Zero-Trust Security, Passkey Biometrics & Hierarchical RBAC
Built from the ground up with FIDO2 WebAuthn passkeys, encrypted Redis session tokens, strict organizational RBAC, and PWA installability.
Interactive WebAuthn Passkey Simulator
Experience how passwordless biometric authentication works with device hardware security.
Sign in with Touch ID / Face ID
Zero passwords sent over the wire. Hardware enclave solves private challenge.
User: arman.rezaei@enterprise.com
CredentialId: pk_cred_883011_live
Status: WAITING_DEVICE
Security Architecture & Controls
FIDO2 biometrics, hierarchical RBAC, and zero plaintext credentials.
FIDO2 / WebAuthn Passkeys
Sign in effortlessly using TouchID, FaceID, Windows Hello, or physical YubiKeys. Zero shared secrets, immune to phishing attacks.
- Biometric device verification
- Hardware security key support
- Zero password storage in database
Organizational SSO Integration
Connect with existing enterprise identity providers (SAML 2.0 / OIDC / LDAP) for centralized user lifecycle management.
- Single sign-on federation
- Automatic user attribute sync
- Session termination hooks
Granular Role-Based Access (RBAC)
Multi-tiered authorization separating Super Admins, Department Directors, Deputies, Staff, and Flow Designers.
- Departmental isolation
- Step-by-step permission gates
- Memo recipient visibility scoping
Opaque Redis Session Architecture
Session tokens are stored as encrypted opaque keys in Redis with strict httpOnly, secure, sameSite cookie enforcement.
- Instant session revocation
- Distributed cache scalability
- CSRF and XSS hardened
Progressive Web App (PWA)
Install Blink directly onto iOS, Android, macOS, and Windows with offline caching and native mobile responsiveness.
- Add to Home Screen capability
- Background sync support
- Native app feel with fluid UI
Security & Trust Badges
FIDO2 Certified
Hardware-backed biometric authentication.
AES-256 Encryption
All flow transfer bundles and attachments encrypted at rest.
Zero Plaintext Passwords
Bcrypt salt-hashing with mandatory passkey upgrade path.
Granular Audit Logging
Every memo state transition and approval immutably logged.
Have Technical Questions or Need Custom Security Specs?
Our solutions engineering team can review your deployment requirements and on-premise topology.