9.23 WCAG 2.2 Success Criterion 3.3.8 - Accessible Authentication (Minimum)
Ensure that there is an accessible, easy-to-use, and secure method for users to authenticate when logging into an account, provide at least one of the followings:
- Offer a way to use the features that does not require a cognitive assessment.
- Assistance is provided for users to pass the cognitive test.
- The cognitive test involves object recognition.
- The cognitive test checks the user's ability to identify non-text content on the mobile app.
Example 1
Provide an alternative authentication method that does not rely on a cognitive function test, e.g. recall password.
Example 2
Provide a mechanism to assist user to complete cognitive function test, e.g. password save.
Example 3
Provide object recognition, e.g. facial recognition.
Example 4
Provide personal content authentication, e.g. users are asked to select the picture during login, which is uploaded as part of account creation.
WCAG 2.2 Reference:
https://www.w3.org/WAI/WCAG22/Understanding/accessible-authentication-minimum