Create branded login screens, verify users any way you like, and meet your legal obligations on a single platform. It integrates with your existing firewall and network infrastructure in minutes.
1,247
Active Sessions
89
Today
98.5%
Success Rate
Sample view
Security
256-bit SSL
Monitoring
Real-Time
WORKS WITH YOUR EXISTING FIREWALL
Whether a hotel, a cafe or a corporate office — the right solution for every scenario.
GSM number verification via İleti Merkezi, Netgsm and Twilio. 5651-compliant identity verification.
Secure email verification with a 6-digit OTP code. Customizable templates.
Let your staff approve guests. A fast approval process with instant email notifications.
Single or multi-use codes. Bulk generation, printing and QR code support.
Permanent user accounts. For staff, VIP guests and long stays.
Guest identification compliant with Turkish regulations. Logs stay in your own firewall/SIEM.
Offer guest WiFi in line with the law; protect sensitive data at enterprise grade.
Captivo does not store your traffic logs — they stay on your firewall/router (or your SIEM). It ties every guest to an SMS-verified identity, so “who and when” is clear in your own logs during an audit.
Personal data is protected and automatically, irreversibly deleted at the end of the retention period.
Sensitive fields such as MAC addresses, API keys and passwords are stored fully encrypted.
An extra layer of protection on admin logins with TOTP-based 2FA.
Role-based permissions for team members; every critical action is written to an immutable audit log.
All traffic is TLS-encrypted, with strict security headers and a content security policy (CSP).
No complex setups. A professional captive portal in minutes.
Create your free account and get started in seconds.
Connect pfSense, OPNsense, MikroTik and more. Detailed documentation available.
Set your logo, colors and messages. A professional look that matches your brand.
Your guests connect to your network securely; monitor every session in real time.
A professional management panel and a user-friendly captive portal experience.
Welcome! Verify to connect.
By connecting, you agree to the terms of use.
The screen your guests see
847
Active
1,234
Today
8,541
This Week
98.7%
Success
Real-time monitoring and analytics
Sample view
Detailed user list and data tracking
Sample view
No new hardware; it integrates with the firewall and services you already use.
Enterprise network access, identity and compliance built on the same RADIUS core.
Per-user wired and wireless network access control.
ExploreA second factor for VPN logins with SMS and TOTP.
ExplorePortal and 802.1X login with a domain account.
ExploreSigned traffic logging compliant with Turkish Law No. 5651.
ExploreManage your guests, sessions and reports from anywhere with Captivo Admin. Stay on top of everything from your pocket with instant notifications.
For the cloud (SaaS) edition.

All features are open during early access — no limits, no hidden fees.
All features included • Unlimited usage
No credit card required • Start instantly
Run Captivo on your own server. All data stays with you, it works independently of the internet (LAN / air-gapped), and it installs with a single command.
$ ./install.sh
✓ Dependencies checked (docker, openssl)
✓ Secrets generated (.env.onprem)
✓ Starting services…
captivo-postgres … done
captivo-radius … done
captivo-web … done
✓ Setup complete! Dashboard: https://localhost:3000
Captivo works fully with pfSense, OPNsense and MikroTik. FortiGate, Cisco Meraki, Ruijie/Reyee and UniFi are also supported; UniFi connects through the Captivo Connector (no RADIUS required), while the others integrate over RADIUS with a branded portal template. Any captive portal system that supports RADIUS can be integrated.
Yes. Guests are verified by phone number, and who connected and when is recorded in line with Turkey's Law No. 5651. In the cloud (SaaS) edition, traffic logs stay in your own firewall or SIEM — Captivo doesn't store traffic data; it provides the identity verification records in a compliant format. In the on-premise edition, you can optionally send device logs to Captivo's 5651 Log Server module: logs are collected on your own server and retained for 2 years with a daily signed evidence chain.
Average setup time is 5–10 minutes. You just enter the RADIUS settings into pfSense or OPNsense and upload the portal HTML. Step-by-step visual documentation is available for each hardware platform.
Yes! İleti Merkezi, Netgsm and Twilio integrations are ready. Connect your own account to use your SMS credits and keep benefiting from your corporate agreements.
During early access we offer unlimited locations and unlimited users. For each location you can define a separate portal design, different verification methods and custom settings.
Yes, the on-premise version is live now! It installs with a single Docker command, keeps all data on your own server, and works independently of the internet (LAN / air-gapped). A 15-day free trial is included — visit the /en/on-premise page for details.
Set it up in minutes; connect your guests securely and compliantly.