Platform

Secure Access Platform — modern ZTNA

QuantivoGate brings Zero Trust Network Access to small and medium companies — simple to set up, powerful enough for enterprise.

Zero Trust Network Access

The modern VPN alternative

Traditional VPNs assume everything inside the network is trustworthy. ZTNA assumes the opposite — verify every request, every time.

Traditional VPN

Castle and moat

  • Services are publicly exposed behind a VPN endpoint
  • Once inside, user has broad network access
  • Credentials alone are enough to connect
  • Attack surface grows with every new employee
  • No visibility into user activity after login
QuantivoGate ZTNA

Verify, then trust

  • Infrastructure hidden — accepts only our IPs
  • Per-user, per-device authenticated access
  • Identity + 2FA required on every session
  • Attack surface stays flat as you scale
  • Full audit log of every action with IP and time

This is the same security model used by Cloudflare Access, Zscaler Private Access, and Palo Alto Prisma Access — delivered as a simple, affordable package for companies that don't have Fortune 500 security budgets.

How it works

Architecture at a glance

Three layers: your employees on one side, your infrastructure on the other, QuantivoGate in the middle as identity and policy control plane.

01

Employee connects

Team member opens the QuantivoGate app, authenticates with password + 2FA, and the device connects over WireGuard or OpenVPN.

02

QuantivoGate verifies

Our infrastructure checks identity, device registration, 2FA, and organizational policy. Every action is logged.

03

Access granted

Your company firewall allows only QuantivoGate IPs. The authenticated employee reaches internal services — safely and audibly.

Who uses it

Two portals for your organization

Organization admins manage the team. Members use the service. Clean separation, no confusion.

ORG ADMIN

You — the business owner or IT lead. Manage employees, devices, policies, and billing.

  • Add and remove team members via email invites
  • See every device connected to your network
  • Full audit log — who did what, when, from where
  • Change plan and billing via WHMCS SSO
  • 2FA setup and password management
TEAM MEMBER

Your employees. They receive an email invitation, activate their account, download the app, and connect.

  • Self-service device enrollment (no IT ticket)
  • Automatic selection of the optimal server
  • Native apps for Windows, macOS, Android, iOS
  • Personal 2FA and profile management
  • Download .conf (WireGuard) or .ovpn (OpenVPN)
Under the hood

Technology stack

Built on proven, modern technologies. Production-ready from day one.

Backend API

Node.js with Express 5, PostgreSQL database, JWT authentication, bcrypt hashing, TOTP 2FA, Helmet + CORS security.

Frontend Dashboard

Next.js 16 with React 19, TypeScript, Tailwind CSS 4, React Query for state, Recharts for monitoring.

VPN Infrastructure

WireGuard and OpenVPN protocols. Two regions (Frankfurt and Zurich) with automatic load balancing and smart selection.

Integrations

WHMCS billing with SSO, Resend SMTP, webhook support, audit log with IP address — full transparency.

Ready to secure access to your network?

Eliminate publicly exposed services. Give employees simple, secure access — with full control and visibility.