Security

Your Data, Read-Only
By Design

WoEngage's AI agent reasons over your live data sources — SQL, NoSQL, or CSV — to power engagement. It never owns a copy of them. Every principle below shapes how we build, from the schema down to the send.

Our Principles

Security Built Into the Architecture

Read-Only Access

WoEngage connects to your data source in read-only mode wherever the underlying engine supports it. The platform can query your data — it can never modify or delete it.

Encryption Everywhere

Credentials and data in transit are protected with AES-256 and TLS 1.3. Credentials are decrypted only in memory at query time and are never logged or exported.

Human-in-the-Loop

Every audience, message, and channel the AI agent proposes is reviewed and approved by your team before it sends. No autonomous action ever reaches your customers.

Full Audit Trail

Every query the agent runs and every campaign it launches is logged immutably, so you can trace exactly what happened, when, and why.

How Data Flows

From Your Data Source to a Send

01

Connect Read-Only

You grant WoEngage a scoped, read-only credential to your SQL, NoSQL, or CSV source.

02

Agent Reasons In-Memory

The AI agent inspects your schema and drafts a plan without exporting or persisting raw records.

03

Human Approval Gate

Your team reviews the audience, message, and channel — nothing ships without explicit approval.

04

Encrypted Execution

Approved campaigns send through your connected providers over encrypted channels, logged for audit.

Common Questions

Security FAQ

No. WoEngage queries your connected source in real time to answer a specific request. It does not maintain a persistent copy or warehouse of your raw records.

Have a Security Question We Didn't Cover?

Talk to our team about architecture, compliance documentation, or a specific concern for your organization.

Talk to Our Team