Skip to main content
Vendo

Workspace controls and security

Trust your data. Control who acts on it.

Data quality checks, shared definitions, workspace roles, API credentials, activity records, and Approvals — the control you need without slowing your team down.

The problem

Speed without control breaks trust in the numbers

A shared metric doesn't help if a report silently uses a different calculation. A fast answer doesn't help if nobody can see where it came from. And AI doesn't help if it acts without anyone watching.

Vendo builds control into the workflow itself: data checks, shared definitions, membership roles, API credentials, review states, and activity records — so your team moves fast and your numbers stay trustworthy.

Data quality checks

Catch issues before they reach a report or an ad platform — checks and job status keep you ahead of problems.

Job status

See the status, timing, and error details for every source, destination, model, and task run.

Schema checks

Catch upstream field and type changes before they quietly break your reports.

Data-quality checks

Set recency, volume, completeness, and consistency rules on the datasets that matter most.

Issue notifications

Get alerted in the app or Slack the moment a workflow needs your attention.

Shared definitions

Document metrics, fields, and business terms once — every report and Agent answer uses the same meaning.

Data dictionary

Document metrics, fields, and business terms in one catalog, so everyone knows exactly what a number means.

Reusable metric definitions

Maintain LTV, CAC, ROAS, and conversion metrics as one definition, reused across every report and workflow.

Shared Business Language

When marketing, finance, and the AI use the same definitions for "customer", "conversion", and "revenue", teams spend less time reconciling numbers.

Definitions available to the Agent

The Agent answers with your workspace definitions — and every answer shows which definition it used.

Membership, credentials, and access paths

Grant exactly the access each person, key, and AI client needs — and revoke it just as easily.

Owner and Member roles

Owners manage the workspace and membership; Members do the day-to-day work. Grant exactly the access each person needs.

API credentials

Create and revoke API keys from Workspace Settings — each key grants programmatic access you control.

Permission-scoped AI access

The Agent and MCP clients only get the tools their account, key, and permissions allow — never blanket access.

Enterprise identity requirements

Need SSO, identity-provider, or provisioning support? Talk to us about your enterprise setup.

Activity and job records

Know what ran, what failed, and who acted — the history is there whenever you need to check.

Recent job records

See recent source, destination, model, and system runs with their status and error details.

Workflow visibility

Know what ran, what failed, and when — across sources, syncs, models, and scheduled work.

Recommendation status

Every review item records who approved or dismissed it, so decisions are never a mystery.

Filter the records

Filter activity and job views by date and type to find the run you care about fast.

Published security controls

Encryption, scoped credentials, and data routing you control — security built into every integration and deployment choice. The security and legal pages have the full detail.

Encrypted At Rest And In Transit

Data is encrypted at rest with industry-standard AES-256 and in transit with TLS 1.2+ for all API communication and data transfer.

You choose what flows where

Pick exactly which fields each source and destination handles — Vendo moves only the data you choose to route.

Storage choice affects residency

Choose Vendo-managed storage or your own BigQuery — you decide where your data lives and who can reach it.

For the full detail on architecture, compliance, and access controls, read our security practices and privacy policy.

Review states

AI recommends, you approve

Recommendations arrive in Approvals with the evidence attached. You approve or dismiss — and each step leaves a record you can trace later.

Recommendations wait for you

AI recommendations land in Approvals where a person approves, rejects, or revises them. Only Automations you explicitly schedule run on their own.

Evidence attached to every item

Each recommendation shows its sources, definitions, time range, and reasoning — you decide with the full picture.

A record for every step

Review states, task status, job records, and Timeline entries each capture their step — so you can trace a decision from finding to outcome.

FAQ

Frequently Asked Questions