - Authority: Department of Internal Affairs (DIA), operating the RealMe service jointly with (per its own site) other providers; the Identity Verification Service specifically is a DIA service under the Electronic Identity Verification Act 2012.
https://www.realme.govt.nz/en-nz/realme-verified-identity/— "RealMe verified identity". Fetched live via plaincurl(HTTP 200, no block), 2026-07-02. Supplies: what a verified identity is and its 10-year validity; the "before you apply" guidance (a verified identity is not needed merely to log in, e.g. NZ passport or Immigration NZ visa applications only need a RealMe login); the 4-step application overview ("Tell us who you are" / "Take a photo" / "Provide an identity referee, if required" / "Submit your application"); the four eligible identity records and the referee eligibility rules (16+, known applicant 1+ year, holds a current or expired NZ passport, not immediate/extended family, not co-resident); and the under-14 (aged 13 or under) parent/guardian consent process, including the separate printed "Declaration of consent form for a RealMe application" PDF.https://www.realme.govt.nz/en-nz/privacy/identity-verification-service-privacy-statement/— "Identity Verification Service Privacy Statement". Fetched live (HTTP 200), 2026-07-02. This is the strongest field-level source used: a statutory privacy disclosure (required because this data collection is governed by the Electronic Identity Verification Act 2012 and the Privacy Act 2020) that names, per identity-record choice, the exact set of personal-information fields DIA collects — quoted verbatim in each affected field's ownsourceRefabove. It also supplied the identity referee's collected fields (passport number, full name, date of birth, address, phone, email, duration known), the biometric/facial-recognition processing description (out of scope as a field — it is something DIA does with the photo, not something the applicant enters), and the 11-year post-expiry/cancellation retention period for the photo (not modelled as a field; a data-handling fact, not applicant input).https://www.realme.govt.nz/en-nz/terms-use/identity-verification-service-terms-of-use/— "Identity verification service terms of use". Fetched live (HTTP 200), 2026-07-02. Corroborates the under-14 consent rule from the main page and confirms the terms-of-use/privacy-statement agreement step referenced byagreesToTermsOfUse.https://www.realme.govt.nz/en-nz/realme-verified-identity/taking-your-own-photo/— "Tips for taking your photo online". Fetched live (HTTP 200), 2026-07-02. Source for theonlinePhotofield's description (lighting, background, expression, headwear rules, 5-attempt limit, 14-day cooling-off / partner-store fallback).https://www.realme.govt.nz/en-nz/realme-verified-identity/renew-your-verified-identity/— "Renew your verified identity". Fetched live (HTTP 200), 2026-07-02. Read to confirm this is a materially different, lighter-weight process (renewal only asks the holder to confirm any changed details and take a new photo — it does not re-collect the identity-document number or an identity referee) and is therefore genuinely out of scope for this enrolment schema, not merely an unmodelled variant of it. Worth flagging as a distinct future catalog candidate (nz/dia/realme-verified-identity-renewalor similar) if this vertical is revisited.https://account.home.realme.govt.nz/— the RealMe login page itself loads (HTTP 200; a Microsoft-Azure-B2C-style sign-in form requesting a RealMe username/password). This confirms the application proper sits behind authentication, not merely behind a slow-loading SPA shell — see below.
What was not done — the one honest gap
Unlike de/finanzamt/tax-identification-number (verified by directly operating BZSt's unauthenticated live form with Playwright) or the two SG NRIC schemas, no live walkthrough of the RealMe verified-identity application itself was performed. The application only begins after a successful RealMe login, and a RealMe login can only be created by supplying real New Zealand identity-document details during its own signup flow — there is no sandbox/test account available in this environment, and fabricating one would mean submitting invented personal data as if it were a genuine identity claim into a live federal identity-verification system (the same class of action this registry's standing practice already refuses for e.g. us/dos/passport-renewal-ds82 and de/finanzamt/tax-identification-number, just one step earlier in the flow — here the block is authentication itself rather than a final submit button).
Consequently, this schema's field inventory is derived from DIA's own Identity Verification Service Privacy Statement, not from reading printed field labels/input ids off the form. That statement is authoritative and unusually specific (a statutory data-collection disclosure naming exact fields per branch, quoted directly into each field's sourceRef), but it is one sourcing grain below a direct field-by-field form comparison — for example, it does not give input ids, exact on-screen field ordering within a step, or client-side validation behaviour (format masks, character limits). This is the same discipline used for au/ato/individual-tax-return-mytax and sg/iras/individual-income-tax-return-formb1, whose live portals are also authentication-gated: status stays draft, and the gap is named here rather than glossed over.
Modelling decisions
- Per-document-type conditional fields, not one flat field set. The privacy statement names a different exact field list for each of the four identity-record choices;
identityDocumentType'svisibleWhen/requiredWhenpairs onpassportNumber,citizenshipCertificateNumber,overseasPassportNumber,visaOrPermitNumber,dateOfBirth,placeOfBirth,gender,parentMotherName, andparentFatherNamemirror that branching exactly (GSP-0013conditiongrammar, first used in this registry bysg/ica/identity-card-reregistration). fullNameas a single field, not split given/family names. The source says only "full name" for every branch, with no indication of separate boxes (unlike PAS300/BDM76-derived NZ schemas in this registry that do split names, because their own source forms print separate boxes). Kept at the source's own grain rather than inventing a split the source doesn't describe — the same disciplinesg/iras/individual-income-tax-return-formb1used for its catch-all income-declaration field group.gendermodelled as an unconstrained short string, not a closed enum. The privacy statement names "gender" as a collected field but does not publish the code list this specific service uses (contrastnz/dia/passport-renewal-adult'sgender, sourced from a form — PAS300 — that prints its own M/F/X options). Asserting an enum here would risk rejecting a valid value the live form actually accepts.parentFatherNameis neverrequiredWhen, onlyvisibleWhen. The source's own qualifier — "your parent 2/father's name (if applicable)" — is modelled literally: visible whenevernz_birth_certificateis chosen (so an agent-facing UI would show the field), but never forced required by that choice alone, unlike itsparentMotherNamesibling, which the source states unconditionally.- Identity referee fields are all unconditionally optional (
required: false, norequiredWhen). The source frames the referee step as DIA-initiated ("we may need you to provide an identity referee"), a determination made by DIA's own risk assessment during processing, not a branch the applicant selects up front the wayidentityDocumentTypeoridentityCheckMethodare. There is no applicant-visible field this schema could condition arequiredWhenon without inventing one the source never describes, so the referee fields are left as always-available, never-forced inputs — a genuine, explained difference fromnz/dia/passport-renewal-adult, whose identity referee is unconditionally required because its source (PAS300) treats it as a mandatory step for every online renewal, not a conditional one. refereeYearsKnownas an integer, not a boolean "known >1 year?" gate. The privacy statement says DIA collects "how long they have known you" as information, not merely a yes/no eligibility check; modelled as the same kind of fact DIA collects, with the >1-year eligibility requirement documented in the field's own description rather than encoded as a separate boolean not named in either source.- No
documents[]member. There is no fee for a RealMe verified identity (confirmed by the main page: "It's free to apply"), and the only file-like input is the applicant's own photo, already modelled as theonlinePhotofield (conditioned onidentityCheckMethod) rather than adocuments[]entry, consistent with how a single applicant-supplied photo is modelled elsewhere in this registry when no separate fee or attestation instrument exists alongside it. - Renewal is out of scope. See the
renew-your-verified-identitysource entry above.
Out of scope
- Renewing an existing verified identity — a distinct, lighter DIA process (see sources above); a candidate for a future, separate schema.
- Plain RealMe login without a verified identity — most services that say "log in with RealMe" (e.g. NZ passport or Immigration NZ applications, per the main source page's own example) need only a login, not the verified-identity credential this schema models.
- In-person RealMe partner store document/photo capture mechanics — this schema models the applicant-facing choice to use a partner store (
identityCheckMethod: realme_partner_store) but not the store's own in-person process, which is outside any online application flow. - Amendment/cancellation of an issued verified identity — mentioned by the privacy statement and terms of use as distinct DIA processes, neither described in enough field-level detail by the sources examined here to model.
Re-verification
Per the practice's cadence, nextReviewBy is set to 2027-01-02 (6 months). Re-check all five sources above on or before that date, and on any change to source.url. If a future session gains a way to reach the authenticated application form itself (e.g. a legitimate RealMe test/sandbox account becomes available), re-verify by direct form walkthrough and promote status to verified, per de/finanzamt/tax-identification-number's precedent.
View the raw record (VERIFICATION.md)
Version history
-
1.0.0draftlatestthis pagehas verification recordschema.json
Independent and non-affiliated
GovSchema is an independent, open-source project. This reference is not produced, reviewed, or endorsed by Department of Internal Affairs, RealMe (Te Tari Taiwhenua) or any government. The authoritative source is always the live government form and its official instructions.