tap to see life without Wakoo
Security

How Wakoo handles your code and data.

Read-only by default, scoped access, human approval on every change, audit-ready records, and deployment on your terms. The full picture, in one place.

Read-only by defaultHuman approvalCloud · private cloud · on-premise
wakoo — control
› controlled by design
scopeworkspaces and sessions
accessusers and contexts
decisionhuman approval
deploycloud · private cloud · on-premise
retainreports · exports · audit
Security & compliance

Built to pass a security review.

The questions a security team asks first (scope, access, approval and audit) are part of how Wakoo is designed, not bolted on after.

Data boundary

Wakoo reads only the context you connect for a given scope: nothing beyond it.

Scoped access

Roles decide who can see and run what, per environment.

Human approval

Nothing applies on its own: every change waits for a person.

Audit-ready records

Who ran what, what it touched, what to follow after: exportable.

For your security team

Have a security questionnaire, an SSO requirement, or a SOC 2 / data-residency question? Tell us where you need to land and we'll walk you through it before any rollout.

Controlled by design

Control matters as much as speed.

01

Scope

Which environments and sessions are in reach.

02

Access

Who can see and run what, by role.

03

Decision

Every suggestion waits for human approval.

04

Deploy

Cloud, private cloud or on-premise.

05

Retain

Keep sessions, history and follow-up by policy.

06

Audit

Reports, exports and audit-ready records.

Deployment

Run Wakoo where your policies require.

From a quick managed start to fully on-premise: the deployment model is yours to choose, scope included.

Cloud

The fastest way to start. Managed by Wakoo, scoped to exactly what you connect: nothing more.

Private cloud

Runs inside your own cloud account (AWS, GCP, Azure…) and network: your tenancy, your access and retention policies. Still a cloud, but yours.

On-premise

Runs on your own servers: nothing leaves your walls. For air-gapped setups and the strictest requirements.

Data handling

The specifics, not just the pitch.

What we collect

Account and billing data (name, email, company, VAT number, billing address); contact details for communications; anonymised navigation/usage data. We collect the minimum needed and never sell your data.

What you connect

Read-only by default. Data accessed or indexed to answer your questions remains your property and under your control at all times.

Retention

Backups exist for security purposes only and are kept for one year. Session history follows the mode you choose: see the FAQ below.

Processors

A limited set: Cloudflare (hosting), our payment provider (billing) and our form/email provider: each bound to process data only on our instructions, in line with the GDPR.

Full legal detail: Privacy Policy · Terms

Compliance status

No SOC 2 or ISO certification today: we'd rather say that plainly than display a badge we haven't earned. If a security questionnaire, SSO requirement or specific compliance need is what's standing between your team and trying Wakoo, tell us where you need to land and we'll work through it directly.

Security questions

Clear boundaries before rollout.

Have a security question we didn't cover?

Bring your questionnaire, your SSO requirement, or your specific constraint.