Match-on-card in one sentence
Match-on-card means the biometric comparison is performed inside the card rather than by a remote server or reader. The card receives a live fingerprint through its sensor, compares it with an enrolled mathematical template and releases only the result or an unlocked credential when the comparison succeeds.
Why local comparison matters
Keeping the reference template and matcher in protected card hardware can reduce the biometric data exposed to readers, applications and central databases. It also binds use of the credential to the enrolled holder. That privacy and security benefit depends on the complete design, especially enrollment, internal communications, reset and recovery.
It is more than a black sensor
The visible sensor is only the capture surface. A working design also needs signal processing, a matcher, protected template storage, a secure element or controller, power management, an antenna or contacts and the credential application. Two products can use similar-looking sensors while implementing different security boundaries.
Reader-powered cards versus powered devices
A passive biometric card harvests power from a compatible reader and becomes inactive when removed. A powered authenticator such as PONE OFFPAD contains a battery, display and additional interfaces. Both may perform local fingerprint verification, but their operation, thickness, charging needs and threat models differ.
Certification claims need scope
FIDO biometric testing evaluates capture, processing, comparison, decision behavior and presentation-attack performance. An authenticator certificate, biometric-component certificate and payment approval are not interchangeable. Always identify the exact product, version, integration and security level covered.
Procurement checklist
Ask for a data-flow diagram, evaluated component list, template capacity, false-accept and false-reject evidence, spoof testing, enrollment procedure, reader compatibility matrix, revocation behavior, firmware policy and a recovery path that does not silently weaken authentication.