Skip to main content
Core Technology

Authentication & MFA

A complete authentication stack from OTP and push to FIDO2/WebAuthn passkeys and biometric factors — with risk-based adaptive MFA that escalates assurance only when signals warrant it.

Technical Capabilities

Passwordless, FIDO2, biometric and adaptive multi-factor authentication.

Authentication & MFA — system architecture
Passwordless By design
Phishing Resistant
Adaptive Risk-driven
FIDO2 Certified flow

Passwordless & FIDO2

Standards-based passkey authentication with hardware security key and platform authenticator support — phishing-resistant by design.

Multi-Factor Authentication

TOTP, HOTP, push, biometric and out-of-band OTP factors — layered assurance across every surface.

Adaptive & Risk-Based

Step-up authentication driven by real-time risk signals — device, location, behaviour and identity confidence.

Continuous Authentication

Ongoing behavioural and biometric verification beyond the initial login event.

Workflow Architecture

End-to-end processing pipeline

Governed, sequential execution stages powering this identity domain.

1
Identity Production Ready
2
Primary Authentication Production Ready
3
Risk Evaluation Production Ready
4
Adaptive MFA Production Ready
5
Session Control Production Ready
6
Continuous Verification Production Ready
auth-mfa-pipeline.log
[MANTRA ENGINE] Initialise auth-mfa pipeline… [OK]
[STAGE 1] Identity [PASS]
[STAGE 2] Primary Authentication [PASS]
[STAGE 3] Risk Evaluation [PASS]
[STAGE 4] Adaptive MFA [PASS]
[STAGE 5] Session Control [PASS]
[STAGE 6] Continuous Verification [PASS]
> pipeline.status() ALL_STAGES_GREEN
[DEPLOY] Service active and listening.
Production Applications

Real-world business use cases

How this technology delivers impact in government, fintech, and enterprise operations.

Consumer MFA

Frictionless FIDO2 login for citizen apps.

Production

Enterprise Passwordless

FIDO2 SSO for enterprise endpoints.

Production

Banking Step-Up

Risk-triggered MFA for high-value transactions.

Production

Kiosk & Device Auth

Biometric authentication on field devices.

Production
Technology Stack

Sub-capabilities & technical set (19)

The granular technical stack executing beneath this domain.

domain_manifest.json
{
  "domain_id": "auth-mfa",
  "group": "core technology",
  "techs_count": 19,
  "status": "PRODUCTION_READY"
}
Multi-Factor Authentication (MFA) FIDO2 WebAuthn Passkeys TOTP / HOTP Push Authentication Biometric Authentication SMS / Email OTP Passwordless Authentication Adaptive Authentication Risk-Based Authentication Continuous Authentication Step-Up Authentication Contextual Authentication Device Trust Hardware Security Keys Platform Authenticators QR-Code Authentication Magic Links
Standards & Compliance

System standards reference

Industry certifications and regulatory frameworks validated for this technology domain.

FIDO2 / WebAuthn NIST SP 800-63B OATH (TOTP/HOTP) ISO/IEC 29115

Apply Authentication & MFA to Your Stack

Collaborate with Mantra's engineering and research teams to deploy these technical capabilities inside your identity solution.