VerifyHub
Don't share the inbox.
Share the authentication event.
Authentication Event Orchestration for org-controlled shared SaaS accounts — so your team can verify without mailbox access.
Org mailbox only · No full inbox UI · Encrypted artifacts · Short TTL · Audit on every reveal
The problem
Shared logins. Private verification. Broken process.
Agencies and ops teams run Meta, Shopify, HubSpot, and a dozen other tools on shared accounts. The OTP lands in someone's inbox — or a shared mailbox nobody wants to open. Codes get pasted into Slack. Passwords get shared. Work stalls until the right person is online.
What's shipping
The MVP engine — honest scope.
Built for design partners today: dual mailboxes, concurrency, Team approvals, and notifications. Not claiming Enterprise SSO or compliance badges we haven't earned.
Dual mailbox connectors
Connect an org-designated Google Workspace or Microsoft 365 mailbox. Narrow filters only — never a shared inbox UI.
Reservations + queue
One lock per shared SaaS account. Teammates queue fairly when someone else holds the session.
Approval gates (Team)
Mark sensitive apps for admin/approver review before auth proceeds. Free stays simple; Team unlocks the gate.
Artifact extract + TTL
Parsers pull OTP or magic-link only. Encrypted at rest, one-time reveal, short expiry, immutable audit.
Workflow
From inbox chaos to a controlled auth event.
Old way
- Share mailbox passwords or forward entire emails
- Drop OTPs into Slack with no ownership or expiry
- Race conditions when two people log in at once
- Zero audit trail for security or clients
VerifyHub
- Request auth → reservation locks (or queues) the shared account
- Optional Team approval before the lock goes live
- Matching mail via Google or Microsoft — parsers extract the artifact
- One-time reveal, TTL purge, notifications + audit
Security principles
Built to minimize what you store — and who can see it.
No full mailbox product surface
Employees never browse the inbox. Unrelated mail is never rendered or forwarded.
Minimize durable storage
Metadata + short-TTL ciphertext — not complete emails. Bodies are ephemeral for extraction only.
Tenant-scoped by design
Every row carries organization_id. Reservations, artifacts, and audit stay inside the org boundary.
Honest non-goals
Not an MFA bypass, OTP interceptor for personal accounts, or stealth access tool. Org-controlled shared accounts only.
For legitimate organization-controlled shared SaaS accounts. Not a tool to bypass MFA, defeat provider controls, or access accounts without authorization. Principles from our threat model — not a SOC 2 badge.
Pricing
Start free. Grow into Team.
Limits match the product today. Business/Enterprise packaging comes later — we're not selling SSO on this page.
Free
$0
- 1 user · 2 connected apps
- 20 auth events / month
- Core reservation + extract path
- Queue & approvals not included
Team
$49–79 / month
- 10 seats · 25 apps · 500 events / month
- Reservation queue + approval gates
- Notifications + full audit trail
- Google Workspace + Microsoft 365 mailbox
Primary paid wedge
FAQ
Straight answers for design partners.
- How is this different from pasting OTPs in Slack?
- Slack pastes have no reservation lock, no expiry enforcement, and no audit of who revealed what. VerifyHub ties the artifact to a requester, a shared account, and a time-boxed event.
- Isn’t this just a password manager?
- Password managers store credentials. VerifyHub orchestrates the authentication event after login — the OTP or magic link that lands in the org mailbox — without sharing that mailbox.
- Why not share the inbox?
- Shared mailboxes expose unrelated client and vendor mail, create compliance risk, and still don’t solve concurrency. We share the event, not the inbox.
- Do you support Google and Microsoft?
- Yes — Google Workspace (Gmail API) and Microsoft 365 (Graph Mail.Read). Connect one org-designated auth mailbox per provider.
- Is Enterprise SSO / SCIM available?
- Not in the current Free/Team wedge. We’re focused on agencies and ops teams first. SSO/SCIM are later — join the waitlist if you need them on the roadmap conversation.
Early access
Get on the waitlist
We're onboarding digital agencies and ops teams first. Tell us where you work — we'll reach out as alpha slots open.
See it live
Book time with the founding team, or run the local interactive demo — reservation → poll → reveal — without GCP or Azure credentials.