EBP Integra — Enterprise Technology, Digital Trust & Strategic Protectionebp-integra.com
Computer Vision (iBeta Level 3) • CV-02

Liveness & Anti-Spoofing

Prove there is a live person in front of the camera.

Scope

What the engagement covers.

Recognition without liveness is trivially defeated by a photograph. Passive presentation attack detection evaluated under ISO/IEC 30107-3 methodology at iBeta Level 3 closes that gap without asking the user to perform gestures.

Included capabilities

  • Single-frame passive liveness requiring no user gesture
  • Print, screen replay, video loop and cut-out attack detection
  • 2D and 3D mask detection including silicone and resin artefacts
  • Active challenge modes where risk justifies additional friction
  • Attack telemetry feeding fraud analytics and threshold tuning

Outputs and deliverables

  • Presentation attack detection test results
  • Threshold configuration with abandonment analysis
  • Attack telemetry and fraud reporting
  • Re-testing schedule and evidence pack
Workflow

How it is delivered, step by step.

Each step has an owner, an entry condition and an artefact that has to exist before the next step begins.

01AssessAttack surface per channel and the realistic attacker capability.
02TestEvaluate against a presentation attack instrument set.
03ConfigureScore thresholds balancing security against user abandonment.
04DeployChannel integration with fallback to manual review.
05MonitorAttack attempt telemetry and periodic re-testing.
Use cases

Where this is typically applied.

Use case 01

Remote onboarding where the attacker controls the device

Use case 02

High-value transaction authorization

Use case 03

Access control points that are unattended

Delivery model

The operating pattern for Computer Vision (iBeta Level 3).

The same delivery discipline applies across every capability in this line, so combined engagements stay coherent.

Define
Use case, lawful basis, accuracy targets and acceptance thresholds.
Prove
Bench test on representative data, including attack and edge-case sets.
Integrate
SDK or API embedding, gallery design and decision policy.
Deploy
Edge or on-premise rollout, tuning and human adjudication workflow.
Assure
Accuracy monitoring, bias review, revalidation and retention enforcement.

Integration

  • Core banking, onboarding and case management platforms via SDK or API.
  • Physical access controllers, turnstiles and video management systems.
  • Identity registries and watchlists under a controlled matching policy.
  • SIEM and audit platforms for decision evidence and administrative logs.

Engagement approach

Every deployment is scoped with a documented lawful basis, retention schedule and human adjudication path before a single template is enrolled. Accuracy and bias are measured on the client’s own population, not on vendor benchmarks.