Identity & Access Control
WhoDB Platform provides granular workspace, project, and role-based permissions to ensure team members only access data relevant to their role.
Available today
We build WhoDB with strict encryption standards, granular access controls, and flexible deployment models to keep your critical data safe and compliant.
WhoDB Platform provides granular workspace, project, and role-based permissions to ensure team members only access data relevant to their role.
Available today
All customer data is encrypted in transit using TLS 1.3 and at rest using AES-256. Runtime credentials and database connection strings stay securely encrypted.
Available today
HTTPS with HSTS enforcement is required across all services. Strict browser security headers prevent clickjacking, MIME sniffing, and data leaks.
Available today
WhoDB tracks administrative changes, user access, and pipeline executions so your security team always has an accurate, auditable history.
Available today
Review the standards, controls, and deployment options available to help your security team evaluate WhoDB.
Compliant
We maintain continuous security monitoring and controls aligned with SOC 2 trust service criteria.
Compliant
WhoDB is designed to support global data privacy regulations, including GDPR data processing and user rights controls.
Enterprise
Managed Private deployments offer isolated infrastructure and Business Associate Agreements (BAAs) for healthcare workloads.
Our security team can review SSO, VPC peering, data retention, and specific compliance requirements with you.
We take security disclosures seriously. If you discover a potential vulnerability in WhoDB, please submit a report through GitHub private vulnerability reporting.
Open a private report →