Temporary Device Activation with Face Authentication
Purpose
If your users do not have their private device during the provisioning procedure for a shared (temporary) OrgID device, they may do so using face authentication. This completely removes the need for the user to have or use their private device to successfully complete the shared device provisioning process.
Implementation
In order to enable face authentication for shared (temporary) devices:
Get in touch with our partner support team at: partnersupport@frejaied.com
They will enable this feature for you and send you a link in the following format:
https://app.prod.frejaeid.com/freja?action=addDevice&relyingPartyShortId=123123
This is an example only, the relyingPartyShortId value differs for each client.
You may send this link to users directly, useful for mobile-only flows. Or you may present it as a QR code (any QR code generating tool will do), should you want to present it on a web page your users have access to.
Your users initiate the provisioning process via this link and undergo a quick security check after which they activate the shared device.
What it looks like for the end user
From the point of view of your users, the procedure is as follows:
Example of initial screen you can present your users. | Following the link or scanning the QR code will open Freja. | The user enters their Freja UPI or personnummer.
| The user takes a photo of themselves.
| The user enters the PIN from their Freja account.
| The provisioning is complete.
| OrgID on the shared device is ready.
|