OpenProof separates proof, identity and access. Passkeys, social sign-in, wallets and enterprise federation can meet one account model without silently merging users by coincidence.
Provider federation with issuer and subject provenance preserved.
03
Wallet identity
SIWE · SIWF · ERC-1271 · signed ownership proofs
04
Enterprise identity
SAML 2.0 · LDAPS · SCIM 2.0 · RBAC
05
Sessions & tokens
Carry assurance and authorization context without collapsing proof provenance.
06
Self-hosted boundary
Keep identity policy, provider credentials and persistence inside infrastructure you control.
04 / Self-hosting
Keep the trust boundary where your infrastructure lives.
OpenProof is designed to sit behind your own HTTPS edge, with your datastore, provider credentials and session policy under your control.
Your trust boundary
Own the origin, secrets and state.
No hosted Genyleap identity service is required. Deploy OpenProof inside the environment you operate and expose only the interfaces your applications need.
Your originChoose the public identity URL.Your secretsKeep provider credentials in your secret boundary.Your datastoreOperate the persistence layer you trust.