Biometric Consent Audit (BIPA / CUBI / CO)

Audits code that captures faces, fingerprints or voiceprints: missing written consent, missing destruction schedule, retention past the Illinois BIPA three-year cap, third-party disclosure. Runs entirely in your browser — nothing is uploaded.

Full version: scan the whole workspace and export a dated evidence report (Markdown + CSV) per file and per statute subsection.
Get the full version — $29
$29 once · one licence key per person or team seat · 7-day full refund. US privacy counsel bills $400-$600 an hour for a pre-launch review of biometric code.

Same engine as the VS Code extension, byte for byte.

Get the complete version $29

This page is the working piece. The full pack has everything below.

14 rules over face, fingerprint and voiceprint code: written release, destruction schedule, the 1095-day cap and the three EU AI Act prohibitions

US privacy counsel bills roughly $400-$600 an hour for a pre-launch review of biometric code

Buy the full version — $29

Questions people ask

What does Biometric Consent Audit actually do?

It reads a Python, JavaScript or TypeScript file that captures a face, fingerprint, iris or voiceprint and reports the lines a biometric-privacy statute reaches: no written release before capture, no destruction schedule, retention past the 1095-day BIPA cap, an unencrypted template write, a template sent to a vendor, and the three uses the EU AI Act prohibits. Fourteen rules, each printed with its subsection.

Who is it for?

Developers and technical leads shipping face or voice login, biometric time clocks, or identity verification for users in Illinois, Texas, Colorado or the EU. It is built for the person who has to answer a security questionnaire or a demand letter about biometric handling, and who needs the answer stated in line numbers and subsections.

Why will a linter or a chatbot not do this?

ESLint and Ruff score style; they have no concept of a written release or a destruction schedule. A chatbot will summarise BIPA but does not read your file, keeps no line numbers, and is confidently wrong about which subsection applies and which dates are in force. This audit runs on your actual file, offline, and cites the subsection per line.

What is free and what needs the key?

Free, with no key: audit the file you have open and see every finding, line number and statute subsection. That is a complete job for one file. The full version adds a different axis: it scans the whole workspace at once and exports a dated evidence report, Markdown and CSV, grouped per file and per statute subsection.

What does the alternative cost?

A pre-launch review of biometric code by US privacy counsel bills at roughly $400 to $600 an hour, and the exposure it prices is statutory: BIPA sets $1,000 per negligent violation and $5,000 per intentional or reckless one, plus fees. The full version is $29 once, with a 7-day full refund.

Ask about this tool

One question, answered by the person who built it. Your email only if you want the answer sent.

Want the full version?
Enter your email and we send the download link.
ENDEJAESPT

Find a tool