How it works — Attestra
From zero to verified

Four steps, one afternoon.

Attestra is a plugin, not a platform. There is no account to create, no data to migrate out of your control, and no monthly per-credential fee waiting once you scale.

01
About 2 minutes

Install and activate

Upload the plugin zip in Plugins → Add New, activate it, and paste your licence key. Attestra adds one menu item to your admin sidebar and nothing else — no wizard, no sample content dumped into your database.

  • Works on any WordPress 6.4+ install
  • No external service to sign up for
  • Your existing theme is untouched
02
About 10 minutes

Set up a category

A category is the shape of a credential — a diploma, a licence, an audit certificate. You define its fields, its template, its expiry behaviour and whether it appears in public search. Most institutions need two or three.

  • Pick the fields this credential type carries
  • Choose portrait or landscape layout
  • Set a default validity window
03
Seconds each, or bulk

Issue records

Add records one at a time from the admin, or import a spreadsheet and create hundreds at once. Each record gets a unique credential ID, a QR code, a public page and a downloadable PDF the moment it's published.

  • Single entry or CSV bulk import
  • Credential IDs generated to your pattern
  • Publish immediately or schedule
04
One shortcode

Publish your verify page

Drop the lookup shortcode on any page and you have a verification portal on your own domain. Share the link on transcripts, in email footers, on printed certificates — anywhere someone might need to check.

  • One shortcode, any page builder
  • Inherits your theme styling
  • Optional API access for partners
Under the hood

What actually happens on a verification.

No blockchain, no third-party registry, no vendor lock-in. Just your database, a signature check and a fast answer.

A record is created

Attestra writes the credential to your own WordPress database, generates a unique ID, and builds a QR code pointing at your verify URL. Nothing leaves your server.

Someone scans the code

The QR opens your lookup page with the ID prefilled. Attestra checks four things in sequence: the record exists, the issuer signature matches, it hasn't been revoked, and today falls inside the validity window.

The answer comes back

A clear verdict — valid, expired or revoked — with the holder's name, the award, and the issue and expiry dates. The whole round trip typically finishes in under 200 milliseconds.

The record changes

Amend a record and the change is logged with a timestamp. Revoke one and it stays verifiable, but the portal reports it as revoked with the reason you gave. Nothing silently disappears.

Set it up this afternoon.

Seven days of full access on one site, delivered the moment you ask for it.