The standards we follow

The standard on the left, what the product does about it on the right. Self-declared conformance by Catalisa, not lab-tested or certified.

Line by line

ISO/IEC 30107-3 · attack detectionEvaluate resistance to presentation attacks by species, with APCER and BPCER.

Passive liveness, randomized gestures, continuityAnd the evaluation report uses that same vocabulary, by attack species.

ISO/IEC 19795-1 · performanceMeasure face matching by false accept and false reject rates.

Score and threshold on every matchThe gray zone between thresholds goes to review, not to a yes or a no.

ICAO Doc 9303 · travel documentsRead the machine-readable zone and validate the check digits.

Passport MRZ and digital CNH (Brazilian driver's license) QRAn expired document is rejected if your policy requires it.

LGPD · arts. 5 II, 11, 18 and 20Biometrics is sensitive data; data subjects have the right to know, to delete, and to request review of an automated decision.

Required purpose, report and deletion by CPFAnd INCONCLUSIVE for human review, with a record of who decided.

RFC 8032 · NIST SP 800-38DSign with Ed25519; encrypt with AES-256-GCM.

Signed receipt, encrypted face enrollmentThe private key stays encrypted with us; the public key is yours, to verify.

Run your first verification and read the receipt.