SECURITY & TRUST

Customer conversations and credentials deserve serious protection.

Tengri uses private workspaces, encrypted secrets, authenticated webhooks and controlled account access.

PROTECTION AT EVERY LAYER

Designed so a placeholder can never look “connected.”

Connection status is based on verified requirements. Credentials remain secret, business data stays inside its workspace and webhook events are authenticated before action.

SECURE BY DESIGNCredentials · Webhooks · Workspaces

AES-GCM secret encryption

Meta access tokens, app secrets and OpenAI keys are encrypted before storage and are never returned in workspace responses.

Webhook authentication

Incoming Meta events are checked with the app secret signature before message processing begins.

Workspace isolation

Each account receives a separate workspace for its business configuration, knowledge, messages and usage.

Protected dashboard access

Public product pages stay open while operational dashboards require authenticated account access.

Duplicate protection

Inbound message records use conflict-safe processing to prevent repeated automatic replies.

Admin boundaries

Client administration is shown only to the designated platform administrator, not every signed-in user.

01

Verify before trust

Required credentials and connection details must pass server-side checks.

02

Expose the minimum

Secret values are not sent back to the browser after they are stored.

03

Separate every client

Business settings and conversations remain bound to their own workspace.

04

Keep humans in control

Teams can pause automation, review activity and reply manually.

GET STARTED

Ready to make WhatsApp work around the clock?

Connect your business number, add your knowledge and launch with full control.

Start free