FAQ
Frequently asked questions
Short, direct answers. If you can't find yours, write to us.
General
- What is WAMDesk?
- WAMDesk is a cloud application for teams that run many websites and domains. It monitors domain expiry, SSL, DNS, uptime, technology, Cloudflare, code/deployments and backup status in one panel and warns you in advance.
- What does Web Asset Manager mean?
- A web asset manager is a tool that inventories and monitors an organization's web assets: domain names, websites, certificates, DNS records, repositories and backups. That is what WAMDesk stands for; WAM is the short name.
- Who is WAMDesk for?
- It is designed for web agencies managing several customer sites, e-commerce teams, multi-brand corporate IT teams and freelance developers.
- Is there a mobile app?
- It works in the browser on any device and can be installed like an app on your phone or desktop (PWA). Google Play, App Store and Microsoft Store apps are being prepared.
Monitoring
- How do I get alerted before a domain expires?
- Add the domain; WAMDesk reads the expiry date from public registration data (RDAP) and raises alerts at thresholds such as 30, 14, 7, 3 and 1 days left. You can also enter the expiry date manually.
- How do I track SSL certificate expiry?
- For HTTPS sites the certificate's expiry, chain and name match are checked regularly; alerts go out as the days left reach your thresholds, and certificate changes are written to history.
- Does uptime monitoring produce false alarms?
- It is designed so a failure seen from a single place doesn't alarm; the result is confirmed by a majority of regions. Also, a protection such as Cloudflare blocking the probe isn't counted as down — it raises a separate 'probe blocked' notice.
- Which checks does it run?
- HTTP availability and response time, TLS certificate, DNS records, domain expiry, technology fingerprinting, Cloudflare zone settings, GitHub/Azure DevOps deployment status and backup heartbeats.
- How many sites can I monitor?
- It depends on the plan: Starter 25, Pro 100, Business 500 websites; unlimited for Enterprise. Check frequency also rises with the plan (5, 3 and 1 minute).
Integrations
- What happens when I connect my Cloudflare account?
- Your zones and DNS records are read with a read-only API token; zones are imported as domains in one click. WAMDesk doesn't change your Cloudflare settings; risky DNS changes become alerts.
- Does it read my source code?
- No. From GitHub or Azure DevOps only top-level information such as repository name, branch, latest commit summary and deployment status is read; file contents and secrets are not fetched.
- How does backup monitoring work?
- At the end of your backup script you report the result (did it succeed, how long it took, its size) with a single HTTP request. If nothing arrives for a set time, or the backup fails, an alert is sent. WAMDesk never accesses your backup file.
- Are there Slack, Telegram or Discord notifications?
- Today alerts arrive by email. Slack, Telegram, Discord, Teams, PagerDuty/Opsgenie and outbound webhook integrations are on the roadmap; their status is updated on the Integrations page when they ship.
- Is there an API?
- Yes. The same REST API the dashboard uses (/api/v1) is open, plus backup heartbeat and GitHub webhook endpoints. Scoped API keys and an OpenAPI schema are on the roadmap.
Pricing and trial
- Is there a free trial?
- Yes, 7 days with no card required. When it ends the account becomes read-only (your data is kept, monitoring pauses) and reopens immediately when you choose a plan and pay.
- How are prices set?
- Packages differ by website count, team members and check frequency; you can also build your own by adding modules such as notifications, observability and security. Prices are in Turkish lira, VAT included.
- How do I pay?
- Subscriptions are charged by card through PayTR. Your card details are not stored in WAMDesk; only the card brand and last four digits are kept.
- What does Enterprise include?
- Unlimited websites and members, the fastest check interval and dedicated support; pricing is agreed in conversation.
Security and data
- Is my data mixed with other customers'?
- No. Each organization's data is separated at the database level with row-level security (RLS); the organization ID comes only from the signed session token.
- Is there two-step verification and Google sign-in?
- Yes. You can add app-based two-step verification (TOTP) and recovery codes to your account, and optionally sign in with your Google account.
- How are my API keys stored?
- Cloudflare, GitHub and similar keys are stored encrypted with AES-256-GCM and are never shown again in the UI or in responses.
- Where is my data kept and for how long?
- Data is kept on infrastructure managed by Webgrup. Detailed monitoring results are kept briefly, hourly summaries 90 days, daily summaries and event history 13 months, audit logs 2 years. See the Privacy policy for detail.
- How are monitoring requests to my site recognized?
- Requests use a fixed user agent (WAM-Monitor/1.0); the IP addresses are published on the Probe IPs page and can be allowlisted in your firewall.