A breach-free security layer

Unbreakable
protection,
without storing
user keys.

Facenition turns user biometrics data into a key that opens user accounts — but never sits in any database to be stolen. If there's nothing to breach, there's nothing to lose.

/ Privacy
Zero biometric data leaves the device
/ Cryptography
Mathematically irreversible by design
/ Compliance
GDPR, BIPA, CCPA — by construction
Patent Pending
Bullet-proof Cryptographic Core
Client-Side Processing
Zero Server-Side Biometrics
The problem

Every stored
biometric is a
future leak.

Password databases get breached. So do face-print and biometric databases. The difference: you can change a password. You can't change your biometrics. Once biometric data leaks, the damage is permanent — for the entire population it covered.

$4.88M
Average cost of a data breach in 2024, per IBM. Biometric breaches are typically higher — and uninsurable against future use.
1.2B
Biometric records exposed in major breaches over the past decade. Unlike passwords, none of them can be reset.
Lifetime of a leaked biometric data. It identifies the same person, on every system, forever.
The pipeline

Biometrics goes in.
A token comes out.

Four deterministic stages turn biometric signature into a fixed-length token. Every step is one-way; no stage retains data that can reconstruct the original biometric data or the person owns it.

/01 Capture

Securely Capture Identity

Biometric information is captured and prepared on the user's device using a privacy-first process designed to minimise exposure of sensitive data.

/02 Transform

Create a Privacy-Preserving ID

The biometric information is transformed into a unique digital signature that represents the individual without revealing their original biometric characteristics.

/03 Standardise

Ensure Reliable Recognition

The signature is normalised to ensure consistent results across different devices, environments, and capture conditions, improving accuracy and reliability.

/04 Protect

Store Only What Matters

A secure token is generated for verification purposes. The original biometric data is never stored, helping organisations meet privacy and compliance requirements while maintaining a seamless user experience.

Architecture

A clean line
between device
and server.

The architecture enforces the privacy property at the network boundary. Pixels stay on the device. Tokens are the only thing that crosses to the server.

/Step 1
Detector
/Step 2
Detect & embed
/Step 3
Encrypted token
⎯ ⎯ ⎯ ⎯ ⎯ ⎯ ⎯ ⎯ ⎯ ⎯ Device boundary — image never crosses ⎯ ⎯ ⎯ ⎯ ⎯ ⎯ ⎯ ⎯ ⎯ ⎯
/Step 4
Token (only)
/Step 5
Authentication API
/Step 6
Granted / denied
Applications

Where identity
becomes the key.

Anywhere a system needs to recognize a returning user without ever holding their biometric data — Facenition fits seamlessly into your authentication flow.

/01

Two-factor authentication

Pair a biometric token with a password to create a true two-factor flow. The biometric proves presence, the password proves intent. Neither can be derived from the other.

/02

Passwordless login

Replace usernames and passwords with a single glance at the camera. Users skip account recovery flows. You skip the liability of storing credentials.

/03

Encryption key derivation

Use the biometric token as the foundation for encrypting sensitive content. Private documents, messages, and vaults stay sealed unless the rightful owner is physically present at the device.

/04

High-assurance access

Banking transactions, vault openings, signature authorizations — any step where the cost of an impersonation is high enough to demand cryptographic proof of who is at the keyboard.

/05

Cross-platform identity

The same person produces the same token everywhere — across devices, sessions, and platforms — without any account, central identity provider, or tracking trail.

/06

Audit-safe records

Bind documents, transactions, or events to a verifiable biometric token without storing biometric data. Compliance teams get an unforgeable record; regulators get a clean audit trail.

/07

Healthcare & patient identity

Match a returning patient to their record without ever uploading their photograph. HIPAA-aligned by design — there is no protected health image to safeguard.

/08

Decentralized credentials

Pair Facenition tokens with self-sovereign identity systems. The user's biometric becomes the anchor for their verifiable credentials — no centralised authority required.

/09

Workforce access control

Physical or system access without enrolling employees into a biometric database. Tokens revoke instantly; the underlying biometric was never collected in the first place.

Why Facenition

The difference is what we
don't have.

Conventional biometric authentication keeps your data on file to recognise you next time. Facenition keeps only a unique token, and the token cannot become your biometric.

PasswordsTraditional biometric systemsFacenition
Proves the user is present
Survives database breach
No biometric data storedn/a
Mathematically irreversiblen/a
Works without an account
GDPR / BIPA exposurelowseverenone by design
Recovery after compromiseresetimpossibleno compromise possible
Design principles

Built on what
cannot be reversed.

  1. /I

    One-way by mathematics

    The privacy guarantee is not a promise — it is built into the mathematics. Knowing the token reveals nothing about the underlying biometric. Possessing the database reveals nothing about anyone in it. The same cryptographic strength that secures financial systems worldwide protects every identity Facenition processes.

  2. /II

    Processing happens client-side

    Every step of biometric processing happens on the user's own device. Raw biometric data never traverses the network — only the final, irreversible token does. This is the strongest form of data minimisation: by the time the data is in transit, it isn't biometric anymore.

  3. /III

    Tokens are not identities

    A Facenition token cannot be reverse-searched, cross-referenced, or matched against any biometric database in the world. It is a unique token — indistinguishable from random bytes to anyone outside the system that produced it.

  4. /IV

    Stable across photographs

    Real-world biometric capture is messy — lighting changes, sensor differences, expression, age. Facenition's patented core absorbs this natural variation and consistently produces the same token for the same person, while keeping different people clearly separated. Recognition that just works.

  5. /V

    Standard cryptography only

    No experimental cryptography. No proprietary algorithms behind the privacy guarantee. Facenition relies on the most-trusted cryptographic standards in production today — the same primitives that secure global financial systems and national infrastructure.

Regulation & standards

Compliance by construction.

Because Facenition processes biometric data on the device and persists nothing sensitive, the heaviest obligations imposed by modern privacy law simply do not attach.

/EU
GDPR

Article 9 special-category obligations do not attach when no biometric data is stored or processed for identification on our servers.

/US — IL
BIPA

The Illinois Biometric Information Privacy Act regulates collection and retention. Facenition collects nothing and retains nothing.

/US — CA
CCPA / CPRA

Sensitive personal information requirements do not apply where the underlying biometric never enters the regulated party's systems.

/Global
ISO 27001

Data-minimization controls satisfied by definition: no minimization needed when no biometric data exists to minimize.

Frequently asked

Plain answers to
honest questions.

Static-capture spoofing — using a photograph, recorded video, or copied fingerprint — is a real concern that Facenition addresses through optional liveness checks at the capture layer. The Facenition token is the same whether the biometric came from a live capture or a forgery, so the defence against spoofing is shared with every modern biometric system: liveness detection, depth cues, or device pairing. The token mechanism itself does not change that surface.
FaceID, Windows Hello, and Touch ID store an encrypted biometric template on a single device — they unlock that one device. Facenition produces a portable token that works across devices, platforms, and services, without storing anything anywhere. It complements device-level biometrics rather than replacing them.
Possible in principle but vanishingly rare in practice. The probability of two unrelated people producing the same token falls below one in millions in typical configurations. For high-assurance deployments, Facenition is designed to be paired with a second factor — password, device, or hardware token — that cleanly resolves any rare collision into a unique identity.
Facenition is designed to be tolerant of the everyday variation that comes with real-world biometrics — different lighting, modest changes in appearance, normal sensor differences. Major changes — significant injury, surgical alteration, or multi-decade aging — can produce a different token, at which point re-enrolment is required. This is no different from updating a password, except the trigger is biological rather than a security policy.
Yes. The entire process — capture, transformation, token generation — runs on the device itself. Modern smartphones complete it in well under a second; older devices may take a few seconds. Nothing biometric leaves the device; only the resulting token reaches your servers.
Yes. The patented core of Facenition is what makes the one-way function reliably produce the same token across many different captures of the same person — the breakthrough that turns biometric authentication from a stored-template system into a true privacy-preserving one. Full details are at patent.facenition.com.
Facenition integrates as a lightweight component your application embeds — capture happens on the user's device, your backend treats the resulting token like any other opaque credential. Store it, compare it, revoke it. Reference integrations are available for every major stack. Talk to us for a walkthrough.
Patent Pending — System & Method

The algorithm at the core is
our invention.

The breakthrough at the heart of Facenition — the system that allows one-way tokens to remain stable across many different captures of the same person, while keeping different people clearly separated — is the subject of a pending patent application.

Read about the patent

Bring presence
to your authentication.

Talk to us about embedding Facenition into your application, your hardware, your compliance stack.

Start a conversation