Overview
- Google has begun a phased, opt-in rollout of a selfie‑video sign‑in for eligible personal accounts that is meant to help users log in or recover accounts without passwords.
- The setup asks users to record a short guided video with head movements and stores that clip as a reference to be matched against future live videos for verification.
- Google says the videos are encrypted at rest and that it monitors signals for suspicious login attempts while offering users the ability to delete saved clips and to consent to reuse for model training.
- Security practitioners warn the system can be vulnerable to AI deepfakes that map a target’s face onto a body double and emphasize that biometric data cannot be reset if exposed.
- Coverage and experts consistently advise using passkeys, multi‑factor authentication, and physical security keys for high‑value accounts and keeping multiple, revocable recovery methods rather than relying solely on face video.