Solution
Passwordless Biometric Authentication with Liveness
FacePlugin provides private biometric authentication that verifies a user by matching their face and confirming that a live person is present. Replace passwords and one-time passcodes, strengthen multi-factor authentication, or add a liveness-backed security check for sensitive actions.
Deploy FacePlugin on your own servers, private cloud, or compatible mobile devices to keep biometric processing under your organization’s control – without per-authentication processing fees.
- Liveness-backed logins
- On-premises & on-device
- No per-auth fees
0
Passwords to steal
NIST
FRVT-evaluated
<1s
To authenticate
100%
On-premises
What Is Biometric Authentication?
Biometric authentication verifies that a person is the authorized user by comparing a live biometric sample with a previously enrolled biometric template. FacePlugin uses facial biometrics for this process: the user presents their face, the system checks for live presence, and the captured face is compared with the enrolled template.
Unlike identity verification, which usually establishes who a person is during onboarding, biometric authentication confirms that a returning user is the same person who was previously enrolled.
FacePlugin can support several authentication models:
- Passwordless authentication: Use a verified face instead of a password or one-time passcode.
- Multi-factor authentication: Combine face verification with a password, device, security key, or other factor.
- Step-up authentication: Require an additional face-and-liveness check before a sensitive action.
- Account recovery: Verify the enrolled user before approving a password reset or account-access request.
FacePlugin returns a structured match and liveness result to your application. Your application, IAM, or SSO platform then applies its own access policies to authorize, reject, or escalate the request.
Why Face Authentication Needs Liveness Detection
Facial recognition alone can determine whether two facial templates are similar, but it does not always prove that a real person is physically present. Liveness detection adds presentation-attack detection to the authentication process.
FacePlugin combines face matching with passive or active liveness checks to help identify and block common spoofing attempts involving:
- Printed or digitally displayed photographs
- Recorded or replayed videos
- Screen-based presentation attacks
- Supported mask and face-presentation attacks
Passive liveness can support fast, low-friction everyday authentication. Active challenges can be introduced when additional assurance is required for higher-risk actions such as payments, transfers, password resets, or privilege escalation.
Face + liveness in one check
A single SDK call that proves identity
FacePlugin’s biometric authentication bundles face detection, template extraction, and active or passive liveness into one lightweight SDK.
Liveness-backed matching
On-premises deployment
On-device ready
IAM friendly
Sub-second authentication
Use cases
Where passwordless face login works
Replace VPN, desktop, and SaaS passwords with a quick face check at sign-in.
Workforce SSO
Replace VPN, desktop, and SaaS passwords with a quick face check at sign-in.
Customer account access
Let users log into mobile and web apps with face instead of passwords or OTPs.
Step-up authentication
Challenge high-risk actions like transfers, password resets, or privilege escalation with a liveness-backed face check.
How it works
From enrollment to access in three steps
Enroll
The user registers a face template once, generated and stored inside your environment.
Authenticate
At login the SDK captures a selfie, confirms liveness and matches it to the template.
Authorize
Return a pass / fail decision your app or IAM uses to grant or step-up access.
FAQ
Frequently asked questions
- How does FacePlugin verify user identity?
FacePlugin authenticates users through facial biometrics combined with liveness detection, providing a secure alternative or additional layer beyond traditional passwords.
- Can FacePlugin prevent spoofing attacks?
Yes. Built-in liveness detection identifies and blocks spoofing attempts using printed photos, replayed videos, digital screens, and 3D masks before authentication is approved.
- How are biometric templates protected?
Instead of storing face images, FacePlugin generates encrypted biometric templates that remain securely within your own servers or private cloud.
- Can FacePlugin connect with existing identity systems?
Yes. The SDK integrates easily with existing IAM, SSO, and authentication platforms by returning simple face match and liveness verification results.
- Does it work on mobile and web?
Yes. Face authentication works through web cameras and via native iOS and Android SDKs, including fully on-device operation for offline or high-privacy scenarios.
Powered by
SDKs behind this solution
Face Recognition SDK
Accurate 1:1 and 1:N face matching on your own infrastructure.
Face Liveness SDK
Passive and active anti-spoofing that stops presentation attacks.
ID Verification Suite
End-to-end eKYC when you need to verify identity at onboarding.
Ready to go passwordless?
Talk to our team about adding liveness-backed face authentication to your workforce or customer apps.