Three teams, three audiences that don't read email, one channel that lands.
Lockout tickets at shift change−58%
Expiry heads-ups acted on within a day86%
Clinical staff with corporate email open on shift~1 in 5
A regional health network ran password expiry on a strict 90-day cycle — and every cycle ended the same way: nurses locked out at 6:55 a.m., a helpdesk queue before the first patient. The expiry warnings were going to email accounts that clinical staff open, at best, once a shift.
Their directory now calls Gotta Get Through seven days before expiry. The text names the action and the portal — nothing to click, nothing to type back — and staff reset from the kiosk they already use. The audit log shows who was reached, and the morning queue belongs to actual emergencies again.
“The 7 a.m. lockout rush was a fixture for years. Now it's a footnote in the weekly report.”
Store staff with a corporate mailbox0
Shared-terminal lockouts per week, before → after31 → 4
Stores reached in the first send240/240
A franchise chain's store associates share point-of-sale terminals and never touch corporate email. Password and PIN rotations were announced on a printed sheet in the back office — so rotations arrived as a surprise, at the register, with a line forming.
Now the rotation heads-up goes to each associate's phone the morning it matters, from one number every store recognizes. It says what changes and where to do it — the manager portal — and never carries the new credential itself. Head office watches delivery receipts roll in by region before doors open.
“Our people read texts, full stop. This is the first IT rollout the stores didn't call to complain about.”
MFA re-enrollment, planned vs. actual6 wks → 4
Floor workers enrolled without a helpdesk visit91%
Reminder emails sent in the old rollout11,000+
A manufacturer's security team had to re-enroll every employee in MFA — including plant-floor workers who check email weekly, on a good week. The previous attempt took eleven thousand reminder emails and still ended with supervisors walking the line, clipboard in hand.
This time each wave got one text: what to do, the deadline, and the enrollment kiosk by name. Because the message carried no link and asked for no code, the security team could tell everyone, plainly: anything else claiming to be us is fake. The rollout beat its own schedule by two weeks.
“The text told people where to go, not what to click. That one design decision did our anti-phishing training for us.”
Twenty minutes, your use case, a live send to your own phone.