Let routine security work run itself.
Build workflows by filling in a form, without writing code. A workflow can sync data, launch a scan, open a ticket, ask an AI model for a summary or wait for someone's approval, and you can watch every step as it runs.
No code needed
Triggers, conditions and steps are chosen from lists, and a code view is there for those who want it.
Safe by design
Steps that change a system wait for approval, and every workflow can be tried out before it goes live.
Fully visible
Each run is recorded step by step, so you always know what happened and when.
What's included
- Workflows start on a schedule, by hand, on an event or from a webhook.
- Conditions, success and failure branches, loops and waits decide where a workflow goes next.
- Steps sync connectors, launch scans, update tickets, send notifications and run discovery.
- Local or API-hosted AI models run as workflow steps to summarise findings or suggest decisions.
- Approval steps can be answered directly from Microsoft Teams or Slack.
- A drag-and-drop canvas shows the workflow as a diagram, and version differences are highlighted.
- Run logs stream live while a workflow is running.
- Workflows can trigger CI/CD pipelines such as Jenkins.
- Tasks can be opened in Jira, ServiceNow, OpenText SM, Monday and Trello.
- A dry run executes only the read-only steps and describes the rest.
- Ready-made templates cover the daily data refresh and other common routines.
See it in action
Our team spends every Monday on the same spreadsheet.
Turn weekly routines into workflows that run on their own and ask a person only when it matters.
See how it works Urgent vulnerabilitiesA critical vulnerability is in the news. Are we affected?
Find every affected system in minutes, scan just those systems and track the fix until it is confirmed.
See how it works VerificationThe ticket says fixed. Is it really?
Confirm every fix with a fresh scan, and never close a finding just because a server was offline.
See how it worksSee oolak on your own data in 14 days.
We install oolak in your environment, connect your tools and show you your real risk picture. You keep everything it finds.
Technical details
How are workflows defined?
What stops a workflow from doing damage?
Which AI models can be used?
Explore more features
Know every asset you own, in one place.
oolak pulls servers, devices and cloud resources from the systems you already use and turns them into one clean list.
Learn more Attack surfaceSee your organisation the way an attacker does.
oolak finds the domains, host names, IP addresses, certificates and services that anyone on the internet can reach.
Learn more Relationship mapFollow the path from the internet to your data.
oolak links domains, IP addresses, certificates, servers and applications on one map.
Learn more