Get started/FaceSign loopback SP

FaceSign loopback SP

Exercise a real SP-initiated SAML round-trip between FaceSign's own loopback SP and the live pilot IdP.

This demo does not emulate any partner SP or establish partner interoperability. That remains pending the partner's sandbox SP registration and joint testing.

Use a phone or laptop with a camera. Decline the intent question to exercise the protocol-level denial; the loopback SP must reject top-level Responder with nested AuthnFailed.

idp.facesign.dev/test-sp - loopback
FaceSign loopback Service Provider
Pilot acceptance demo

Signing in sends an unsigned AuthnRequest from the registered FaceSign loopback SP to the live pilot IdP.

Sign in with FaceSign
SP entity: /api/test-sp/metadata · ACS: /api/test-sp/acs

On success, the loopback ACS validates the root Response and nested Assertion signatures, InResponseTo, and audience before showing released facesign.*attributes. Durable replay enforcement remains the receiving SP's responsibility and must be proven separately by the partner.