What is Biometric Authentication (Face ID)?

This article explains what biometric authentication is, how it works, and addresses some common questions and concerns.

Biometric authentication uses your unique biological characteristics to verify your identity. Instead of typing a password, you can now use a fingerprint scan or a facial scan to securely sign in to your account. This method leverages the security features already built into your smartphone, such as Apple's Face ID and Touch ID, and Android's biometric security systems.

Key benefits include:

  • Enhanced Security: Biometric data is unique to you and is extremely difficult to replicate or steal. Unlike passwords, which can be forgotten, guessed, or compromised, your biometrics are an unchangeable and highly personal form of identification.
  • Faster, More Convenient Access: A quick glance at your phone or a simple touch of your finger is all it takes to sign in, eliminating the need to type in long, complex passwords.
  • Reduced Risk of Credential Theft: Biometrics significantly lower the risk of unauthorized access from phishing attacks or other forms of credential stuffing.

How to Set Up Biometric Authentication

To start using this feature, you must first have biometric authentication (Face ID, Touch ID, or a fingerprint scan) enabled on your device. If you haven't already, please follow the steps below for your device's operating system.

On iOS:

  1. Open your device's Settings.
  2. Tap on Face ID & Passcode or Touch ID & Passcode.
  3. Follow the on-screen instructions to set up Face ID or enroll your fingerprints. You will need to create a passcode as a fallback.

On Android:

  1. Open your device's Settings.
  2. Navigate to Security & Privacy or Lock screen and security (the name may vary by device).
  3. Tap on Biometrics or Fingerprints and follow the prompts to enroll your fingerprints or set up a face scan. You will also be prompted to set up a PIN, pattern, or password as a backup.

Once enabled on your device, you will be prompted to turn on biometric authentication within our app.

What if I dismiss the prompt?

If you choose to dismiss the initial prompt, you can easily enable biometrics later.

  1. Open the Unyte app.
  2. Go to your Account Settings.
  3. Look for the "Biometric Sign-In" option.
  4. Tap the toggle to turn it on.
  5. Your phone will then prompt you to confirm with your fingerprint or face scan.

Your Common Concerns Addressed

We understand that the use of biometric data raises important questions about privacy and security. We want to be completely transparent about how this feature works and what it means for your data.

Is my biometric data stored on your servers? Answer: No. Your biometric data is never stored on our servers. When you enable biometric authentication, we simply ask your device to verify your identity. The verification process happens entirely on your phone. Your fingerprint or facial scan data is securely stored within your device's dedicated hardware, known as the "Secure Enclave" on iOS devices and the Trusted Execution Environment (TEE) on many Android devices. We receive only a simple "yes" or "no" from your device, confirming a match.

Can my biometric data be stolen in a data breach? Answer: Since we do not store your biometric data, it cannot be compromised in a breach of our systems. The data remains on your device at all times, secured by your phone's own robust security architecture.

Can a hacker or a photo of me sign in to my account? Answer: Modern biometric systems are highly sophisticated and are designed to prevent spoofing. Both Apple's Face ID and many Android systems use advanced technologies to create a 3D map of your face or a detailed scan of your fingerprint, making it extremely difficult to fool them with a photo or a fake replica. Additionally, Face ID checks for "attention," requiring that your eyes are open and looking at the device.

What happens if my biometric authentication fails? Answer: If your biometric scan is not recognized (e.g., your hands are wet, you're in a dark room, or the sensor is dirty), you can always fall back to your traditional password or your device's PIN/passcode. Biometric authentication is a convenience layer, not a replacement for your password. You will always have the option to sign in manually.

Can I turn off biometric authentication? Answer: Yes, you can disable this feature at any time in the app's settings. If you choose to do so, you will need to use your password for all future sign-ins.

Our new biometric authentication feature is a significant step forward in making our app more secure and user-friendly. By leveraging the advanced security capabilities of your mobile device, we can offer a more reliable and convenient sign-in experience while maintaining the highest standards for your data privacy. We are confident this new feature will provide peace of mind and improve your experience.