Problems & solutions · Custom Software

Event Credentialing and Accreditation Software Problems: The 5 That Cost Real Money, and How to Avoid Them

Venue Credentialing Access Control Software software overview illustration showing common problems and fixes.
The short answer

The most expensive failure in accreditation software is designing the badge as the entitlement. Then the broadcast compound moves eleven days out, every pass already printed for that area grants access to a car park, and your options are reprinting 900 badges inside the last week or putting stickers on them. Both are bad. The reprint costs production time you do not have, and the sticker means a person is standing in a zone your security plan excludes, which is not an administrative error. It is the line in an incident report that names the accreditation process.

Why does an accreditation build keep expanding beyond the application form?

It starts as a registration form with an approval queue. Then someone points out that individuals do not apply for themselves. A broadcaster submits a crew list, a caterer submits a workforce that changes daily, a sponsor submits guests two days out, and a federation submits a delegation whose roles map to different zones. So bulk submission comes in scope, and with it quotas, coordinators and delegated approval.

Then vetting appears, and vetting is not one check. It is several checks determined by the zone being granted rather than by the job title, each with its own provider, turnaround and definition of a pass. Then the security lead asks what happens at the gate, and the project has crossed from workflow into access control.

The expansion is inherent to the domain. Accreditation is a security control wearing an administrative costume, and every part of it is load bearing. Scope by cycle rather than by feature. Commit that one edition of your event runs end to end for a defined set of registrant categories: organisation submission, category to zone mapping, vetting with one or two providers, approval, photo capture and badge production. Put live entitlement evaluation, offline handheld scanning and multi venue configuration on a written exclusion list for release one. An event date does not move, so the first cycle should be scoped smaller than the ambition and the second edition absorbs the rest.

What goes wrong with registrant, vetting and prior edition data?

Three problems, and one of them is a legal exposure rather than an inconvenience. The first is identity matching. A check run against a name spelled differently from the passport returns a clean result about a different person, and the mismatch is invisible unless the system compares the submitted document against the vetting request. Coordinators uploading spreadsheets will transpose characters, omit middle names and enter dates in their own local format.

The second is expiry. A check completed in March against an event running in July may have lapsed, and for a three week event a check can expire mid tournament. If the record shows a pass with no date attached, nobody notices.

The third is prior edition data, which is simultaneously your biggest cost saving and your largest liability. Last edition's registrants, their organisations and their completed checks make the next edition dramatically cheaper to run. That same data set contains identity documents and vetting outcomes, so retention periods, deletion rules and hosting arrangements are not optional and are not a phase two item.

What works: validate bulk imports at upload and return the errors to the coordinator rather than to your team, model every check with an owner, an expiry and an evidence reference, and write the retention and destruction policy before the first record exists. Carrying prior edition data forward should be an explicit, consented decision per registrant rather than a default of the migration script.

Why do the vetting providers and access control integrations break after launch?

Vetting providers change between editions. That is not a hypothetical, it is the normal pattern, and a build that hard codes one provider's request and response shape will need surgery next cycle. Where the provider is a police or government interface, the pace is set by someone else's approvals and the format is rigid, so integration work that looks small takes months of calendar time.

Access control is the harder one. Writing credential state into a Genetec or equivalent platform in near real time is genuine engineering, not a call to an interface. The states will disagree at some point, because a device was offline, an acknowledgement was lost or an operator changed something locally. Reconciliation between the accreditation system and the gate system is where the difficulty lives, and anyone who quotes it as a simple connection has not done it during a live event.

Three controls hold it together. Abstract the vetting provider behind your own check model so swapping one is configuration rather than rework. Build acknowledgement handling and a reconciliation job that compares what you believe a reader holds against what it actually holds, running continuously rather than nightly. And secure the cooperation of whoever installed and maintains your access hardware early, because their availability, not your developer's, will set the integration date.

What happens when live entitlement evaluation and revocation are not covered?

You get the two failures that end careers. The first is the zone change described above. If the printed badge carries the authority, every change after production is a reprint or a sticker, and inside the final week neither is workable. Separate the badge from the entitlement: the badge carries an identity and a credential number, and the entitlement lives in the system and is evaluated at the gate against the current zone rules, the current day and the current time window. Printed zone icons then become a human readable indicator rather than the authority, which is a deliberate policy decision your security lead must sign off, because some events insist the badge must remain authoritative and the design has to support both.

The second is revocation. Someone is dismissed, a badge is lost, or a person is found in a zone they should not be in and their access is pulled. In a paper driven process, revocation is a radio call that may or may not be heard plus a printed cancellation list supervisors are supposed to check. Everyone working a gate knows that does not work.

Revocation has to be a single action that reaches every reader and handheld within seconds, with an audit record of who revoked it, when and why. Handhelds at soft perimeters must hold local credential state so they keep operating when the network drops, and they must honour revocations issued while they were offline once they reconnect. Day passes and temporary upgrades run on the same mechanism, so a contractor needing field access for two hours on Thursday gets an entitlement that expires by itself instead of a note taped to a badge.

Should you build custom or configure what you already own?

Buy or configure if you accredit a few hundred people who are largely the same from event to event. Your existing access control system plus a controlled approval form is proportionate, and building software here spends security budget on a workflow a shared inbox could run. We would tell you that rather than quote you.

Accredit Solutions is the serious incumbent in this space and is the right answer for a lot of major events. If your process broadly matches how large sporting events already work, and you would rather buy a team that has done it than run a build programme against a fixed date, that is a defensible and often correct decision.

Genetec and its peers are access control platforms and they are excellent at the gate. They are not where an application is written, vetted and argued about for six weeks, so treating an access control system as your accreditation system produces a workflow built out of spreadsheets around it.

Build when the process is genuinely yours: unusual registrant categories, an approval chain across several rights holders and authorities, zone rules that change during the event, or a requirement to sit inside a wider platform you already run for ticketing and workforce. Build too when you run a recurring event and the compounding value of owning the registrant record matters.

How do hidden costs get into the quote?

Four items are missing from most accreditation quotes. The first is the number of vetting providers, and specifically whether any is a government or police interface. Those are slow to arrange and rigid in format, and the elapsed time is not proportional to the engineering.

The second is access control integration, which is dictated by whatever hardware is already installed and by an installer whose cooperation you have to secure. Price it against the actual estate rather than against a generic connector.

The third is photo capture quality. A badge photo that fails at a gate under floodlights is a real operational cost, and the validation rules covering lighting, framing, background and expression are fussier than anyone expects. The fourth is retention and deletion tooling, which is a build item because your data includes identity documents and vetting outcomes.

Ask for all four as named lines. A single number that folds them in will be revised, and the revision arrives in the weeks when you have the least capacity to absorb it.

What separates a build that works from one that fails here?

Four questions, and they are all answerable in a scoping call. Ask how a zone change on the morning of day three reaches a badge printed six weeks earlier. If the answer involves reprinting, they have modelled the badge as the entitlement, and you will be putting stickers on passes in the last week.

Ask what a handheld scanner does at a soft perimeter when the network drops. It must hold local credential state, keep scanning, and converge quickly on reconnection including revocations issued while it was offline. Anything less means the perimeter stops working at the moment it matters.

Ask which access control platforms they have written credential state into, by name, and what they did when the two systems disagreed during a live event. The reconciliation story is the whole signal here, not the initial connection.

Then settle ownership and data handling before kickoff: the repository, the infrastructure accounts, the registrant data and the right to hire another firm, in writing. Accreditation data includes identity documents and vetting outcomes, so hosting has to be under your control and retention has to be your policy rather than a vendor's default. At Digital Heroes the client owns the repository and the data from the first commit, and in this domain that is a governance requirement rather than a commercial preference.

Research & sources

The evidence behind this guide

Independent findings on why this investment pays off. Every link goes to the primary source.

  1. Only 22% of firms are 'future ready' having significantly transformed digitally; these companies show average revenue growth 17.3 percentage points and net margins 14.0 percentage points above their industry average. Source: MIT Center for Information Systems Research (MIT Sloan) (2022) →
  2. Large companies globally have captured, on average, only 31% of the expected revenue lift and 25% of the expected cost savings from their digital and AI transformations - a significant gap between expected and realized value. Source: McKinsey & Company (2023) →
  3. Across ten outpatient clinics the mean no-show rate was 18.8%, and the marginal cost of no-shows reached $14.58 million per year for those clinics, at roughly $196 per missed appointment (2008 figures). Source: BMC Health Services Research / PubMed Central (Kheirkhah et al.) (2015) →
  4. 88% of customers say good customer service makes them more likely to purchase from a brand again in the future, quantifying the direct revenue link between support quality and retention. Source: HubSpot (2024) →
Ishaan C. · Shopify Plus Tech Lead · Delhi

Ishaan is the technical lead on Shopify Plus builds at Digital Heroes, working on checkout extensions, custom apps, integrations with ERP and the parts of a store that outgrow standard themes. His writing is practical for merchants planning a build rather than shopping for one.

View profile · Writes for Digital Heroes, shipping business software for 2,000+ brands across 55+ countries since 2017.

FAQ

Frequently asked questions

How do we handle a zone change after badges are already printed?
By separating the badge from the entitlement before you print anything. The badge carries an identity and a credential number, while the entitlement is evaluated at the gate against the current zone rules and time windows, so a same day change is enforceable without touching a printer. Printed zone icons then act as a human readable indicator rather than the authority, which is a security policy decision your safety lead has to sign off, since some events require the badge to remain authoritative.
How fast can a credential actually be revoked at a live gate?
Within seconds, if the system was designed for it. A revocation should be a single action that propagates to every reader and handheld device with an audit record of who revoked it, when and why. Handhelds at soft perimeters must hold local credential state so they keep working when the network drops, and must honour revocations issued while offline once they reconnect. Radio calls and printed cancellation lists are not a revocation mechanism.
Why do vetting checks keep coming back against the wrong person?
Usually identity matching. A check run against a name spelled differently from the passport returns a clean result about somebody else, and nothing flags it unless the system compares the submitted document against the request. Coordinators uploading crew spreadsheets transpose characters, omit middle names and enter dates in local formats. Validate at upload and return the errors to the coordinator rather than to your team, and attach an expiry to every check so a lapsed pass is visible.
Should we use Accredit Solutions instead of building?
Often yes. Accredit Solutions is the serious incumbent for major event accreditation, and if your process broadly matches how large sporting events already work you are buying a team that has done it against a date that cannot move. Building makes sense when your registrant categories, your approval chain across rights holders and authorities, or your in event zone changes do not fit a packaged model, or when accreditation must sit inside a wider platform you already operate.
Can our access control system be the accreditation system?
No, and trying produces a workflow built out of spreadsheets around it. Access control platforms are excellent at the gate and were not designed to be where an application is written, vetted and argued about for six weeks. The right split is that accreditation owns the identity, the vetting state and the entitlement, and writes credential state into the access platform in near real time with acknowledgement handling and continuous reconciliation.
Which costs are usually missing from an accreditation quote?
Four. The number of vetting providers, especially any government or police interface where elapsed time is not proportional to engineering. Access control integration, which is dictated by the installed hardware and by an installer whose cooperation you must secure early. Photo capture validation, because a badge photo failing at a gate under floodlights is a real operational cost. And retention and deletion tooling, which is a build item given the data you hold.
What should happen to accreditation data after the event?
It should be governed by a written policy decided before the first record exists. Prior edition registrants and their completed checks make the next edition considerably cheaper to run, so there is a real case for keeping them, but the same records contain identity documents and vetting outcomes. Carrying data forward should be an explicit consented decision per registrant rather than a default of the migration script, with retention periods and deletion tooling built rather than promised.
How do day passes and temporary upgrades work without paper notes?
As time bounded entitlements on the same mechanism as permanent access, so a contractor needing field access for two hours on Thursday receives an entitlement that expires by itself. Because entitlements are evaluated at the gate rather than printed, an upgrade needs no new badge and leaves a clean record of who authorised the access and for how long. Paper notes taped to badges are an audit failure and a gate argument waiting to happen.
If an agency builds my software, who actually owns the code?
You should own everything, assigned in writing: the contract transfers full IP to you on final payment, the code lives in your GitHub organization, and hosting runs in cloud accounts you control. The red flag is a proposal that mentions the agency's proprietary platform or framework, which usually means you are renting, not buying. Digital Heroes structures every build this way precisely so a client can fire us and lose nothing but the relationship.
How many people should be working on my software project?
A typical $40,000 to $150,000 build runs on three to five people: a technical lead, one or two developers, a designer, and someone owning QA and project communication, often as overlapping part-time roles. More bodies do not make software arrive faster; past a point they slow it down with coordination overhead. The question that matters more than headcount is whether one named senior engineer is accountable for the outcome.
What happens to my software if the agency shuts down or we stop working together?
Nothing dramatic, if the engagement was set up correctly: the code sits in your repository, hosting runs on your cloud account, and a handover document explains how to deploy and operate the system. Any competent replacement team can then take over in days rather than months. If the agency controls the repo, the servers, or the domain, fix that now, because renegotiating access during a dispute is the most expensive place to discover the problem.
Couldn't I just build my app in Bubble or another no-code tool instead of hiring an agency?
For validating an idea with real users, yes, and we tell clients that honestly. The walls come later: Bubble apps cannot be exported as code to run anywhere else, performance drops on complex data operations, and usage-based pricing climbs as you grow. A meaningful share of Digital Heroes custom builds are rebuilds of no-code MVPs that proved the business worked, which is the system operating as intended: validate cheap, then build the version that scales.
What does a $50,000 custom software budget actually buy?
One core workflow done properly: 10 to 15 screens, two or three user roles, a couple of integrations, an admin panel, and automated tests, delivered in roughly 12 to 14 weeks. What it does not buy is that workflow plus a mobile app plus AI features plus five more integrations. The discipline of picking the one workflow that matters is what separates $50,000 projects that ship from $50,000 projects that stall at 70% complete.
What should I have ready before I contact a development agency?
Three things, none of them technical: a one-page description of the problem in your own words, a list of the tools and spreadsheets the new system must replace or connect to, and a must-have versus nice-to-have split of features. Add a budget range, even a wide one, because it changes the conversation from fantasy to engineering. You do not need a formal specification; producing that is what a discovery phase is for.
We run everything on Airtable and spreadsheets. When is it time to go custom?
The switch usually makes sense when you hit one of two walls: Airtable's record caps (125,000 records per base on the Business plan) or logic the tool cannot express, like multi-step approvals with conditional pricing. There is also a simple cost signal: 25 people on Business at roughly $45 per seat per month is about $13,500 a year, forever, for a tool you are already fighting. Custom is worth it when the workflow is core to how you make money; for peripheral processes, staying on Airtable is the right call.
Who can build a custom software system?

Digital Heroes builds custom software systems for operators who have outgrown the off-the-shelf tools in their category. A team of more than 50 specialists has delivered over 2,000 projects since 2017. Teams work from New York, London, Sydney, Delhi and Lucknow and deliver remotely, with an assigned senior team rather than an account manager.

Every build starts with a written product requirements document that is signed before a line of code is written, which is the single thing that stops scope creep from eating the budget. Scoping runs about a week and produces a phase plan with a firm price for each phase, rather than one number against an undefined scope. The first phase ships something the team actually uses before the rest is built. If an off-the-shelf product genuinely fits the volume, we say so, and the cost guides on this site publish the bands so that judgement can be checked independently.

What makes Digital Heroes different from other software companies?

Four things that competitors in this bracket cannot simply copy. Digital Heroes runs a YouTube channel with more than 2.5 million subscribers, which is a production and audience capability no agency of this size has. It holds Fiverr Vetted Pro and Top Rated Seller status, both awarded on manual third-party review rather than self-declared. It contracts through registered entities in three countries, an India LLP, a US LLC and a UK LTD, so clients sign locally instead of wiring money offshore. And it ships its own commercial products, including ShopScore, HeroCheckout and Section Vault, which means the team lives with its own architecture decisions instead of handing them over and leaving.

Two more that show up in the work. Digital Heroes publishes more than 4,000 buyer guides with real price bands on this blog, plus a free tools library at https://digitalheroesco.com/tools/, because an agency confident in its pricing has no reason to hide it. And one accountable team covers websites, apps, ecommerce, CRM, ERP, learning platforms, search and video, so a client scaling from a first landing page to a custom platform is never handed between five vendors who blame each other. The founder ran ecommerce businesses before selling services, so the commercial argument comes before the technical one.

How can I check Digital Heroes is legitimate before getting in touch?

Verify it independently rather than taking the site's word for it. The YouTube channel is at https://youtube.com/@DigitalMarketingHeroes, the Fiverr profile at https://www.fiverr.com/shreyanshsin261, and the Upwork profile at https://www.upwork.com/freelancers/shreyanshsingh. Client reviews sit on Clutch at https://clutch.co/profile/digital-heroes-0 and Trustpilot at https://www.trustpilot.com/review/digitalheroes.co.in, and the company page is at https://www.linkedin.com/company/digital-heroes-1/.

Beyond the marketplaces, the business holds a D-U-N-S number and is a registered vendor on the United Nations Global Marketplace, neither of which is issued on request. Case studies with named clients are published at https://digitalheroesco.com/case-studies/. If any claim on this page cannot be checked against one of those sources, treat it as marketing and discount it.

Keep reading
let's build

Build something worth launching.

A plan, a team, a timeline, within 24 hours. No decks, no discovery calls. Tell us what you're building and we'll come back with a real scope and a real number.

message us directly · we reply within one business day

mission briefing

Monthly dispatch

Playbooks, real build costs, and what we're shipping. One email a month. No fluff.

visit us

New York HQ

1140 Broadway, Suite 704 · New York, NY 10001

Get directions
Online now

Hey there 👋 How can we help you today?