A website becomes more useful when customers can return to their preferences, saved work, or learning progress. Providing that continuity does not have to mean asking every visitor to create another password for your business.
Gammal Tech provides hosted account sign-in and saved user data. Your website offers the product experience while Gammal Tech handles the account sign-in flow.
What passwordless website login means
In this guide, passwordless means that your application does not ask customers to create or manage an application-specific password. Visitors sign in with their Gammal Tech account through a hosted popup.
Customers who already have a Gammal Tech account reuse it across participating websites. A person who has not registered creates one account with national ID verification; each person can have only one account. The verification details remain private from developers. This guide does not promise a particular delivery channel for login codes or a biometric sign-in method.
What changes for your business
- No application password database for this flow. Your website does not collect or store the user’s account password.
- No app-specific password-reset flow to maintain. Account sign-in is handled through Gammal Tech. Users can still need help with account access or other support questions.
- No secret API key to manage. Browser API calls use a public project identifier and domain whitelisting for registered HTTPS domains.
- Saved experiences with private account identity. Your app restores only customer data that your project previously saved for the same account. Gammal Tech does not disclose underlying account identity details.
These are specific product benefits, rather than a guarantee that every visitor will sign in faster or that support requests will disappear.
The customer’s sign-in experience
A visitor selects the website’s sign-in option and completes the Gammal Tech popup flow. The app checks their session, loads the data your project previously saved for that account, and shows the appropriate signed-in experience. A visible sign-out option lets them leave that session.
Sessions are kept per browser tab. Opening a fresh tab or reopening the browser requires sign-in again. Saved user data persists across visits and devices, so a fresh session can restore earlier progress. Signing out clears the local session; it does not mean the user’s saved preferences have been deleted.
What your website manages
| Feature | What to expect |
|---|---|
| Account passwords | Your application does not collect or store the account password for this flow. |
| Saved preferences | Your app chooses what to save, within the 1 MB limit per user, and can retrieve only the values its own project previously saved for that account. |
| Customer contact details | Gammal Tech does not disclose the underlying account name, email address, phone number, national ID number, or identity documents. Its API does not offer an identity lookup. Information a customer enters into your own forms is a separate collection by your business. |
| Product permissions | Your business determines who may use paid, private, or administrative features; sign-in alone does not decide those permissions. |
Where returning-user login is useful
Learning platforms can remember lesson progress and bookmarks. Productivity services can restore settings and small drafts. Customer portals can offer a signed-in starting point for a client experience, with separate permission checks for private business information.
For an existing website, plan how customers using their existing Gammal Tech accounts will connect to records your business already holds. Gammal Tech does not provide underlying identity or contact details for matching, and records and permissions from a previous login system do not migrate by themselves. Customers do not need to create a second Gammal Tech account for your website.
Setup and login pricing
Currency guide: Listed EGP prices are the billing amounts. USD figures are approximate, using USD 1 = EGP 51.78, the calculated midpoint of Banque Misr’s USD buying and selling rates on 24 September 2026. Your payment provider’s exchange rate and fees may differ.
The owner begins with a verified account and creates a project in the Developer Console. Each project supports up to four registered HTTPS domains. Bare and www versions count as separate domains.
| Feature | What to expect |
|---|---|
| Login, logout and session checks | Free, with unlimited use. |
| Saved user data | Free; a maximum of 1 MB per user applies. |
| Login codes (OTP) | 200 codes per month per project are included. Additional codes cost 0.40 EGP (approx. US$0.0077) each. |
The code allowance includes codes sent during login and checkout identity verification, and resets monthly. Paid usage comes from the project balance: add funds to your personal wallet, then transfer them into the project. The first project is free; additional projects have a one-time fee shown in the Console.
Common questions
Can my website request the customer’s verified identity details?
No. Gammal Tech verifies accounts using national ID and allows one account per person, but does not disclose those underlying identity details to developers. Your project can retrieve only the customer data it previously saved.
Do customers need a new password for my website?
No application-specific password or separate Gammal Tech account is needed for each website. Customers reuse their one Gammal Tech account through the hosted login popup.
Does this remove all account support and security work?
No. It removes your app’s password storage and password-reset flow. Session tokens remain sensitive credentials that must be protected. Your business still needs appropriate customer support and controls for its own features and data.
Can customers keep their progress across devices?
Yes. After the same customer signs in on another device, your project can retrieve the data it previously saved for that account, subject to the 1 MB per-user storage limit.
Reference
- Gammal Tech API and SDK reference — account features, project domains, session behavior, storage limits, and pricing.