Encryption in transit
Everything travelling between your browser (or the desktop app) and our servers is encrypted. There are no unencrypted routes.
Security
Your work belongs to your team and no one else. This is how we protect the projects, tasks, and files you trust Doku with.
What each layer protects, on which infrastructure, and with which concrete measures.
Everything travelling between your browser (or the desktop app) and our servers is encrypted. There are no unencrypted routes.
Easy for your team to get in, hard for anyone else. Signing out invalidates access on the server, not just on the device.
Every query verifies your space membership inside the same SQL statement. No membership, no data — not even through a coding mistake.
Files live outside the database, in object storage, and are only served to people who belong to the space.
Sharing outward is an explicit decision, never an accident. Everything else requires signing in and being a member.
Less surface, less risk: we don't run our own servers to patch. The API runs at the edge and the database is a managed service.
Doku's assistant processes your data on Vertex AI (Google Cloud), whose enterprise terms state your data is not used to train foundation models. The assistant only reaches the spaces you have access to — the same membership rules apply to the AI.
Found a vulnerability? We want to know. Write to us and we'll get back to you promptly — we publicly credit responsible reports.
Tell us what your security or compliance team needs and we'll reply with specifics on architecture, data, and process.
Email [email protected]Create a free account