Trusted Palm ID / identity servicesDevice architecture.
Device architecture.
Explicit processing boundaries.
A functional model for selection and compatibility testing, not evidence that every model implements every block.
TRUSTED PALM DEVICEFunctional schematic - not a commercial model
RGBPalm Print
IR / NIRPalm Vein
↓
Capture & session control
↓
Device identity & protected channel
↓
Trusted Palm ID CoreProfile, policy & evidence
Sensors, PAD and processing placement depend on the model, firmware and engine.
From sensor to decision.
| Block | Responsibility | What to verify |
|---|---|---|
| RGB / IR-NIR | Model-specific palm capture | Capture range, environment and quality |
| SDK / firmware | Session control and permitted payload output | Version, API, format and update support |
| Quality / PAD | Edge or server processing under the profile | Engine, threshold, attack classes and report |
| Device identity | Bind capture to a managed endpoint | Certificate/credential, revocation and freshness |
| Core / binding | Match and bind within the authorized scope | Tenant, purpose, proofingRef, policy |
Start with a controlled PoC.
Define purpose, devices, risks and acceptance criteria before scaling.