Contents
1. Overview
This page summarizes the technology behind LEGITLY — how our authentication works, the security that protects it, and the tools that sit on top of it. For the platform reference, see our Documentation; this page is subject to our Terms of Service.
2. Single-Use Authentication — the Default
LEGITLY security codes are single-use by default. A genuine single-use code registers as used on its first valid scan and cannot legitimately be re-scanned or reused — which is what makes duplication detectable and counterfeiting hard. Products a brand has elected into Infinite Scan behave differently by design; see Section 4.
3. SHA-256 — Military-Grade Encryption
Our codes and verifiable documents are protected with SHA-256, a military-grade cryptographic standard. It produces a unique fingerprint that underpins the integrity and verifiability of what we issue.
4. Single or Infinite Scan
Brands can choose how a code behaves: single scan, where the code is consumed after one verification, or infinite scan, where customers can verify the same item repeatedly — built for store displays, demo units, and products many people check. Infinite Scan pages carry a teal ∞ ribbon, a Scan Type row, and a running total-scan count, and they work automatically on every verification page template.
Because infinite-scan codes give up single-use copy detection, enabling the mode is an explicit per-product election (the brand types “I agree” in the dashboard) and LEGITLY monitors scan activity on those products. Converting a product back to single scan applies to unscanned codes only — codes already scanned remain recorded as scanned.
The verification code and its year. A verification page displays the code as LGT-{year}-{your 9-character code}, e.g. LGT-2026-A2B-C3D-E4F. On a single-use code the year is the year of that scan — a one-time receipt. On an Infinite Scan code the year is the code’s mint year, fixed at generation, so a display unit scanned across multiple years reads identically on every scan. The two rules serve the same goal from opposite directions: a single-use code is verified once, so stamping that moment is the honest record — while an infinite code is verified many times, so a stable code is what proves it’s the same genuine item, and a year that changed between visits would only create doubt. In both cases, the year is display formatting; the 9-character security code itself never changes.
5. Code and Sticker Tracking
You can track our security codes and stickers — following scans and activity so you have visibility into where and how your products are being verified.
6. Tamper-Evident Holographic Stickers
Our holographic stickers are tamper-evident, designed to show evidence if someone tries to remove or transfer them, so a genuine label stays tied to the genuine product it was issued for.
7. Zero Counterfeit — Check the URL
There is zero chance of counterfeit when customers verify through the correct address. The trust anchor is the URL: genuine verification happens on legitly.com. If a scan or link sends a customer somewhere else, that is the red flag.
8. The LEGITLY Tools
Built on this foundation are our tools, each with its own info page: QR Generator, Voice (speech-to-text and court-ready transcripts), Video Checker (C2PA Content Credentials), Encrypted Messages (single-use, self-destructing), Ancient Text (community decoding archive), and our G-Codes generator.
9. Disclaimer
This summary is provided for general information. Specific features, availability, and pricing depend on your plan and are described on the relevant tool and Documentation pages.
Contact Us
If you have questions about this document, please contact us:
LEGITLY — Legal Department
Long Beach, California 90803, United States
Email: info@legitly.com
Phone: 1-888-LEGITLY