Required attributes
Model, serial, hardware revision, firmware, palm SDK/model, owner, warranty and support contact.
A governed device journey covering ownership, identity, mode, certificate, testing, activation, monitoring and retirement.
Provide model/serial only when approved for public submission. Otherwise describe quantity, locations, preferred mode and integration context.
Create a trustworthy inventory record.
Model, serial, hardware revision, firmware, palm SDK/model, owner, warranty and support contact.
Tenant, merchant, chain, store, location, POS/ECR, business purpose and operating hours.
Purchase, lease, transfer or deployment authorization and chain of custody.
Bind controls to the selected architecture.
Host identifier, USB protocol, middleware/driver, allowed commands, callback and Dynamic UI source.
Device certificate, MQTT profile, API endpoint, tenant topics, mTLS, network and remote-management policy.
Payment, attendance, access, identity and custom workflows remain policy-separated.
Prove device trust before production.
Certificate, trust anchors, configuration signature, time sync, debug controls and secure update policy.
Connectivity, Dynamic UI, palm capture, identification/authentication, POS callback, result notification and heartbeat.
Store acceptance, support owner, monitoring, rollback, remote disable and approved status.
Manage the device beyond activation.
Inventory, Pending Activation, Active, Degraded, Offline, Suspended, Maintenance, Revoked and Retired.
Staged rollout, firmware verification, anti-rollback where supported, failure recovery and evidence.
Unassign, secure wipe, certificate revocation, ownership transfer, disposal and retained audit.
Acceptance records sensor modality, optical/IR configuration, display, scanner, ports, power, network modules, environmental limits, placement and capture quality. Reference speed and distance must be re-measured on the selected production model.
Document firmware identity, signed update, secure boot or equivalent capability, anti-rollback where available, default credentials, debug controls, component inventory, vulnerability reporting, support period and provenance.
Every Direct Backend device needs a unique certificate and topic/API identity. HOST mode needs a trusted host binding, documented USB protocol and authorization rules. Shared secrets across a fleet should be avoided.
Health, heartbeat, time sync, certificate expiry, firmware version, temperature or sensor status where available, transaction errors, palm-quality failures and connectivity should feed monitoring without collecting unnecessary biometric content.
Yes, through an approved transfer workflow that removes the old binding, verifies custody, reapplies configuration, tests connectivity and records the new assignment.
The approved fallback depends on the architecture. The system can route customers to QR, app, card or assisted payment; offline palm authorization should not be assumed without a separately approved risk design.
Yes, if the multi-application policy separates purpose, data, user notice, access, UI and backend workflow from payment.
Mobile-ID will align device inventory, terminal mode, POS/backend integration, certificate lifecycle and acceptance tests.