Anyone can produce an MRR screenshot. ProofCap connects directly to the payment processor and analytics platform to verify the numbers — without relying on anything the seller provides.
The problem
A seller can prepare an MRR export that shows anything they want. Screenshots are trivial to edit. Even billing CSV exports can be manipulated before sharing. And most buyers don't have direct access to verify what they're shown.
The result: acquirers regularly overpay — or worse, purchase businesses with fabricated revenue — because the diligence process relies on data the seller controls.
Red flags ProofCap detects
The process
01
We request the minimum read-only scope. No write access, no credential storage. We pull subscription events, payment history, and refund rates directly from the source. Supports Stripe, Lemon Squeezy, and more.
02
We link the GA4 property for the domain under audit and extract session counts, traffic sources, engagement rates, and conversion funnels over the same period as the billing data.
03
Our pipeline computes the implied conversion rate from visitor to paying customer. If reported MRR requires conversion rates that are statistically implausible given observed traffic, it flags a discrepancy.
04
The result is a Plausibility Score (0–100), a breakdown of risk vectors, and a timestamped report you can share with co-investors, advisors, or your legal team via a secure link.
| Dimension | Manual | ProofCap |
|---|---|---|
| Data source | Seller-prepared exports | Direct API connection |
| Revenue data | Screenshots / CSV | Live billing API event log |
| Traffic data | Self-reported analytics | Direct GA4 OAuth read |
| Cross-reference | None | Automated plausibility scoring |
| Time required | Days to weeks | Under 30 minutes |
| Shareable report | PDF you compiled | Cryptographically timestamped |
Read-only by design
ProofCap never requests write access to your billing platform or Google Analytics. We cannot modify subscriptions, issue refunds, change analytics properties, or alter any data. OAuth tokens are used only for the duration of the audit and are not stored permanently.
No setup fee. No credit card required. Connect the accounts and get a full plausibility report.
Start free verificationDue diligence frameworks, valuation guides, and forensic audit case studies — sent once a month, no spam.