Forward your OTPs to anywhere

You receive an OTP. We forward it. To anywhere.
Who it's for

Built for the way you actually use OTPs

OTP forwarding sounds niche \u2014 until you need to share a code across accounts, devices, or people. Here are the people we built it for.
  • The Consultant
    Working in a client’s inbox? Share verification codes with the client as another otp1 user — no screenshots, no copy-paste.
  • The Family Helper
    Help a parent or relative with banking, government, or subscription logins. The OTP lands in your own inbox.
  • The Automation Builder
    Wire OTP delivery into a downstream service that doesn’t speak email. Programmatic, low-latency, with signed webhook payloads.
  • The Casual User
    Forward a few OTPs a week from multiple email accounts to yourself across devices. Mobile-friendly in-app inbox, nothing to install.
How it works

Three steps, then it just works

  • Add a source
    Point a mail filter at your forwarding address (one per inbox — Gmail, Outlook, bank alerts, etc.).
  • Add a destination
    Choose where the OTPs go: Discord, Slack, an email link, a webhook, or your own code via the API.
  • Receive your code
    Within seconds of the original email arriving, the OTP shows up wherever you chose — labeled by source.
Destinations

Forward to wherever you work

Pick one destination, or stack them per source. Add a catch-all and a per-source override and otp1 picks the right set for each email.
  • In-app inbox
    Your OTP, always. Real-time SSE push, 7-day retention, source-labeled. The system’s source of truth — not a destination you can turn off.
  • Email link
    A short-lived, opaque link that opens the OTP in a browser. Share it with someone you trust. Free is link-only; paid plans can include the plaintext in the body.
  • Discord
    A formatted embed — source label, OTP, timestamp — posted to a webhook in the channel you choose.
  • Slack
    A Block Kit message with the OTP front and center, posted to a Slack incoming webhook.
  • Webhook
    A signed JSON payload (HMAC-SHA256) to a URL you own. Source email, source label, OTP, and a unique event id — everything an automation needs.
  • Share with another otp1 user
    Hand the OTP to someone else on otp1.me. The recipient sees it in their own in-app inbox, labeled with your source and a “Shared” badge.
Privacy

Privacy by default

The boring parts of OTP forwarding are the most important. Here\u2019s how we keep the data footprint small.
  • 7-day default retention
    Emails and OTPs are purged on a rolling sweep. You can shorten or lengthen the window per plan — we don’t keep anything you don’t need.
  • No subject or sender scanning
    Your mail-client filter is the single source of truth. We don’t run subject-keyword or sender-allowlist filters on inbound mail — nothing is silently dropped on our end.
  • Encrypted at rest
    Destination configs (webhook URLs, secrets, etc.) are encrypted with AES-256-GCM. Webhook signing secrets are stored hashed — we can’t read them, and neither can anyone who breaches the DB.
  • Small data footprint
    We keep the OTP and a few metadata fields — not the full email body. We are an OTP service, not an email archive.
Onboarding

Get going in under a minute

The signup-to-first-OTP path is three steps. There is no app to install, no card to add, and the wizard inside /app is fully skippable.
  • Send one email
    From the address you want to log in with, send anything to signup@otp1.me. The from-address becomes your identity — no password, no card, no app install.
  • Click the magic link
    We send a one-tap login link back. You land in your in-app inbox. Inbound email proves the address is yours, so there’s no separate verification step.
  • Add a source, add a destination
    Point a mail filter at your forwarding address and pick where the OTPs go. First OTP typically arrives in under a minute.

Ready to forward your first OTP?

Send a one-line email to get started. No password, no card, no install.