CheckBiometricAvailabilityTool
Reports whether biometric (or device-credential) authentication can currently succeed, using AndroidX BiometricManager. No permissions required.
hardware_type is inferred from which authenticator classes report success: the WEAK class is labelled "fingerprint" and the STRONG class (API 30+ / R) "face" — a heuristic, not a true sensor enumeration. Other values: "none", "update_required" (security update needed), "unknown".
Output map: can_authenticate (Boolean) and hardware_type (String).