Privacy-preserving security

Communication Verification

Confirm a specific channel against the organization it claims to represent. CardIQ returns only Verified or Not Verified—never an employee identity.

What is Communication Verification?

The visitor selects the organization first and enters one communication detail. CardIQ safely detects its type and answers one narrow question: is this channel currently authorized by this organization?

Verified

The channel is currently registered by the selected organization in CardIQ as an authorized corporate communication channel. This does not prove who is physically using a device at that moment.

Not Verified

CardIQ could not confirm the submitted channel as currently authorized. This does not establish fraud; confirm sensitive requests through another trusted company channel.

Five supported channels

Email, mobile number, WhatsApp, landline, and Trusted Domain.

Privacy-Preserving Verification

Company context is intentionally required. You may ask “Is this WhatsApp number authorized by Barmageyat?” You may not ask “Which company owns this number?”

No reverse lookup

CardIQ does not discover which company owns an arbitrary phone number, email, or domain.

No identity disclosure

Results do not reveal an employee name, title, photo, department, owner, user, or internal record.

A deliberately narrow service

These boundaries prevent CardIQ from becoming a reverse-phone directory, employee directory, contact-harvesting tool, or corporate-data discovery service.

How each channel is checked

Email

CardIQ checks the exact company-approved address. A trusted domain alone does not make an arbitrary address such as fakeperson@company.com valid.

Mobile number

CardIQ compares organization-approved mobile numbers after normalizing common formatting differences.

WhatsApp

CardIQ checks the exact organization-approved number in CardIQ records. This is not verification by WhatsApp or Meta and is not a WhatsApp badge.

Landline

CardIQ checks approved organizational landline numbers, with common phone formatting normalized.

Trusted Domain

CardIQ checks the company’s active trusted domains. Bare domains, www forms, and full HTTP(S) URLs normalize to the exact host; lookalike domains do not match. This check is separate from exact email-address verification.

Executive impersonation fraud

A sender can copy a CEO’s name, photo, title, writing style, WhatsApp display image, or email appearance. CardIQ lets the recipient check the actual channel against the claimed organization before acting.

Requests worth checking

Payment or bank-detail changes, invoices, gift cards, password resets, confidential data, urgent executive instructions, recruitment, suppliers, websites, phishing email, and WhatsApp requests.

Use the channel, not its appearance

A matching name or profile photo is not proof of identity. Verify the communication channel before acting on sensitive requests.

Company profile verification flow

Each enabled public CardIQ company profile includes Verify Communication. It opens /{company-slug}/verify—for example, /barmageyat/verify—so the company is already known and the visitor enters one value while CardIQ detects the communication type.

CardIQ mobile Communication Validator

In the mobile app, open Verify Communication, select the company first, then choose Email, Mobile, WhatsApp, Landline, or Trusted Domain and enter the value.

Share to CardIQ on Android

From WhatsApp or another app choose Share → Verify with CardIQ. CardIQ may receive explicitly shared text, a phone number, email, domain or web address, vCard, or wa.me link.

Private content stays private

CardIQ only inspects content explicitly shared by the operating system. It does not read chats or WhatsApp databases, scrape screens, use Accessibility Services for this feature, or monitor private messages.

Manual entry may be required

WhatsApp does not guarantee that the sender’s phone number is included in shared content. If no usable number arrives, enter it manually. An iOS Share Extension is not currently documented as available.

The current company verification web page does not present an Open in CardIQ handoff, so this documentation does not claim that web-to-mobile button as live.

Inactive employees and accurate records

A channel attached only to an inactive or deactivated employee returns Not Verified. CardIQ does not show Revoked or Previously Valid because this result does not expose channel history.

Administrator responsibility

Keep employee email, mobile, WhatsApp, landline, company website, public company contacts, and trusted domains accurate. Update or deactivate records promptly when an employee leaves or a number changes.

Corporate identity and communication verification

CardIQ helps organizations control and verify how employees and official communication channels represent the company. It is not a fraud-detection engine, monitoring platform, Meta provider, or device-authentication system.

Learn more

Educational guides from CardIQ Insights.

Control how employees represent your company externally

Explore the CardIQ platform or review the workflow from verification through identity deactivation.

See how CardIQ works View pricing