Hoop.dev’s Reviews feature adds a powerful security mechanism between your teams and critical infrastructure. Through two distinct review modes - Command and Just-in-Time Reviews - organizations can implement an additional protective barrier that validates access and operations while maintaining team productivity. This security layer acts as a gatekeeper, ensuring that every critical command and access request is properly vetted before execution.

Types of Reviews

Command Reviews

Command Reviews provide real-time oversight of commands before execution, ensuring that potentially risky operations are properly vetted. This feature is ideal for:

  • High-risk command execution
  • Compliance requirements
  • Training and mentoring junior team members
  • Maintaining operational safety

Just-in-Time Reviews

Just-in-Time Reviews enable time-based access control, allowing temporary elevated access to resources. This approach is perfect for:

  • Temporary access needs
  • Break-glass scenarios
  • Controlled privileged access
  • Reducing standing permissions

Key Benefits

  • Enhanced Security: Multiple layers of protection for your infrastructure
  • Compliance: Meet regulatory requirements with comprehensive review trails
  • Flexibility: Choose between command-level and time-based reviews
  • Efficiency: Streamlined approval workflows that don’t impede productivity
  • Audit Trail: Complete documentation of all review decisions and access grants

Common Use Cases

Production Safeguards

  • Review critical commands before execution
  • Prevent accidental modifications
  • Ensure proper change management

Access Management

  • Grant temporary elevated access
  • Control privileged operations
  • Manage emergency access procedures

Team Collaboration

  • Knowledge sharing through review process
  • Training opportunities for team members
  • Collective responsibility for infrastructure changes

How It Works

1

Choose the appropriate review type for your use case

Determine whether Command Reviews or Just-in-Time Reviews best fit your needs.

2

Configure review groups and connection policies

Access users management page to set up the necessary review groups and define the policies that will govern on your connections.

3

Set up notifications and integrations

Configure notifications and integrate with tools like Slack, Microsoft Teams, or email to keep reviewers informed.

4

Monitor and adjust based on team feedback

Continuously monitor the review process and make adjustments based on feedback from your team to ensure efficiency and effectiveness.

Integration with Other Features

Reviews work seamlessly with other Hoop.dev security features:

  • Guardrails: Additional layer of protection through policy enforcement
  • Session Recording: Complete audit trail of reviewed actions
  • Access Control: Granular permission management

Getting Started

Choose the appropriate review type for your use case and configure review groups or policies to set up notifications and integrations.