Developer-first authentication infrastructure

Authentication you can prove.

License software, bind devices, rotate signing keys, enforce application-scoped access and verify every client authorization with cryptographically signed proofs.

RSA-3072 signed proofs · application isolation · encrypted HWIDs · revocable sessions · rate limits
Security snapshot
Live
Apps
Multi-tenant
Tokens
256-bit
SDKs
Any REST
HWID
HMAC only

Everything needed to protect a real application

Designed for C#, Lua, Python, PHP, JavaScript, Java, Go, Rust and anything else that can make HTTPS requests.

License lifecycle

Generate, validate, pause, ban, revoke and expire application-scoped license keys.

HWID control

Set device limits, inspect encrypted-at-rest HWIDs, reset bindings and allow timed self-rebinds.

Signed authorization

Every desktop license decision is bound to the app, key, HWID and one-time challenge, then signed with RSA.

Scoped server API keys

Keep privileged management credentials on trusted servers while clients pin only public verification keys.

Audit trails

Inspect license activity, device bindings, denial reasons, IPs and dashboard security events with request IDs.

Signed webhooks

Schema-ready event delivery with per-webhook signing secrets and retry storage.

Free, Premium and Enterprise

Pricing and limits live in one plans table, so the website and enforcement stay synchronized.