VerifyHub

Don't share the inbox. Share the authentication event.

Authentication Event Orchestration for org-controlled shared SaaS accounts — so your team can verify without mailbox access.

Org mailbox only · No full inbox UI · Encrypted artifacts · Short TTL · Audit on every reveal

The problem

Shared logins. Private verification. Broken process.

Agencies and ops teams run Meta, Shopify, HubSpot, and a dozen other tools on shared accounts. The OTP lands in someone's inbox — or a shared mailbox nobody wants to open. Codes get pasted into Slack. Passwords get shared. Work stalls until the right person is online.

What's shipping

The MVP engine — honest scope.

Built for design partners today: dual mailboxes, concurrency, Team approvals, and notifications. Not claiming Enterprise SSO or compliance badges we haven't earned.

  • Dual mailbox connectors

    Connect an org-designated Google Workspace or Microsoft 365 mailbox. Narrow filters only — never a shared inbox UI.

  • Reservations + queue

    One lock per shared SaaS account. Teammates queue fairly when someone else holds the session.

  • Approval gates (Team)

    Mark sensitive apps for admin/approver review before auth proceeds. Free stays simple; Team unlocks the gate.

  • Artifact extract + TTL

    Parsers pull OTP or magic-link only. Encrypted at rest, one-time reveal, short expiry, immutable audit.

Workflow

From inbox chaos to a controlled auth event.

Old way

  • Share mailbox passwords or forward entire emails
  • Drop OTPs into Slack with no ownership or expiry
  • Race conditions when two people log in at once
  • Zero audit trail for security or clients

VerifyHub

  • Request auth → reservation locks (or queues) the shared account
  • Optional Team approval before the lock goes live
  • Matching mail via Google or Microsoft — parsers extract the artifact
  • One-time reveal, TTL purge, notifications + audit

Security principles

Built to minimize what you store — and who can see it.

  • No full mailbox product surface

    Employees never browse the inbox. Unrelated mail is never rendered or forwarded.

  • Minimize durable storage

    Metadata + short-TTL ciphertext — not complete emails. Bodies are ephemeral for extraction only.

  • Tenant-scoped by design

    Every row carries organization_id. Reservations, artifacts, and audit stay inside the org boundary.

  • Honest non-goals

    Not an MFA bypass, OTP interceptor for personal accounts, or stealth access tool. Org-controlled shared accounts only.

For legitimate organization-controlled shared SaaS accounts. Not a tool to bypass MFA, defeat provider controls, or access accounts without authorization. Principles from our threat model — not a SOC 2 badge.

Pricing

Start free. Grow into Team.

Limits match the product today. Business/Enterprise packaging comes later — we're not selling SSO on this page.

Free

$0

  • 1 user · 2 connected apps
  • 20 auth events / month
  • Core reservation + extract path
  • Queue & approvals not included
Join waitlist

Team

$49–79 / month

  • 10 seats · 25 apps · 500 events / month
  • Reservation queue + approval gates
  • Notifications + full audit trail
  • Google Workspace + Microsoft 365 mailbox

Primary paid wedge

FAQ

Straight answers for design partners.

How is this different from pasting OTPs in Slack?
Slack pastes have no reservation lock, no expiry enforcement, and no audit of who revealed what. VerifyHub ties the artifact to a requester, a shared account, and a time-boxed event.
Isn’t this just a password manager?
Password managers store credentials. VerifyHub orchestrates the authentication event after login — the OTP or magic link that lands in the org mailbox — without sharing that mailbox.
Why not share the inbox?
Shared mailboxes expose unrelated client and vendor mail, create compliance risk, and still don’t solve concurrency. We share the event, not the inbox.
Do you support Google and Microsoft?
Yes — Google Workspace (Gmail API) and Microsoft 365 (Graph Mail.Read). Connect one org-designated auth mailbox per provider.
Is Enterprise SSO / SCIM available?
Not in the current Free/Team wedge. We’re focused on agencies and ops teams first. SSO/SCIM are later — join the waitlist if you need them on the roadmap conversation.

Early access

Get on the waitlist

We're onboarding digital agencies and ops teams first. Tell us where you work — we'll reach out as alpha slots open.

See it live

Book time with the founding team, or run the local interactive demo — reservation → poll → reveal — without GCP or Azure credentials.