Skip to main content

Truly

truly.you provides a PSD2 and SCA compliant authentication platform that replaces SMS codes and 3D Secure redirects with hardware-backed passkeys and dynamic transaction linking. Customers enroll once on mobile and authenticate across web banking, corporate portals, and partner checkouts, with cryptographic signatures bound to each transaction. The platform offers SDKs for JavaScript, React Native, Flutter, Node.js, Python, and Go, with average verification times of 2ms.

HQ unknown
Updated 10 days ago

Funding

Funding not disclosed

Funding rounds are not available yet.

Founders

Founder details are not available yet.

Product

Problem

Current authentication methods are broken. SMS OTPs are interceptable through SIM swap attacks, with $68M stolen in 2023, and cannot be bound to transaction details. 3D Secure redirects cause 10-30% cart abandonment, while push notifications require app switching and lack cross-platform credential sharing, creating friction and security vulnerabilities across banking and payment channels.

Solution

truly.you provides a passwordless authentication platform that uses hardware-backed passkeys stored in device Secure Enclaves (iOS) or StrongBox (Android), ensuring private keys never leave secure hardware. The platform implements dynamic linking, where every signature is cryptographically bound to the exact transaction details—amount, recipient, and timestamp—preventing attackers from modifying authorized data. Customers enroll once on mobile and can authenticate across web banking, corporate portals, and merchant checkouts without re-enrollment, with credentials syncing via iCloud Keychain or Google Password Manager. The platform supports payment authorization, bank login, open banking payments, document signing, account recovery, and identity proofing, all without SMS codes or 3D Secure redirects.

Target Audience

Primary customers are banks, financial institutions, and merchants that need PSD2 and SCA compliant authentication for web banking, corporate portals, open banking payments, and card-not-present transactions.

Features

  • Hardware-backed passkeys using Secure Enclave (iOS) and StrongBox (Android) with private keys that never leave secure hardware
  • Dynamic linking that cryptographically binds every signature to transaction details including amount, recipient, and timestamp
  • One-time enrollment that works across mobile, web banking, corporate portals, and merchant checkout via iCloud Keychain or Google Password Manager sync
  • SDKs for JavaScript, React Native, Flutter, Node.js, Python, and Go with 2ms average verification time
  • PSD2-compliant consent and payment initiation for open banking, eliminating 3D Secure redirects
  • Biometric-based account recovery and KYC identity proofing with liveness detection
This profile is AI-generated and may contain inaccuracies.