The problem with account recovery
Users forget passwords. So they start account recovery often.
Most flows send a reset link or an OTP. An attacker can intercept it.
A help desk reset costs time and money. It also opens a path for social engineering.
- A reset link can reach the wrong inbox.
- An OTP can travel to an attacker.
- A help desk reset costs time and money.
- Social engineering can defeat a manual reset.
How SenseCrypt handles it
SenseCrypt ties recovery to the enrolled person. A user signs in by face to regain access.
Face matching runs on-device. SenseCrypt stores no biometric data on the server.
SenseCrypt uses patent-pending face tokenization. A face becomes a single-use face token.
So recovery needs no reset link and no password. The user recovers access in one step.
- A user signs in by face to recover access.
- Face matching runs on-device.
- SenseCrypt stores no biometric data on the server.
- No reset link, and no password.
The outcome
Users recover access on their own. They skip the help desk queue.
You cut recovery tickets and their cost. You also close a phishing path.
Recovery is phishing-resistant, like every sign-in. The sign-in binds to the device.
SenseCrypt writes an audit log for each recovery. You keep a clear record.
- Fewer help desk tickets.
- Lower recovery cost.
- Phishing-resistant recovery.
- An audit log for each recovery.
Who it fits
This use case fits customer identity (CIAM) teams with many users.
It fits workforce single sign-on (SSO) teams that run a busy help desk.
It fits B2B SaaS teams that support many tenants.
You can start with a 30-day free trial. The trial needs no card. SenseCrypt costs one dollar per user per month, flat.
- Customer identity (CIAM) teams.
- Workforce single sign-on (SSO) teams.
- B2B SaaS teams with many tenants.
- One dollar per user per month, flat.
Frequently asked questions
How does biometric account recovery work in SenseCrypt?
The enrolled user signs in by face to regain access. Face matching runs on-device. SenseCrypt stores no biometric data on the server.
Does account recovery need a help desk?
No. A user recovers access alone by face. This cuts help desk tickets and their cost.
Is recovery by face phishing-resistant?
Yes. There is no reset link and no password to phish. The sign-in binds to the device.
Does SenseCrypt verify a user's identity documents?
No. SenseCrypt authenticates the enrolled person. It is not identity proofing or a document check.
Related