Open audit, fair games, real social impact.

The Leader Gambling Foundation is a non-profit technology foundation that certifies and continuously audits gambling operators. We verify legal compliance, randomness and payout distribution using AI anti-fraud and open data. Our mission is to guarantee clean games and responsible redistribution of resources.

Governance & Open Data

Public quarterly reports, independent audits, and CSV/JSON repositories for community oversight.

Quarterly reports Financial open data Independent audit

Technical Certification

RNG testing, fairness analysis, per-game RTP verification, and continuous anomaly monitoring.

RNG RTP AI anomaly detection

International mission

We work as an independent auditor for operators and regulators, with an initial geographic focus on Spain and Portugal. We publish transparent reports, uphold AML/KYC standards, and channel a portion of audited proceeds toward social-impact programs linked to human-AI transition.

We do not operate gambling; we audit it. Entities referenced on this site are descriptive of the intended framework and do not imply current licensure or affiliation.

How we audit an operator

1) Legal due diligence

Collection and verification of permissions by jurisdiction, Terms of Service, KYC/AML controls, prize policy and country-specific rules.

2) RNG & fairness validation

NIST/Dieharder batteries, seed/entropy inspection, non-determinism checks, and replay analysis for statistical signatures.

3) RTP & payout certification

Per-title audits (slots/bingo/scratch), observed vs theoretical RTP, prize floors/caps, and house-edge governance.

4) Continuous monitoring (AI)

Anomaly detection, drift of distributions, suspicious house-win spikes, and correlation with features (campaigns, A/B, time-of-day, user clusters).

Verification technology stack

AI anti-fraud

Outlier models (Isolation Forest/Robust Covariance), time-series monitoring, and statistical tests (KS/χ²) for fairness.

  • Real-time alerts (webhooks) when distributions deviate from the expected baseline.
  • Explainability (SHAP/LIME) for diagnostics and human audit trails.

RNG & cryptography

Randomness tests (NIST SP 800-22/Dieharder), seed verification, signed logs (WebCrypto/Ed25519), and integrity proofs.

  • Key rotation and secure enclaves for number generation.
  • Commit-reveal proofs and build-hash attestations.

Open data & public auditability

CSV/JSON endpoints with prizes paid, effective rates, per-game RTP, audits and changelogs. Verifiable mirroring and public timestamping.

Privacy & compliance

Pseudonymization, data minimization, and GDPR/AML controls for operators and beneficiaries.

Regulatory posture (EU focus)

What we are: an independent, non-profit auditor. We do not operate gambling; we certify and monitor it.

Initial geography: Spain and Portugal. Our work aligns with public regulatory frameworks in each country and the EU, without claiming affiliation, endorsement or licensure.

Reference frameworks (non-affiliation, for context only)

  • Spain: National gambling regulation overseen by the Dirección General de Ordenación del Juego (DGOJ). Operators must comply with licensing, technical standards, player protection and taxation applicable to prizes/winnings.
  • Portugal: Supervision by Serviço de Regulação e Inspeção de Jogos (SRIJ). Requirements include authorization, technical certification, AML/KYC, responsible gambling, and applicable tax treatment of prizes.
  • EU baseline: GDPR for data protection, AML directives (incl. KYC/CTR/STR), and consumer-protection principles. Local laws prevail per jurisdiction.

Planned future steps include formal liaison channels with regulators and publication of conformity mappings. Until then, our deliverables remain purely technical audits and public transparency reports.

LeaderGFL audit seal

Certified operators display the seal below. The script validates domain, signature, build integrity and public endpoints.

LeaderGFL • Certified
Verifying…

Embed guide

Place this before </body> on the operator’s site:

<script async src="https://leadergfl.org/seal.js"
  data-site="example.com"
  data-operator-id="op_123"
  data-signature="BASE64_SIGNATURE"
  data-build-hash="SHA256_OF_BUILD"></script>

seal.js verifies the Ed25519 signature, matches the current domain to data-site, checks the operator’s public endpoint (/.well-known/leadergfl.json) and shows status (OK/ATTENTION/REVOKED).

Reports & documents

Financial open data

CSV/JSON with prizes, observed RTP, house-edge, donations and social allocation.

RNG methodology

Testing protocols (NIST/Dieharder), seeding, commit-reveal, signatures and key rotation.

Governance & audit

External committee, audit calendar and quarterly report template.

Social-impact integration

Transparent allocation toward micro-grants and re-skilling programs tied to human-AI transition, with open ledgers and quarterly disclosures.

Frequently asked questions

What does LeaderGFL audit?

Licensing posture, RNG, fairness/RTP, crypto-security, payout distribution and AML/KYC controls.

Is the seal mandatory?

For certified operators, yes — the seal and the /.well-known/leadergfl.json endpoint are required for continuous verification.

Which data are public?

Quarterly reports, aggregated metrics (per-game RTP), prize and donation data (pseudonymized), and an audit changelog.

How does revocation work?

On detected non-conformities, the seal turns to ATTENTION/REVOKED, and the operator receives deadlines with a remediation plan.

Talk to the audit team

Operators: request technical certification and seal integration. Communities & regulators: access our public data and reports.

cert@leadergfl.orgcompliance@leadergfl.org
Ready for fair games?
Request certification