Usage Policy
Rules for acceptable use of FaceTrust AI's consumer app, Merchant Desk, and institution and platform consoles.
Effective date: September 4, 2026
1. Who this applies to
This policy applies to anyone with access to a FaceTrust AI surface: consumers using the app, operators at a merchant desk, institution officers and branch managers, and platform staff.
2. Permitted use
Use FaceTrust AI only to verify or re-identify a real person's own registered identity, in connection with a legitimate purpose — onboarding, checkout, or a compliance check your institution is authorized to perform. Merchant and institution staff may only look up or verify a customer who is physically present and has consented to the check.
3. Prohibited use
- Attempting to verify or enroll someone using another person's photo, a printed image, a screen replay, or any other spoofing method.
- Looking up, searching, or attempting to identify a person without their knowledge or a legitimate, in-context reason to do so.
- Sharing staff credentials, hardware security keys, or session access with anyone else.
- Attempting to bulk-extract registry data, face embeddings, or verification logs beyond what a role is provisioned to access.
- Circumventing liveness checks, rate limits, or lockouts, or probing the API outside documented, authorized use.
- Using the Services to build a general-purpose facial recognition or surveillance capability unrelated to the identity-verification purpose they're provided for.
4. Institution obligations
Institutions are responsible for the conduct of their own operators and officers, for obtaining any consent required under applicable law before a verification is run, and for keeping their branch and staff records accurate — including promptly suspending access for staff who leave.
5. Enforcement
Violations may result in suspension of an account, an operator, or an entire institution's access, and are recorded in our audit trail. Suspected fraud or spoofing attempts may be escalated through our review-queue and dispute process, and reported to the relevant registry authority where required.
6. Reporting misuse
If you believe FaceTrust AI is being misused — for example, a verification you did not authorize — contact info@facetrustai.com or use the Data Subject Request form.
Questions about this document? Contact info@facetrustai.com. See also our Privacy Policy, Data Retention Policy, and Data Subject Request form.
Bring FaceTrust AI to your business
Talk to us about a pilot, or dig into the API reference to see exactly how it fits your stack.