DV Ghost

Customer IAM — consumer identity protection that cannot be breached.

Your customers trust you with their health, their finances, their identity.
The only acceptable architecture is one where their data cannot exist in recoverable form.

In Development

Register Interest

Every Platform-Scale Breach Shares One Cause

The organizations making breach headlines are not failing to protect their data hard enough. They are storing it in a form that is, by design, recoverable. Encrypt it, hash it, vault it — it still exists. If it exists, it is a target.

Consumer identity data is the highest-value target in any breach: email addresses, authentication records, profile data, PII. An attacker who dumps your customer database gets a marketable, immediately usable dataset regardless of what your security posture looked like before the breach.

DV Ghost changes the architecture. Customer identity data is cryptographically protected with keys that your organization does not hold alone — keys that do not exist in recoverable form on any server. When the database is dumped, the attacker gets encrypted blobs that are uncrackable without key material that was never there.

“We cannot tell you which of your customers authenticated today, because that information does not exist on our servers in a recoverable form.”

The DV Ghost guarantee

Auth0 can tell you. Okta can tell you. AWS Cognito can tell you. They hold customer authentication data in vaults that are, by definition, breachable. DV Ghost cannot tell you. That is the product.

How Zero-Existence Customer Identity Works

No agent. No browser extension. No changes to your existing application stack. DV Ghost sits at your identity boundary and makes the data unbreachable at the architecture level.

Step 01

Split-Key Encryption at Registration

When a customer registers, their identity data is encrypted with a key that neither party holds alone. Your server contributes a cryptographic pepper stored outside the database. The customer contributes a key derived from their passphrase in the browser — never transmitted. Neither half alone decrypts anything.

Step 02

Zero-Plaintext Storage

Nothing is stored in readable form — not the email address, not the authentication event, not the metadata. Lookup indexes use HMAC blind indexing: queries find records without the underlying address ever being exposed. A full database dump yields uniform encrypted blobs with no structural information about who authenticated or when.

Step 03

Decrypted Only at the Point of Use

When your application needs customer data, DV Ghost decrypts transiently in memory and passes it through to your existing stack — your CRM, your application database, your line-of-business systems. DV Ghost is not replacing your infrastructure. It is ensuring that what arrives is verified and what is stored is permanently unbreachable.

Key Capabilities

Browser-Native Cryptography

Key derivation happens on the customer’s device via WebCrypto — no install, no extension, no friction for non-technical users.

Blind Index Lookups

HMAC-based indexes let your application query identity records without ever storing or exposing plaintext identifiers in the database.

Tamper-Evident Audit Chain

Every identity event is recorded in a sharded, cryptographically chained audit log. Prove to regulators that a record was never modified — or that a breach affected only a bounded set of records.

Identity Boundary Integration

DV Ghost sits at the consumer identity boundary. Your application, database, and CRM stay in place — customers notice nothing except that their data is safe.

A Different Category of Solution

What DV Ghost Is Not

  • Not a consumer identity platform competing on features and price with Auth0 or Cognito
  • Not a social login aggregator or SSO layer
  • Not a better-encrypted vault — there is no vault
  • Not a replacement for your application database or CRM

What DV Ghost Is

  • A cryptographic protection layer at your consumer identity boundary
  • Zero-existence by design — not by configuration
  • The only customer IAM system where a database dump yields nothing usable
  • Compliance-ready architecture for organizations whose breach cost is existential

Built for Organizations With Everything to Lose

DV Ghost is for organizations whose customers trust them with something that matters — not every platform, but the ones where a breach headline is an existential event.

Healthcare & Patient Portals

Patient identity, authentication history, and health platform access records — protected by an architecture that makes a breach meaningless. HIPAA compliance posture strengthened at the foundation, not bolted on afterward.

Financial Services

Customer authentication records and identity data for trading platforms, loan origination, and account portals. PCI-DSS and GLBA compliance surface significantly reduced when the data cannot exist in recoverable form.

Legal & Professional Services

Client portal identity, matter access records, and document authentication — protected with the same cryptographic architecture that governs your most sensitive internal systems.

Pharma & Medical Devices

Patient-facing platforms, device authentication, and clinical trial participant identity. Platform-scale consumer breaches are architectural failure, not operational failure. DV Ghost closes the architecture.

Regulated Consumer Platforms

If your platform stores consumer identity data and a breach headline would cost more than the remediation — the industry default is a vault. DV Ghost is the absence of one.

Already protecting internal credentials with DV Enterprise? DV Ghost extends zero-existence protection to your customer-facing identity surface. The two products share a cryptographic foundation and are designed to operate side by side. Learn about DV Enterprise →

DV Ghost is in active design.

We are building for organizations where a breach is not a setback — it is an existential event. If that describes your organization, we want to hear from you before we finalize the product.

Register Interest

See DV Enterprise →