Avoiding unauthorized display of sensitive personal data (such as a user’s facial image) during a payment authentication process: non-technical