> ## Documentation Index
> Fetch the complete documentation index at: https://developer.uphold.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Update enhanced due diligence

> Update the enhanced due diligence process for an individual user.

export const RestEndpointSubjects = ({subjects = []}) => {
  const subjectToIconMap = {
    'client': 'browser',
    'user:individual': 'user',
    'user:business': 'briefcase'
  };
  if (subjects.length === 0) {
    return null;
  }
  return <>
      {subjects.map(subject => <a key={subject} href="/rest-apis/authentication#subjects" className="border-0 opacity-85 hover:opacity-100 transition-opacity">
          <Badge stroke size="lg" icon={subjectToIconMap[subject]} color="gray" className="mr-1">
            {subject}
          </Badge>
        </a>)}
    </>;
};

<RestEndpointSubjects subjects={["user:individual"]} />

**Update enhanced due diligence** is the endpoint used to collect additional documentation when a user is categorized as **high risk** based on the outcome of the [customer-due-diligence](./update-customer-due-diligence) process.

<Tip>This process typically starts with a status of **exempt**, but it may be triggered automatically if the user's risk profile is elevated during standard due diligence.</Tip>

## Source of Funds Requirement

To complete the enhanced due diligence process, the user must provide **proof of source of funds**, based on the response provided for their primary source of income.
As an example, if the declared source is **salary**, the user must submit a **salary receipt** as proof.

The document is provided as a media file in `input.media`. At this time, only a single media file is supported for this process.

<AccordionGroup>
  <Accordion title="source-of-funds-proof" icon="file-invoice">
    A document that proves the user's source of funds.

    File Category: `document` (which allows pdf files as well as typical images mime-types)
  </Accordion>
</AccordionGroup>

<Tip>Files are created and uploaded using the [Create File](../files/create-file) endpoint.</Tip>


## OpenAPI

````yaml _media/specs/core-openapi.mintlify.json patch /core/kyc/processes/enhanced-due-diligence
openapi: 3.1.0
info:
  version: 0.1.0
  title: Core API
  description: >-
    The Core API provides essential building blocks that empower businesses to
    embed financial services into their applications.
  contact:
    name: Uphold API Team
    email: developers@uphold.com
    url: https://developer.uphold.com
servers:
  - url: https://api.enterprise.sandbox.uphold.com
    description: Sandbox
  - url: https://api.enterprise.uphold.com
    description: Production
security:
  - OAuth2: []
tags:
  - name: Authentication
    description: Authentication.
  - name: Countries
    description: Countries.
  - name: Users
    description: Users.
  - name: KYC
    description: Individual User's KYC.
  - name: KYB
    description: Business User's KYB.
  - name: Capabilities
    description: User capabilities.
  - name: Terms of service
    description: User terms of service.
  - name: Files
    description: Files.
  - name: Assets
    description: Assets, networks and rails.
  - name: Accounts
    description: Accounts.
  - name: External accounts
    description: External accounts.
  - name: Transactions
    description: Transactions.
  - name: Portfolio
    description: Portfolio.
  - name: Statements
    description: Statements.
  - name: Metadata
    description: Metadata.
  - name: Webhooks
    description: Webhooks.
paths:
  /core/kyc/processes/enhanced-due-diligence:
    patch:
      tags:
        - KYC
      summary: Update enhanced due diligence
      description: Update the enhanced due diligence process for an individual user.
      operationId: core.update-kyc-enhanced-due-diligence
      requestBody:
        $ref: >-
          #/components/requestBodies/update-kyc-enhanced-due-diligence-request-body
      responses:
        '200':
          $ref: '#/components/responses/update-kyc-enhanced-due-diligence-response'
        '404':
          $ref: >-
            #/components/responses/update-kyc-enhanced-due-diligence-not-found-response
        '409':
          $ref: >-
            #/components/responses/update-kyc-enhanced-due-diligence-conflict-response
      security:
        - OAuth2:
            - core.kyc.enhanced-due-diligence:update
components:
  requestBodies:
    update-kyc-enhanced-due-diligence-request-body:
      content:
        application/json:
          schema:
            type: object
            properties:
              input:
                description: Input of the KYC process.
                type: object
                properties:
                  media:
                    type: array
                    minItems: 1
                    maxItems: 1
                    items:
                      type: object
                      properties:
                        context:
                          description: The context of the file.
                          type: string
                          enum:
                            - source-of-funds-proof
                        fileId:
                          description: The id of the file.
                          type: string
                          format: uuid
                      required:
                        - context
                        - fileId
                required:
                  - media
              output:
                description: Output of the KYC process.
                type: object
                properties:
                  verifiedAt:
                    description: The date and time of the verification.
                    type: string
                    format: date-time
                required:
                  - verifiedAt
            required:
              - input
          examples:
            Update Process - Partner-verified:
              value:
                input:
                  media:
                    - context: source-of-funds-proof
                      fileId: 57a3ecf2-5404-4654-9ece-feb504a69f86
                output:
                  verifiedAt: '2020-01-01T00:00:00.000Z'
  responses:
    update-kyc-enhanced-due-diligence-response:
      description: KYC enhanced due diligence process updated.
      content:
        application/json:
          schema:
            type: object
            properties:
              enhancedDueDiligence:
                $ref: '#/components/schemas/kyc-enhanced-due-diligence'
            required:
              - enhancedDueDiligence
          examples:
            Process Updated - Partner-verified:
              value:
                enhancedDueDiligence:
                  code: enhanced-due-diligence
                  status: ok
                  verification:
                    model: partner-verified
                    method: manual
                    dependencies:
                      - customer-due-diligence
                  input:
                    media:
                      - context: source-of-funds-proof
                        fileId: 57a3ecf2-5404-4654-9ece-feb504a69f86
                  output:
                    verifiedAt: '2020-01-01T00:00:00.000Z'
      headers:
        x-uphold-request-id:
          description: >-
            A unique identifier for the request that can be shared with Uphold
            for troubleshooting purposes.
          required: true
          schema:
            type: string
            format: uuid
          examples:
            Request ID:
              value: 9092ee4d-f0fb-42e9-8787-b668dbcec531
    update-kyc-enhanced-due-diligence-not-found-response:
      description: Resource not found.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/error'
          examples:
            File Not Found:
              value:
                code: entity_not_found
                message: A file specified in the media array cannot be found
                details:
                  context: body
                  entity: file
                  property: input.media
      headers:
        x-uphold-request-id:
          description: >-
            A unique identifier for the request that can be shared with Uphold
            for troubleshooting purposes.
          required: true
          schema:
            type: string
            format: uuid
          examples:
            Request ID:
              value: 9092ee4d-f0fb-42e9-8787-b668dbcec531
    update-kyc-enhanced-due-diligence-conflict-response:
      description: Business logic error.
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/error'
          examples:
            File Invalid:
              value:
                code: file_invalid
                message: A file specified in the media array has not been uploaded
                details:
                  context: body
                  property: input.media
            Verified Date Invalid:
              value:
                code: date_invalid
                message: The date must be in the past
                details:
                  rule: difference-greater-than-threshold
                  threshold:
                    limit: 0
                    unit: milliseconds
                  context: body
                  property: output.verifiedAt
            Process Updates Not Allowed:
              value:
                code: operation_not_allowed
                message: The current status of the process does not allow updates
                details:
                  reasons:
                    - kyc-process-update-not-allowed
      headers:
        x-uphold-request-id:
          description: >-
            A unique identifier for the request that can be shared with Uphold
            for troubleshooting purposes.
          required: true
          schema:
            type: string
            format: uuid
          examples:
            Request ID:
              value: 9092ee4d-f0fb-42e9-8787-b668dbcec531
  schemas:
    kyc-enhanced-due-diligence:
      description: The KYC enhanced due diligence object.
      type: object
      properties:
        code:
          description: The code of the KYC process.
          type: string
        status:
          $ref: '#/components/schemas/kyc-process-status'
        verification:
          $ref: '#/components/schemas/kyc-process-verification'
        input:
          description: Input of the KYC process.
          type: object
          properties:
            media:
              type: array
              items:
                type: object
                properties:
                  context:
                    description: The context of the file.
                    type: string
                    enum:
                      - source-of-funds-proof
                  fileId:
                    description: The id of the file.
                    type: string
                    format: uuid
                required:
                  - context
                  - fileId
        output:
          description: Output of the KYC process.
          type: object
          properties:
            verifiedAt:
              description: The date and time of the verification.
              type: string
              format: date-time
          required:
            - verifiedAt
      required:
        - code
        - status
    error:
      description: The error information.
      allOf:
        - $ref: '#/components/schemas/feedback'
    kyc-process-status:
      description: Status of the KYC process.
      type: string
      enum:
        - ok
        - failed
        - running
        - pending
        - exempt
    kyc-process-verification:
      description: Configuration of this process.
      type: object
      properties:
        model:
          description: The verification model to complete this process.
          type: string
          enum:
            - none
            - partner-verified
            - uphold-verified
        method:
          description: >-
            Whether this process is verified automatically in the background or
            requires user action.
          type: string
          enum:
            - automatic
            - manual
        triggers:
          description: >-
            Other processes that, once updated, trigger this process to run
            automatically. Only present when `method` is `automatic`.
          type: array
          items:
            type: string
            enum:
              - profile
              - identity
        dependencies:
          $ref: '#/components/schemas/kyc-process-dependencies'
      required:
        - model
        - method
        - dependencies
    feedback:
      description: A feedback message with a code and human-readable description.
      type: object
      properties:
        code:
          description: A short string with a brief explanation about the code reported.
          type: string
        message:
          description: A human-readable message providing more details.
          type: string
        details:
          description: Additional information about the feedback reported.
          type: object
          additionalProperties: true
      required:
        - code
        - message
    kyc-process-dependencies:
      description: The processes that must be updated before you can update this one.
      type: array
      items:
        type: string
        enum:
          - profile
          - email
          - phone
          - identity
          - proof-of-address
          - customer-due-diligence
          - enhanced-due-diligence
          - crypto-risk-assessment
          - self-categorization-statement
          - tax-details
  securitySchemes:
    OAuth2:
      type: oauth2
      description: OAuth 2.0 authentication.
      flows:
        clientCredentials:
          tokenUrl: /core/oauth2/token
          scopes:
            core.users:act-on-behalf-of: Grants access to act on behalf of a user
            core.users:create: Grants access to create users
            core.users:read: Grants access to view users
            core.users:delete: Grants access to delete users
            core.users.metadata:read: Grants access to view user metadata
            core.users.metadata:write: Grants access to modify user metadata
            core.kyc:read: Grants access to view KYC processes
            core.kyc.profile:update: Grants access to update profile KYC process
            core.kyc.address:update: Grants access to update address KYC process
            core.kyc.email:update: Grants access to update email KYC process
            core.kyc.phone:update: Grants access to update phone KYC process
            core.kyc.identity:update: Grants access to update identity KYC process
            core.kyc.proof-of-address:update: Grants access to update proof-of-address KYC process
            core.kyc.customer-due-diligence:update: Grants access to update customer due diligence KYC process
            core.kyc.enhanced-due-diligence:update: Grants access to update enhanced due diligence KYC process
            core.kyc.crypto-risk-assessment:update: Grants access to update crypto risk assessment KYC process
            core.kyc.self-categorization-statement:update: Grants access to update self-categorization statement KYC process
            core.kyc.tax-details:update: Grants access to update tax details KYC process
            core.kyb:read: Grants access to view KYB processes
            core.kyb.profile:update: Grants access to update profile KYB process
            core.kyb.documents:update: Grants access to update documents KYB process
            core.kyb.financial-institution:update: Grants access to update financial institution KYB process
            core.kyb.associated-persons:create: Grants access to create KYB associated persons
            core.kyb.associated-persons:read: Grants access to view KYB associated persons
            core.kyb.associated-persons:delete: Grants access to delete KYB associated persons
            core.kyb.associated-persons.profile:update: Grants access to update profile KYB associated person process
            core.kyb.associated-persons.identity:update: Grants access to update identity KYB associated person process
            core.kyb.associated-persons.proof-of-address:update: >-
              Grants access to update proof-of-address KYB associated person
              process
            core.kyb.attestation:trigger: Grants access to trigger the attestation process
            core.capabilities:read: Grants access to view user capabilities
            core.terms-of-service:read: Grants access to view terms of service
            core.terms-of-service:accept: Grants access to accept terms of service
            core.files:create: Grants access to create files
            core.files:read: Grants access to view files
            core.files.metadata:read: Grants access to view files metadata
            core.files.metadata:write: Grants access to modify files metadata
            core.accounts:create: Grants access to create accounts
            core.accounts:read: Grants access to view accounts
            core.accounts:update: Grants access to update accounts
            core.accounts:archive: Grants access to archive accounts
            core.accounts:deposit-method: >-
              Grants access to deposit method needed for depositing into
              accounts
            core.accounts:use-test-helpers: Grants access to test helpers of accounts
            core.accounts.metadata:read: Grants access to view accounts metadata
            core.accounts.metadata:write: Grants access to modify accounts metadata
            core.assets:use-test-helpers: Grants access to test helpers of assets
            core.external-accounts:create: Grants access to create external accounts
            core.external-accounts:read: Grants access to view external accounts
            core.external-accounts:update: Grants access to update external accounts
            core.external-accounts:delete: Grants access to delete external accounts
            core.external-accounts.metadata:read: Grants access to view external accounts metadata
            core.external-accounts.metadata:write: Grants access to modify external accounts metadata
            core.transactions:create: Grants access to commit quotes
            core.transactions:read: Grants access to view transactions
            core.transactions.metadata:read: Grants access to view transactions metadata
            core.transactions.metadata:write: Grants access to modify transactions metadata
            core.transactions.requests-for-information:read: Grants access to view transactions requests for information
            core.transactions.requests-for-information:update: Grants access to update transactions requests for information
            core.portfolio:read: >-
              Grants access to view portfolio overview, performance, and
              historical balance
            core.statements:read: Grants access to read statements
            core.webhooks:management-link: Grants access to create webhook management links

````