A technical analysis of Meta’s software infrastructure has revealed that the social media giant has quietly embedded facial recognition code into its mobile applications, specifically targeting users of its smart glasses. The feature, internally designated as NameTag, is designed to identify individuals captured by the cameras on Ray-Ban and Oakley smart glasses, alerting the wearer when a known face is detected. This discovery, confirmed through a forensic examination of the Meta AI companion app, suggests the company is moving toward a capability it publicly claimed to have abandoned years ago following intense regulatory pressure and massive legal settlements.

The NameTag system was identified within the Meta AI app, a software suite that has been downloaded more than 50 million times on various mobile platforms. While the feature is currently dormant and not yet accessible to the general public, the underlying architecture—including three distinct artificial intelligence models—is already present on millions of user devices. This development comes despite Meta’s repeated public assertions that it is still in the "thinking through" phase regarding the implementation of biometric identification in its wearable technology.

Technical Architecture and Discovery

The existence of NameTag was first brought to light through a deep-code analysis conducted by WIRED and corroborated by independent security researchers. The software components were reportedly integrated into the Meta AI app through a series of updates beginning as early as January 2024. The system operates through a sophisticated pipeline involving three specific AI models: the first model is tasked with detecting the presence of a human face in the camera’s field of view; the second crops the image to isolate the facial features; and the third encodes these features into a unique biometric signature known as a "faceprint."

According to the analysis, once the system is activated, it transforms the faces captured by the smart glasses into these biometric signatures. These faceprints are then compared against a localized database stored on the user’s smartphone. This database is configured to receive periodic updates from Meta’s servers, though it remains unclear exactly whose faces are included in these reference files. When a match is found, the app triggers a notification to the wearer. Faces that do not match existing records are not discarded; instead, they are cropped, indexed, and stored in a "pending" folder, potentially for future identification or system training.

Security researcher Cooper Quintin, a senior public interest technologist at the Electronic Frontier Foundation (EFF), reviewed the code and noted that the feature appears "nearly ready to go." Quintin warned that by deploying this code to millions of devices, Meta has effectively created the capacity to turn its customer base into a "distributed surveillance machine," where every wearer of the glasses could serve as a mobile sensor for a global identification network.

A Reversal of Previous Commitments

The discovery of NameTag represents a significant pivot from Meta’s 2021 announcement, in which the company stated it would "sunset" its facial recognition systems. At that time, Facebook (now Meta) announced it would delete more than one billion faceprints belonging to its users following a decade of controversy surrounding its automatic photo-tagging features. The 2021 retreat was widely viewed as a response to growing societal concerns and a string of costly legal battles regarding biometric privacy.

In 2020, Meta agreed to a $650 million settlement in a class-action lawsuit filed by Illinois users who alleged the company’s "Tag Suggestions" feature violated the state’s Biometric Information Privacy Act (BIPA). More recently, in July 2024, Meta reached a $1.4 billion settlement with the state of Texas to resolve similar allegations that it had unlawfully collected biometric data without informed consent. These legal precedents underscore the high stakes involved in the collection of facial data, yet the NameTag code suggests that Meta’s internal interest in the technology never truly waned.

Internal documents published earlier this year by The New York Times indicated that Meta executives had planned to introduce facial recognition on smart glasses during a "dynamic political environment." The documents suggested a strategic calculation that the company’s most vocal critics would be preoccupied with other issues, allowing for a quieter rollout of a technology that had previously caused public outcry.

Chronology of Development and Public Statements

The timeline of NameTag’s integration reveals a disconnect between Meta’s public messaging and its technical execution:

  • November 2021: Meta announces the shutdown of its Facebook face-recognition system and the deletion of a billion faceprints.
  • January 2024: Core components of the NameTag facial recognition system are quietly integrated into the Meta AI companion app.
  • February 2024: Internal documents leak, suggesting Meta plans to use smart glasses for facial recognition, potentially starting with assistive technology for the blind.
  • April 2024: In response to inquiries about facial recognition, Meta tells the press it would take a "very thoughtful approach" and that it is not currently offering such a product.
  • May 2024: A software update rebrands the NameTag feature as "Connections," using consumer-friendly language such as "remember the people you met."
  • Late 2024: Independent code reviews confirm that the AI models for detection, cropping, and encoding are live on millions of user devices.

Official Response and Company Defense

In response to the findings, Meta has maintained that the presence of the code does not equate to a product launch. Meta spokesperson Ryan Daniels stated that the company is merely "exploring" these types of features and that no final decision has been made. "Nothing has shipped to consumers," Daniels said, emphasizing that if a decision is made to roll out such a feature, it would be done with "full transparency."

Meta further clarified that it is not building a "central face database" for this project. Instead, the current design of NameTag appears to rely on pulling faceprints from Meta’s servers to be stored locally on user devices. This decentralized approach may be an attempt to mitigate some privacy concerns, as the actual matching process happens on the user’s phone rather than in the cloud. However, privacy advocates argue that the distinction is negligible if the biometric data is still being harvested and distributed by the company.

Implications for Privacy and Society

The potential deployment of facial recognition on mass-market wearables has sparked intense criticism from civil liberties groups. In April 2024, a coalition of more than 70 advocacy organizations, including the American Civil Liberties Union (ACLU) and the Electronic Privacy Information Center (EPIC), demanded that Meta permanently scrap any plans for facial recognition in its glasses. They argued that such a tool would provide "stalkers, abusers, and state agents" with a silent, ubiquitous method of identifying strangers in public spaces.

Joseph Jerome, a former policy official at Meta’s Reality Labs, noted that the company’s role in the industry often sets the "norms and standards" for the entire ecosystem. He expressed skepticism about whether such a technology could ever be deployed responsibly, given the inherent risks of normalizing constant, passive biometric scanning.

There is, however, a potential assistive use case that Meta has highlighted in the past. For the visually impaired, facial recognition could serve as a vital tool for social interaction, allowing users to identify friends and colleagues in a room. A 2018 study by Facebook and Cornell Tech researchers found that identifying people is one of the most important daily tasks for blind individuals. While this provides a strong ethical argument for the technology, critics worry that an assistive feature would serve as a "Trojan horse" for a broader, more invasive surveillance product.

The Legal and Regulatory Outlook

As Meta continues to develop NameTag, it faces a shifting regulatory landscape. While the United States lacks a federal biometric privacy law, states like Illinois, Texas, and Washington have established strict guidelines for the collection of faceprints. In Europe, the AI Act and the General Data Protection Regulation (GDPR) pose even more significant hurdles, as facial recognition in public spaces is subject to rigorous oversight and, in many cases, outright bans.

Legal experts, such as Boston University privacy law professor Woodrow Hartzog, suggest that even "opt-in" models of consent may not be enough to protect the public. Hartzog argues that as these systems become routine, "human psychology" leads people to accept them as unexceptional, gradually eroding the moral and social barriers against mass surveillance.

For now, the NameTag code remains a dormant but potent element of Meta’s software ecosystem. Whether the company chooses to activate it or keep it as a permanent "exploration" remains to be seen. However, its presence alone serves as a reminder of the narrow gap between a company’s public privacy pledges and its technical capabilities. As wearable technology becomes more integrated into daily life, the debate over who has the right to identify whom in the public square is likely to intensify.

By

Leave a Reply

Your email address will not be published. Required fields are marked *