Reference

Glossary

Every Waydock term in one place: the model, permissions, security, and Pulse.

Last updated: July 8, 2026

Terms are grouped by area, and where a term has its own page, the entry links to it.

For agents: this page is available as Markdown at /docs/glossary.md. For the full model see How Waydock works; for permissions see the Tool reference.

The core model

TermMeaning
CardThe common unit for any synced item (email, calendar event, meeting, task, Teams message). One queue that agents and the app both read; a card's CardSource names where it came from.
Context layerWaydock's core idea: your accounts unified into one governed context you hand to an agent, instead of many separate grants across many tools.
Org / tenantThe unit of tenancy. Every account starts as a personal org (one member); a personal org can convert to a team, one way, gated to the owner.
Follow-upA hanging commitment: a reply you are waiting on ("Theirs"), one you owe ("Mine"), or an action item from a meeting.
MiraWaydock's in-app AI assistant (the right-hand chat rail). It runs the same tool registry and the same guardrails as the MCP server.
Morning briefAn AI-composed daily digest, delivered by email, webhook, or Telegram.

Connecting an agent

TermMeaning
MCPModel Context Protocol: how external agents connect to Waydock, over Streamable HTTP at /api/mcp/stream.
MCP keyA per-user bearer key (wdmcp_..., or the legacy ddmcp_...) carrying an explicit scope set. Shown once, revocable, and audited on every call. See Authentication.
ScopeA namespaced permission (read:* or write:*). Granting a write scope also grants the read access it builds on: write:mail.send implies write:mail.drafts, which implies read:mail.
PresetA named scope bundle chosen when minting a key: "Read & message myself" (the free default) or "Full access" (Pro).
Self-sendwrite:mail.send.self, a free scope that can only email your own verified inboxes. Distinct from write:mail.send, which reaches third parties.
Wildcard-proof scopeA scope (write:mail.send, write:teams.send) that no preset or wildcard can satisfy; it must be granted as a literal string.
EntitlementA plan-derived capability checked at call time (for example mcp_write, mira, ai_summaries), so a downgrade takes effect at once rather than at the next key rotation.

Security

TermMeaning
Provenance gatingUntrusted external content is marked on every surface. In the in-app Mira assistant, which owns the conversation, reading it also removes send and destructive tools for the rest of that turn (a narrow carve-out keeps writes whose worst case is an unsent draft). Over MCP the marking applies but the removal cannot, because the client owns the conversation. Waydock's core prompt-injection defense. See Security architecture.
Trusted vs untrusted contentA per-tool flag (trustedContentSafe). Untrusted output, like an email body or a transcript, is wrapped in an <external_content trusted="false"> envelope on every surface. In Mira it also taints the rest of the turn.
RLSPostgres Row-Level Security. Waydock enforces org-level and per-member (org AND user) isolation at the database, fail-closed. Per-member isolation is logical, not cryptographic.
DEK / KEKData-encryption key and key-encryption key. Waydock envelope-encrypts sensitive columns: an AWS KMS master key (the KEK) wraps per-purpose DEKs.
Step-up (sudo)A fresh re-authentication required before sensitive actions, valid for a short window.
Direct Source FetchPro-only, governed backfill of mail beyond the live index window, through consent, then a grant, then jobs.

Pulse

TermMeaning
PulseWaydock's uptime and status-monitoring product. See Pulse.
MonitorA Pulse active HTTP probe against a target URL on a schedule.
NodeA Pulse device or job that reports in by heartbeat; going silent past its grace window trips a dead-man's-switch.

Canonical facts

  • Domain: waydock.ai. Made in Melbourne.
  • Every page under /docs is available as Markdown to agents: append .md to any page, or read /llms.txt.

See also