Axiam provides a SaaS platform that replaces passwords with facial biometric authentication, capturing a live video frame, performing passive liveness detection, and issuing short‑lived signed JWTs for access. The solution offers SDKs for web, iOS, Android, and desktop, encrypts biometric templates, and integrates with existing CIAM/IAM systems while meeting GDPR and CCPA compliance.
Funding
Funding not disclosed
Founders
Product
Problem
Passwords, OTP‑based MFA, and reusable credentials are vulnerable to phishing, credential stuffing, and user fatigue, leading to frequent account takeovers and high support costs. Organizations that rely on these legacy authentication methods struggle to provide a frictionless login experience while maintaining security compliance.
Solution
Axiam delivers a biometric authentication SaaS that replaces passwords with live, verified facial identity at the point of login. The service captures a video frame, runs passive liveness detection, and matches the result against an encrypted biometric template stored in the cloud. Successful verification yields a short‑lived, cryptographically signed access token that can be validated by the client’s existing authorization layer. Integration is SDK‑first, supporting web, iOS, Android, and desktop environments, and requires only minutes to add to an application. Because no raw images are retained and all data are encrypted in transit and at rest, the platform meets GDPR and CCPA requirements. Axiam can be layered on top of any CIAM/IAM solution, providing centralized policy enforcement, audit logs, and SIEM hooks without requiring on‑premise biometric hardware.
Target Audience
Primary customers are developers and security teams building authentication flows for consumer apps, fintech portals, and privileged‑access workloads, as well as enterprises seeking to replace password‑based login with a scalable, compliance‑ready biometric solution.
Features
- Cross‑platform SDK (Web, iOS, Android, Desktop) with simple enroll/verify API calls
- Passive liveness detection to confirm a live human presence and block replay attacks
- Encrypted biometric templates (AES‑256) stored without raw image retention, ensuring privacy‑by‑design
- Issuance of signed, short‑lived JWT access tokens that integrate with existing session management
- RESTful verification endpoint with token signature validation for seamless backend integration
- Comprehensive audit logging and native SIEM connectors for compliance and incident response
- Optional Bastion Host gateway for privileged or high‑risk access scenarios, reducing attack surface
- GDPR/CCPA‑ready data handling and configurable token expiration policies