Privacy-First Facial Authentication

At SAFR, we believe security should never force a choice between powerful and private. SAFR SCAN is engineered to deliver both: accurate, fast face authentication that keeps your biometric data protected, every time.


Privacy By Design

Your Biometrics.

Your Control.

Your biometric template belongs to you. SAFR SCAN supports approaches that give users control over where their template is stored, when it is presented, and how it is used for authentication.

Biometrics
on Mobile

Biometrics on Mobile stores the biometric template on the user’s smartphone, giving the user control and avoiding the need for a centralized biometric template database.

  • User-Controlled Credential
  • No Centralized Biometric Database
  • Consent Built Into Enrollment
  • Secure Bluetooth + Zero Trust

Biometrics
on Card

Biometrics on card stores the encrypted biometric template on a smart card physically held by the user. It can support offline 1:1 authentication.

  • User in Total Control
  • No Centralized Database Required
  • Zero Trust Architecture
  • Works Completely Offline

Intent-Based Authentication

Authentication,

On Your Interaction.

Authentication begins only when you choose to authenticate. Rather than continuously processing people in the background, SAFR SCAN activates only when a user intentionally interacts with the reader, creating a more transparent, privacy-focused authentication experience.

Privacy, On Your Terms

For
Organizations

You Set the Rules

SAFR SCAN gives your organization complete control over how biometric data is managed.

For
Individuals

Your Privacy. Your Choice.

SAFR SCAN is designed to give you clarity and control over your biometric data.

FAQs

Facial Authentication answers the question, “Are you who you say you are?” It’s commonly used for access control, allowing authorized people to unlock doors or gain access without a badge or PIN. This is also called 1:1 authentication: comparing one person to their own enrolled record.

Facial Recognition answers the question, “Do we recognize this person?” It compares a person’s face against a database or watchlist to determine whether there’s a match. This is also called 1:N recognition: searching across many records.

In short: authentication verifies authorized access, while recognition searches for possible matches.

SAFR SCAN supports both, 1:1 authentication for access control, and 1:N recognition for watchlist or search use cases, configured based on what each organization needs

No. The transformation from face image to biometric template is one-way and irreversible. The template is not a photograph and cannot be converted back into the original image.

SAFR SCAN is built with security at every layer, protecting biometric data throughout its entire lifecycle.

Biometric Data Protection

  • End-to-end encryption during template generation, storage, transmission, and authentication
  • Separation of face images and biometric templates for an additional layer of protection
  • Privacy by Design architecture that minimizes data exposure

Enterprise-Grade Security

  • AES-256 encryption
  • RSA-2048 cryptography
  • HTTPS with TLS 1.2 and TLS 1.3
  • AWS Key Management Service (KMS) support

Access & Platform Security

  • 802.1X network authentication
  • SSO and LDAP integration
  • Role-based access controls (RBAC)
  • Comprehensive audit logging
  • Zero Trust deployment options

Compliance & Best Practices

  • Built using ISO 27001-aligned security practices to help organizations meet enterprise security and compliance requirements.

SAFR SCAN Is Built For Intentional Authentication, Meaning, It Only Engages When You Take An Action, Like Presenting A Badge, Tapping The Screen, Or Otherwise Starting The Process, Rather Than Continuously Scanning Everyone Who Walks By.

During That Moment, A Live Image Is Used To Create A Biometric Template For Matching. It Is Not Kept As A Photo Gallery Of People Passing By.

Because Every Organization Has Different Privacy And Security Needs, They Control How This Is Configured And How Long Biometric Data Is Stored.

No. SAFR does not use customer biometric data to train models, improve algorithms, or for any purpose outside of the authentication function your organization has configured.

Floating lock graphic with hand underneath

View SAFR’s Best Practices for Face Authentication

Best practices for notice, consent, data security, and responsible deployment built for organizations that take privacy seriously.