Hello,

We are configuring FACEIO for Mediva, a healthcare shift-management platform. Facial authentication and liveness detection will validate professionals during check-in and check-out.

We plan to use these settings:

Prevent duplicate enrollment: Enabled
Deepfake and face-spoof protection: Enabled
Prevent minors from enrolling: Enabled
Always require PIN during authentication: Disabled
Reject weak PINs: Enabled
Enforce PIN uniqueness among users: Disabled
Reject missing Origin/Referer: Enabled
Authorized domain: plantoes.mediva.app.br
Country restriction: Disabled
Application metrics: Disabled
Webhooks: Enabled
Could you please confirm whether this configuration is recommended for our use case, especially regarding liveness security and PIN requirements?

Thank you.