SPEAQ ID is a digital identity that belongs to you, for the post-password world. Sign in with one tap. Carry proof of who you are and what you are allowed to do. Give away nothing.
ONE TAP INSTEAD OF A PASSWORD
When a website or app offers SPEAQ ID sign-in, you scan a QR code or enter a 6-digit pairing code. The app shows you exactly who is asking and what they want before you decide. One tap on Approve and you are in. No password, no email address, no phone number. Your cryptographic identity does the work, and it never leaves your phone.
PROOF THAT TRAVELS
Organisations can issue you verifiable credentials: a qualification, a membership, a professional certification. They can also grant you mandates, which is authority to act on their behalf, scoped to exactly one thing and valid for exactly as long as they decide.
Both live in your SPEAQ ID, signed at the source. When someone needs to check, you open Present, scan their code, and your device signs a fresh one-time challenge. They see that the credential is genuine and that you are the person holding it, right now. A photocopy passes no gate here. And when an organisation withdraws a mandate, every check turns red instantly and everywhere.
YOUR VAULT
A password manager built in, and one place for everything you need to prove or unlock:
- Verifiable credentials issued to you, with the issuer visible
- Organisation mandates, with their status at a glance
- Traditional passwords, for every site that has not caught up yet
- Two-factor TOTP codes
The vault has its own PIN, separate from the app PIN, so it stays sealed even while the app is open. Unlimited entries, no subscription.
WHAT YOU GIVE AWAY
Nothing. Your keys, your credentials, your passwords and your two-factor codes are generated and stored on your own device. We never have access to any of it. A service receives only the cryptographic proof that you approved one specific request. No tracking. No analytics. No advertising. No selling of data. Ever.
What your phone sends when you sign in is your PUBLIC key, and only that. A public key can check a signature; it can never make one. It gives nothing away. Your private key, your passwords, your two-factor codes and your credentials stay on your phone and are never sent anywhere.
The challenge your phone signs is single-use and is spent the moment the handshake completes. The login record our server writes is deleted within 24 hours. Nothing else about you is kept, because nothing else is ever sent.
BUILT ON OPEN STANDARDS
SPEAQ ID uses the W3C Decentralized Identifier standard. Your DID is an identifier that you alone control: you generate it on first launch, you can rotate it, and you can revoke it. It is not held in a central database, and we cannot link it to your real-world identity because we never ask for your name, your email or your phone number.
Signatures use ML-DSA-65 and key exchange uses ML-KEM-768, the post-quantum algorithms standardised by NIST in FIPS 204 and FIPS 203. Proof that has to hold up for decades needs signatures that hold up for decades.
FEATURES
- Passwordless sign-in by QR scan or 6-digit pairing code
- Verifiable credentials and organisation mandates in your pocket
- Present a credential and prove you are the holder, in seconds
- Encrypted vault for passwords and TOTP codes, its own PIN, unlimited entries
- Recovery bundle export, an encrypted file you keep, for offline backup
- Nine languages: English, Dutch, German, French, Spanish, Russian, Slovenian, Luganda and Swahili
- Light and dark themes
FOR ORGANISATIONS
Issue credentials and mandates under your own name and let anyone verify them without having to call you. If you run a service and want to offer SPEAQ ID sign-in to your users, visit speaq.id and get in touch.
Welcome to passwordless. Welcome to identity you own. Welcome to SPEAQ ID.
Passwordless sign-in and password vault. Your keys never leave your phone.