Product1 distinct publisher3 min readPublished
Tinder says 98 percent of its moderation actions chase fake accounts, scams and spam, which is how a face scan became the price of entry at more than a dozen dating platforms and a default expectation everywhere else.
The Product Desk · Product desk

Compiled by The Product DeskSomething wrong?How this is made
The number doing the heaviest lifting here is a share of workload, not a count of scammers. Ninety-eight percent [1] describes where Tinder's moderation actions landed. It does not say how many fake accounts reached a first message, and those are different measurements. The residue is the part product teams should read closely: everything moderators do about real people mistreating other real people has to fit inside the remaining two percent of actions [18].
The harm underneath is real and has a bill attached. The FBI figure WIRED cites, more than $4 billion in US romance scam losses between 2015 and 2025 [6], averages out to at least $400 million a year across that decade [19], and nearly half of current US online daters have been targeted by a dating scam [7]. That is why the check spread to more than a dozen major dating apps and sites, using liveness checks, 3D authentication, video selfies or biometric ID at the door [5].
What the check proves is narrower than the badge implies. A liveness check establishes that a person was in front of the camera at sign-up, and not that they were not altering their appearance with AI in real time; an ID scan establishes that an ID was presented, not whose it is [14]. Cybersecurity researcher Katie Moussouris told WIRED that normalizing a face scan as assurance of identity or age is security theater [13], and that a verified profile can still belong to a scammer who took the account over later [15].
Here is what users actually do: at sign-up they hold the phone up and turn their head, because Face Check has been mandatory for new Tinder members since October 2025 and there is no non-biometric door [3][20]. Here is what teams tell themselves users do: read the badge as information about the other person. Match's own framing reaches for the second reading, with trust and safety head Yoel Roth calling it "a statement about what human connection online should require" [8]. The rollout to existing users in the US and UK [4] is where that statement meets people who signed up under different terms.
Anyone inheriting this expectation has to answer a design question the badge hides: where the artifact lives and how long. Match says Face Check stores an encrypted map of the shape of the face rather than the photo [9]. Tools for Humanity, whose optional World ID has been on Tinder since an April partnership [10], says its orb sends the coded image to the phone and then deletes it [11], and chief product officer Tiago Sada calls the handing of personal data to every individual app "super creepy" [12]. Both are vendor claims about deletion, and dating apps do get breached [17]. A leaked password gets replaced, which is what makes a leaked face map a different class of asset [16].
So the forcing function is two written answers, and they make a usable 2x2. First axis: does the check move a number you already track, such as accounts removed before a first match, or reports per thousand conversations. Second axis: can you state what is stored and when it is deleted in one sentence you would accept seeing quoted in a breach notice. Measurable number plus short retention is a control. Measurable number plus indefinite store is a liability you took on with your eyes open. No number plus short retention is a badge, which is cheap and mostly harmless. No number plus indefinite store is the quadrant that reads badly on Friday, and it is the one an industry default pulls teams into by inertia [21].
Ranked by verification strength, evidence, and original report placement.
According to Tinder, 98 percent of the content-moderation actions on the app were focused on combating fake accounts, scamming and spam, pushing the company to expand moderation for its 60 million global users.
Tinder launched the mandatory face-screening tool Face Check for new members in October 2025.
Cybersecurity researcher Katie Moussouris says these ID systems are mostly a smoke screen: "Normalizing the idea that a face scan provides any assurance of identity or age is security theater."
A liveness check requiring face scanning and live video only indicates a person was present at sign-up and does not guarantee the person was not using AI to alter their appearance in real time; an ID scan indicates an ID was presented, not that it belongs to the person who presented it.
Moussouris says neither a liveness check nor an ID scan should be confused with trust, because a verified profile can still belong to a romance scammer who took over an account or created one using AI tools.
Passwords and usernames are interchangeable but faces are not, which makes faces unique targets for attacks.
Distinct publishers with included, body-backed reporting in this cluster.
1 article · September 3, 2026
Follow any of these and your For You feed starts watching them — no settings page required.
product
World open-sources ProveKit to keep age checks on the user's own phone1 distinct publisher
product
Bumble drops the rule it was built on, and finds out what the rule was doing1 distinct publisher
invest
Americans report eight cents of every scam dollar the FTC thinks they lost1 distinct publisher
product
The UK plant that went dark for four days was too small to have to tell anyone1 distinct publisher
Evidence-backed comparisons of source perspectives and observed adoption signals. Read the methodology
Which Builder, Operator, and Investor concerns the observed source mix emphasized—not a truth score.
Evidence, demonstrated adoption, hype gap, incentives, and confidence are assessed independently, each on its own current evidence. How these are measured.
One newsroom, mostly company numbers, saved by named critics
Almost every load-carrying figure — 98 percent of moderation actions, 60 million users, the encrypted face map, the self-deleting orb image — reaches us through Match Group's or Tools for Humanity's own descriptions, relayed by WIRED and checked by nobody. The FBI's $4 billion romance-scam total is the single number with an outside author, and the neighbouring 'nearly half of daters targeted' arrives with no survey attached at all. What lifts this above a press release is that WIRED put Katie Moussouris and Woodrow Hartzog on the record contradicting the framing.
Shipped, mandatory, and now reaching back over existing accounts
This is past the pilot stage. Face Check has gated new Tinder accounts since October 2025, Match says the requirement is now being switched on for people already inside the app in the US and UK, and WIRED counts more than a dozen dating platforms already verifying faces by some method. The thinner edges: World ID's iris scan is still opt-in, and no one has published how many users completed the check or walked away from it.
Sold as proof of humanity, delivers proof of attendance
The overstatement lives inside one sentence from Match: not a feature, but "a statement about what human connection online should require" — for a check that, as Moussouris explains, confirms someone stood in front of a camera at signup and nothing more, and survives neither account takeover nor real-time AI alteration. Nobody in this reporting supplies a figure showing fewer scams since October 2025, and "any dating app will need some sort of proof-of-human system" is a pitch from the company selling one. The gap is real but bounded, because the deployment itself is exactly as advertised.
Both technical assurances come from parties selling the technique
Follow who benefits from each assertion. The head of trust and safety at the company generating scam headlines elevates a mandatory scan into a moral position. The chief product officer of an iris-scanning company forecasts that every dating app will soon need iris scanning, and calls competitors' data handling "super creepy" in the same breath. Both privacy assurances — the encrypted face map, the orb that deletes what it sees — are self-descriptions by the firms they exonerate. The two dissenting voices, a security researcher and a law professor who sat on Massachusetts's facial recognition commission, have reputations at stake but no product in the deal.
Firm on what shipped, soft on what is protected
Split the story in two and the confidence splits with it. The deployment facts are solid: Match stated them for attribution to WIRED and would be embarrassed if they were wrong. The privacy guarantees are not, resting on the word of two companies whose product depends on being believed, one of which WIRED itself hedges with "the company claims". With a single outlet on the story, there is no second account to catch an error either way.