A contactless login system that replaces traditional passwords with time-limited QR codes and mobile biometric verification, giving labs, libraries and web portals secure, device-based session approval with zero passwords to steal, guess or brute-force.
Built for smart campuses, this system removes passwords from the login flow entirely. A student opens the web portal, a time-limited QR code appears, and they scan it with the companion Android app. A fingerprint prompt confirms it's really them, the backend approves the session over a live socket connection, and the browser is redirected straight into their dashboard — no typing, no password to leak.
Full-Stack + Android
Solo Project
QR + Biometric
In Development
Each session generates a unique QR code that expires in 60 seconds, killing replay attacks.
Android's BiometricPrompt confirms fingerprint identity before any session is approved.
Socket.io pushes login approval to the browser instantly — no polling, no delay.
No password is ever entered, transmitted or stored — approval happens entirely on-device.
Roll number, device ID and IP are bound at registration so only the trusted device can approve.
Designed for labs, libraries and web portals that need fast, secure, contactless sign-in.
The flow bridges three components — a React web portal, a Node.js/Socket.io backend, and a native Android app — into a single passwordless handshake.
Web portal calls the backend, which creates a UUID session and returns a QR payload.
The Android app scans the QR and triggers a native fingerprint prompt before sending anything.
After biometric success, the app posts the roll number and device ID to /api/verify-scan.
The backend emits an auth-success event over Socket.io and the browser redirects to the dashboard.
Web portal — QR generation, live session status and countdown timer.
REST API for session creation and scan verification.
Real-time, bidirectional push of login approval to the browser.
Native app for QR scanning and device registration.
BiometricPrompt API for on-device fingerprint verification.
Camera-based QR decoding and HTTP calls back to the backend.
Explore the backend, React frontend and Android app source, documentation and implementation details on GitHub.
Open GitHub