Enterprise-grade security built for trust.

We build WhoDB with strict encryption standards, granular access controls, and flexible deployment models to keep your critical data safe and compliant.

Identity & Access Control

WhoDB Platform provides granular workspace, project, and role-based permissions to ensure team members only access data relevant to their role.

Available today

Data Encryption

All customer data is encrypted in transit using TLS 1.3 and at rest using AES-256. Runtime credentials and database connection strings stay securely encrypted.

Available today

Network & Transport Security

HTTPS with HSTS enforcement is required across all services. Strict browser security headers prevent clickjacking, MIME sniffing, and data leaks.

Available today

Audit Logging & Traceability

WhoDB tracks administrative changes, user access, and pipeline executions so your security team always has an accurate, auditable history.

Available today

Compliance & Industry Standards

Review the standards, controls, and deployment options available to help your security team evaluate WhoDB.

Compliant

SOC 2 Type I & II

We maintain continuous security monitoring and controls aligned with SOC 2 trust service criteria.

Compliant

GDPR & Data Privacy

WhoDB is designed to support global data privacy regulations, including GDPR data processing and user rights controls.

Enterprise

HIPAA Readiness

Managed Private deployments offer isolated infrastructure and Business Associate Agreements (BAAs) for healthcare workloads.

Flexible Deployment & Governance

  • Choose between fully managed WhoDB Cloud or isolated Managed Private deployments in your own cloud.
  • Deploy dedicated VPC instances with custom firewall rules, single sign-on (SSO), and custom identity providers.
  • Enterprise-ready role-based access control (RBAC) and audit log integrations for your team's compliance monitoring.

Have specific security questions?

Our security team can review SSO, VPC peering, data retention, and specific compliance requirements with you.

Responsible Disclosure

We take security disclosures seriously. If you discover a potential vulnerability in WhoDB, please submit a report through GitHub private vulnerability reporting.

Open a private report →