Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Unless the code contains biometrics (even just a photo) you're not 'verifying' anything without some other way to verify it.


The code contains your name and date of birth. The photo is on your ID card/passport you show along with the QR code. So the person checking you can verify that the names and date of birth match, and that the photo in your ID could reasonably be you.


The PII is in there so you can verify against some kind of ID. The QR is not intended to be valid without also checking the accompanying ID.

They could've gone the lazy route and stored your SSN (or similar).


They verify it against the persons ID card which has a photo of them by matching up the name.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: