Registered devices addresses the solution to eliminate the use of stored biometrics. It provides three key additional features compared to public devices:
1. Device identification – every device having a unique identifier allowing traceability, analytics, and fraud management.
2. Eliminating use of stored biometrics – biometric data is signed within the device using the provider key to ensure it is indeed captured live. Then the Registered Device (RD) Service of the device provider must form the encrypted PID block before returning to the host application.
3. A standardized RD Service provided by the device providers that is certified. This RD Service (exposed via Service interface defined in this spec) encapsulates the biometric capture, any user experience while capture (such as preview), and signing and encryption of biometrics all within it.