Seventh Sense
Technical papers

Seven papers,
one question each.

Seven papers for identity architects, security reviewers, privacy counsel and recovery teams. Each examines one question and provides claims you can test against a real deployment.

Explore the library
SenseCrypt / Technical library07 entries
Explore whitepapers
Types of biometric storage

From face image to disposable face tokens

A vendor-neutral map placing any face verifier between an unaltered capture and a sealed token, then asking what a breach of each store hands an attacker.

Possession and personhood

Keep your passkeys. Add the person

A passkey assertion proves that some unlocked device signed; the person is inferred. How one ceremony keeps possession intact and adds a verified person.

Harvest now, decrypt later

Why avoid storing biometric templates?

A face outlives everything, so a recording of it is always worth keeping. Where the quantum-safe property of the face token applies, and where it stops.

Recovery under attack

The helpdesk is the new perimeter

Support calls are where an authentication program is routed around. Why training cannot close the gap, and how a backchannel check replaces the interview.

Rollout and lifecycle

Privacy-preserving biometrics on day one

Enrollment, not cryptography, sets the schedule. Tokens minted in bulk from existing images; a joiner, mover and leaver lifecycle tied to the directory.

Reviewer walkthrough

Built for your security review

For reviewers: what a total database loss yields, why there is no OP-side session, enumeration resistance, and the limit beside every claim.

The first ceremony

Trust on first use, proof ever after

How a deployment with no face images admits its first users, through a provisioned shell or domain-gated signup, and how little a first-use hijack is worth.