Platform capability
Privacy & evidence
Explicit purpose, controlled lifecycle and traceable evidence.
Privacy & evidence
Target model from the specification. Actual product scope requires approval.
Record enough, not everything
Evidence should contain references, policy versions and results. Do not put raw images, biometric templates or clinical records in default logs.
Design evidence access
Evidence readers may differ from device operators. Audit viewing, export and reconciliation, with integrity checks defined in the approved profile.

Evaluation & evidence requirements
| Area | Requirement |
|---|---|
| Context binding | Organization, purpose, device, session and policy |
| Exception states | Missing data, ambiguous identity, expiry and fallback |
| Required evidence | Versioned report, scope, reviewer and limitations |
| Publication status | No product test report supplied in the website package; deployment is not inferred. |
A controlled biometric data model.
Within the customer environment
Biometric vault
biometricRefReference protected under the profile.
↔bindingRefControlled binding
Business identity store
subjectRefHIS / SIS / HRM / eGov
Tenant + purpose scoped. No cross-customer sharing by default.