Trust service catalogue
Authenticate
Use a biometric result within an authentication flow, adding factors according to risk.
May an authenticated session be established?
Establish a kiosk session after verification and policy checks.
Purpose & scope
Use a biometric result within an authentication flow, adding factors according to risk.
Identity is bound to an authoritative source within an organization. Search population and access rights must be configured in advance.
From request to decision
Checks are bound to the same session.
Deployment-specific assurance
Do not use one threshold indiscriminately across devices and contexts.
| Component | Evaluation requirement | Evidence |
|---|---|---|
| PAD | Attack scope and evaluated configuration | Device / algorithm evaluation report |
| Performance | Threshold, test population, gallery, environment | Versioned evaluation profile |
| Device | Fresh session, certificate and revocation state | Device and configuration records |
| Authority & purpose | Processing basis and resource authorization | Policy version |