FAQ
All answers.
58+ answers across security, recovery, compatibility, privacy, biometrics, AI, banking, travel, healthcare, enterprise, and government.
Top questions
Start with the essentials.
What makes KEYRA different from a security key?
Security keys prove device possession. KEYRA proves human approval — biometric verification bound to hardware-rooted cryptographic consent for each action.
Can KEYRA be remotely hacked?
Biometric templates never leave the device. Authorization proofs are generated locally in the secure element — there is no cloud biometric vault to breach.
What if I lose my KEYRA device?
Use your recovery card and enrolled backup flows to revoke the lost unit and provision a replacement. Founder support assists within one business day.
Is KEYRA resistant to phishing?
Yes. Challenges are cryptographically bound. A fake site cannot complete authorization without your physical approval on KEYRA.
Does KEYRA upload my fingerprint?
Never. Biometric verification occurs entirely inside the device. No biometric data is transmitted or stored in the cloud.
Why does AI need human authorization?
AI can act autonomously — transact, communicate, and access systems. Society requires proof that a real human approved each high-stakes action.
Can KEYRA authorize AI agent actions?
Yes. Agents request challenges; you approve on KEYRA. The relying system receives cryptographic proof of human consent.
Can KEYRA protect wire transfers?
Yes. Banks and fintechs can require KEYRA authorization before funds move — proof a human approved the transaction.
Full library
Browse every topic.
Security
6 answers
What makes KEYRA different from a security key?
Security keys prove device possession. KEYRA proves human approval — biometric verification bound to hardware-rooted cryptographic consent for each action.
Can KEYRA be remotely hacked?
Biometric templates never leave the device. Authorization proofs are generated locally in the secure element — there is no cloud biometric vault to breach.
Does KEYRA replace my password manager?
KEYRA complements passkeys and FIDO2 flows. It adds an explicit human approval layer for high-stakes actions that software alone cannot guarantee.
What happens if someone steals my phone?
Your phone may be compromised; KEYRA remains a separate physical trust object. Critical approvals still require your fingerprint on the device you carry.
Is KEYRA resistant to phishing?
Yes. Challenges are cryptographically bound. A fake site cannot complete authorization without your physical approval on KEYRA.
Is KEYRA a security key?
No. KEYRA is human authorization infrastructure — it proves you approved an action, not merely that a device is present.
Recovery
5 answers
What if I lose my KEYRA device?
Use your recovery card and enrolled backup flows to revoke the lost unit and provision a replacement. Founder support assists within one business day.
How does the recovery card work?
The recovery card stores recovery material generated at setup. Store it securely offline — it is required to regain access if your device is lost.
Can I enroll a second fingerprint?
Yes. Multiple fingerprints can be enrolled locally on-device for accessibility and backup approval — templates never sync to the cloud.
What if my fingerprint sensor fails?
Contact founder support for warranty replacement. Until then, backup enrollment and recovery procedures documented in your quick-start guide apply.
How do I factory reset KEYRA?
Factory reset requires an enrolled fingerprint on-device. This wipes keys and biometrics — full re-enrollment is required afterward.
Compatibility
5 answers
Does KEYRA work with iPhone?
Yes. iOS is supported for pairing, passkeys, and authorization flows via the KEYRA app ecosystem.
Does KEYRA work with Android?
Yes. Android support includes BLE challenge-response, passkeys, and offline verification.
Can I use KEYRA on Windows and macOS?
Desktop platforms are supported for WebAuthn/FIDO2 and enterprise integrations.
Is GitHub supported?
Yes. Use KEYRA as a FIDO2 security key for GitHub and developer platforms that support hardware keys.
When will AWS integrations ship?
AWS enterprise integrations are on the roadmap. Founders receive early access announcements before public availability.
Privacy
5 answers
Does KEYRA upload my fingerprint?
Never. Biometric verification occurs entirely inside the device. No biometric data is transmitted or stored in the cloud.
What data does KEYRA collect?
KEYRA is designed with minimal telemetry. Authorization events are user-controlled; we do not monetize identity data.
Is KEYRA GDPR aligned?
Yes. Local biometric storage and explicit consent architecture align with GDPR principles for data minimization and purpose limitation.
Can enterprises audit authorization logs?
Enterprise deployments support policy-controlled logging with user visibility — you always know what was approved.
Who owns my identity keys?
You do. Keys are generated and held in your secure element — not in a vendor-controlled identity silo.
Biometrics
6 answers
What biometric does KEYRA use?
Capacitive fingerprint verification performed locally on-device with liveness-aware enrollment.
Can someone spoof my fingerprint?
Enrollment and verification include anti-spoofing measures. High-stakes approvals still require live presence on the device.
What if I wear gloves or have dry skin?
Re-enroll in suitable conditions and clean the sensor. Accessibility options include multiple enrolled fingers.
Are children or elderly users supported?
Any user who can enroll a fingerprint can authorize. We recommend testing enrollment for comfort and repeatability.
Does KEYRA work offline?
Yes. Core verification and TOTP-style flows operate offline — human proof does not require constant connectivity.
Do biometrics ever leave the device?
No. Ever. Verification is local-only by architecture — not policy.
AI
6 answers
Why does AI need human authorization?
AI can act autonomously — transact, communicate, and access systems. Society requires proof that a real human approved each high-stakes action.
Can KEYRA authorize AI agent actions?
Yes. Agents request challenges; you approve on KEYRA. The relying system receives cryptographic proof of human consent.
Does KEYRA block AI from acting entirely?
No. KEYRA ensures humans remain in the loop for actions you configure as requiring explicit approval.
Can deepfake voice fraud bypass KEYRA?
Voice alone cannot authorize. Financial and sensitive flows require your fingerprint on KEYRA — not verbal confirmation.
Will KEYRA integrate with ChatGPT and other assistants?
Partner integrations are expanding. Founders receive early SDK access for AI agent authorization patterns.
AI can act — but can AI consent?
No. Consent requires a human. KEYRA provides cryptographic proof that you — not an algorithm — approved the action.
Banking
5 answers
Can KEYRA protect wire transfers?
Yes. Banks and fintechs can require KEYRA authorization before funds move — proof a human approved the transaction.
Does KEYRA work with my bank today?
Pilot programs are underway with financial institutions. Founder reservations include updates as bank partners go live.
What about card-not-present fraud?
KEYRA addresses authorization, not card rails directly — but human approval layers reduce social engineering and APP fraud.
Is KEYRA useful for crypto wallets?
Yes. Wallet providers can bind high-value transfers to KEYRA human approval proofs.
Can family accounts share one KEYRA?
Each human should have their own KEYRA. Authorization is personal — not shared across household devices.
Travel
5 answers
Can I travel internationally with KEYRA?
Yes. KEYRA is pocket-sized and operates offline for verification when connectivity is limited.
Will airport security affect KEYRA?
KEYRA contains standard electronics. Follow airline guidance for portable devices; no special restrictions beyond typical consumer hardware.
Does KEYRA work for hotel and rental access?
BLE challenge-response enables presence-based access where partners support KEYRA authorization.
What if I lose KEYRA while abroad?
Use recovery procedures immediately to revoke the device, then contact founder support for expedited replacement guidance.
Do I need cellular data for authorization?
No for on-device verification. Some relying-party checks may need network access on your phone or laptop.
Healthcare
5 answers
Can KEYRA confirm medical record access?
Yes. Healthcare systems can require KEYRA proof before records are shared — explicit patient consent.
Is KEYRA HIPAA-friendly?
Architecture supports HIPAA-aligned deployments with local biometrics and audit-friendly authorization logs.
Can caregivers authorize on behalf of patients?
Policy is set by the healthcare provider. KEYRA always proves which enrolled human touched the device.
Does KEYRA store health data?
No. KEYRA stores authorization keys and biometric templates locally — not medical records.
Can telehealth platforms use KEYRA?
Yes. Telehealth partners in pilot can bind session consent and prescription approval to KEYRA.
Enterprise
5 answers
How do enterprises deploy KEYRA?
Enterprise kits include provisioning, policy management, and integrations guides for IAM and zero-trust stacks.
Does KEYRA support SSO?
KEYRA integrates with FIDO2 and WebAuthn flows used by modern SSO providers.
Can admins recover employee devices?
Enterprise policies define recovery. Consumer founders use personal recovery cards; enterprise uses managed recovery.
What about contractors and guests?
Issue dedicated KEYRA units or temporary credentials per your authorization policy.
Is there an API for custom workflows?
Yes. Developer documentation covers challenge issuance, attestation verification, and agent patterns.
Government
5 answers
Can government agencies use KEYRA?
Pilot discussions are active for citizen services requiring explicit human consent and high-assurance authorization.
Does KEYRA support national ID programs?
KEYRA complements — rather than replaces — national ID; it proves human approval for digital actions.
Where is KEYRA designed?
Designed in Ireland with hardware-rooted security and EU-aligned privacy principles.
Is KEYRA suitable for voting or elections?
Election use requires jurisdiction-specific certification. Contact enterprise for sovereign deployment discussions.
How does KEYRA handle lawful access requests?
We cannot extract biometrics from devices. Legal requests are handled per published policy with minimal data principles.
