People get trapped in old paradigms, where something must always happen at the same way or time as before.
Who says our face has to be visible for user authentication at the instant of payment? Heck, that's not even a requirement now on the Watch, or even on the phone if we prime TouchId ahead of time in Wallet.
Likewise, if facial recog was always checking, then it could also be primed ahead of time.
Now you might say, but oh that's (marginally) less secure. Which ignores the fact that it was never really about true authentication or security. If it were, we'd have to personally register our prints at a bank, not just allow anyone with the phone's passcode to do do. Or even use a fingerprint sensor that can be spoofed with fake prints.
It's always
also been about convenience, while being "
secure enough" in the overwhelming majority of cases.
Just thinking aloud. I totally agree that it would be much less optimal for those who are used to doing this straight out of a pocket, without ever looking at the phone. Hmm. Unless it assumed that coming out of the same dark pocket where it went in preauthorized, means it still should be preauthorized. Yeah, I don't love that idea either. I'm starting to lean towards the pro-touch crowd
