Wato Docs

Security & Deployment

How Wato controls agent access to memory, tools, and approvals — plus deployment and enterprise options.

Wato helps teams control how AI agents access memory, tools, and approvals.

Security

  • WorkOS handles login, SSO, and directory sync.
  • Wato controls team access, memory visibility, tool access, and reviews.
  • Reviewed memory is stored in Mesa repositories for each organization and team.
  • Wato checks access before exposing memory or tools to users and agents.
  • Agent activity is traceable through memory, proposals, tool calls, and approvals.

Deployment

Wato can run as a Wato-managed service or in private enterprise environments. Deployment options may include:

  • Wato-hosted
  • Dedicated cloud
  • Customer cloud
  • VPC / private network
  • On-premise

Enterprise

Wato can support:

  • SSO and SCIM
  • Team-based access control
  • Governed MCP connector approval
  • Reviewed memory workflows
  • Audit logs
  • Deployment review during onboarding

On this page