WorkBuzz Dialogue is a web application that enables video, voice and text feedback to be collected across your organisation. A ‘Creator’ creates a video prompt and shares it across the business, inviting contributions from others. Contributors can choose to reply using video, voice or text, and may opt to respond anonymously, hiding their image, voice and name from the Creator.
For this to work smoothly in an enterprise environment, your IT and security teams will need to complete a short set of configuration steps covering:
Hardware and browser requirements on user devices
Whitelisting of domains, IP addresses and sending email addresses
Single Sign-On (SSO) via Microsoft Entra ID or Google (optional)
Distribution list setup via Active Directory or CSV (optional)
Questions or need help? Contact us at [email protected]. Complete the setup checklist and return it to us before go-live. |
Required Configuration
1. Device & Hardware Requirements
All devices used to record or submit video and voice responses must meet the following minimum specifications.
Requirement | Mobile | Desktop / Laptop |
RAM | ≥ 4 GB | ≥ 8 GB |
Free storage | ≥ 500 MB browser storage | ≥ 1 GB free disk space |
Camera | Front-facing, 720p minimum | 720p webcam |
Microphone | Functional microphone required on all devices |
|
Screen resolution | ≥ 720p (1280×720) | ≥ 1080p (1920×1080) recommended |
Internet connection | Minimum 4 Mbps upload recommended for video recording and submission. Avoid 2G/3G mobile data connections — these cause timeouts and failed uploads. Wi-Fi or 4G/5G preferred. |
|
Browser permissions | Camera and microphone access must be permitted in browser settings. Check OS-level and MDM policies do not block access. |
|
2. Browser Support
Dialogue supports the following browsers. We recommend enabling automatic updates so all users remain within the supported range.
Platform | Browser | Supported versions |
Desktop | Chrome / Edge / Firefox | Latest stable + previous 2 releases |
Desktop | Safari (macOS) | Latest stable + previous 1 release |
Mobile | iOS Safari | Latest stable + previous 1 release |
Mobile | Android Chrome | Latest stable + previous 2 releases |
3. Domain Whitelisting, Firewall & Endpoint Protection
Please whitelist the following domains and sub-domains in your firewall, web proxy and endpoint protection platforms. Do not throttle, inspect or interrupt HTTPS traffic to these addresses.
| Production environment |
App domain | |
API domain | |
Link subdomain * | |
User Assets (proxied through main domain) | |
App Assets (proxied through main domain) |
In addition to domain whitelisting, please verify the following:
· WebRTC real-time media traffic must not be blocked — this is required for all video and voice recording features
· SSL / deep packet inspection must be disabled for Dialogue domains to prevent certificate errors and broken streams
· Custom headers used by the Dialogue API (e.g., X-Dialogue-Context) must be forwarded unchanged by all proxies. Web proxies must not strip headers, break WebSocket connections, or rewrite Dialogue API calls.
· TLS 1.2 or higher must be supported on all client devices and any forward proxies (TLS 1.3 preferred)
4. Proxy & Secure Web Gateway Configuration (Custom Header Preservation)
Dialogue uses custom HTTP headers (X-Dialogue-*) to operate correctly. Web security proxies and secure web gateways (e.g., Skyhigh Security, Zscaler) may strip non-standard headers by default, which will cause the application to malfunction.
Allow and preserve all HTTP headers matching the X-Dialogue-* prefix through your proxy or secure web gateway. These headers must not be inspected, modified, or stripped.
Vendor-specific guidance
Zscaler – Add a custom URL category or SSL inspection bypass rule for the Dialogue application domain and disable header sanitisation for that rule.
Skyhigh Security (McAfee SWG) – Create a header pass-through exception in your web policy for the X-Dialogue-* namespace.
Other proxies and secure web gateways (e.g., Broadcom ProxySG, Palo Alto Prisma Access, Cisco Umbrella) may behave similarly. Consult your vendor documentation for header pass-through configuration.
Ensure your proxy preserves these headers on outbound requests to:
5. Compatibility Test
We provide a compatibility test page that verifies your browser, hardware and network configuration in a single step. Please run this on representative devices from your estate — both desktop and mobile — before go-live.
Environment | URL |
Production |
Download the completed report from the test page and return it to support@dialogue.workbuzz.com before sign-off.
6. Email Whitelisting
Dialogue sends loop invitations and notifications from a fixed sender address. Please whitelist the sending IP and address in your email gateway and spam filter, and ensure delivery is not throttled at scale.
Dialogue emails frequently contain links to loops, user login area, and other platform features. Which are routed through our subdomain. To prevent emails from being blocked or flagged, please add this domain to your allow list.
| Values |
Sending IP addresses | 159.183.32.36 159.183.39.182 |
Sending email address | |
Subdomain |
Sending volume: Dialogue paces distribution emails through SendGrid scheduled sends: 100 emails per batch, one batch every 5 minutes per loop (roughly 20/min), never exceeding a burst ceiling of ~500 emails at any moment. A ~1,000-recipient distribution completes in about 45 minutes; larger distributions extend by ~10 minutes per additional 1,000 recipients. Please confirm your inbound mail infrastructure will not rate-limit or bounce at up to ~500 emails/min. If you'd like to confirm whitelisting before we send, let us know. *Subject to change |
Optional Configuration
7. Single Sign-On (SSO)
Dialogue supports SSO via Microsoft Entra ID and Google, using OpenID Connect (OIDC). SSO is optional but recommended for enterprise deployments as it removes the need for separate credentials and aligns with your existing MFA policies.
SSO via Microsoft Entra ID
To enable Microsoft SSO, we need your Entra Tenant ID. You can find this in the Azure Admin portal or at https://www.whatismytenantid.com/. Once confirmed, we will send you a consent link for a Global Administrator to click and approve the WorkBuzz Dialogue application in your tenant.
Please also provide all allowable email domain names for your organisation (e.g. @yourcompany.com). These are required to route authentication correctly.
SSO via Google Workspace
To enable Google SSO, please provide your organisation’s email domain name(s) as part of onboarding. We will configure OIDC authentication against your Google Workspace tenant.
Microsoft Graph API permissions
If you wish to connect Active Directory for distribution list management (see Section 8), the following Microsoft Graph permissions are required:
Permission | Type | Grants access to | Admin consent required? |
User.Read | Delegated | Sign in and read own user profile | No |
User.Read.Basic | Delegated | First name, last name and email | No |
User.Read.All | Delegated | Basic + department, manager, role | Yes |
We recommend authorising User.Read.All for the best experience. This enables filtering of distribution lists by manager and department, which is particularly useful for larger organisations.
Permissions are added via: Azure › App Registrations › WorkBuzz Dialogue › API Permissions › + Add a permission
8. Sending Groups
Dialogue allows you to create groups of recipients who can be invited to participate in a loop. Groups can be built in three ways:
Manual entry — enter individual details directly in the platform
CSV upload — download the template from the platform, populate and import
Active Directory sync — connect via Microsoft Graph API (see Section 7)
The following fields are used when building groups:
Field | Required? |
First Name | Required |
Last Name | Required |
Required |
A CSV template is available to download directly from the Dialogue platform.
Questions?
Contact your WorkBuzz onboarding manager or email [email protected]. We are happy to join a call with your IT or security team to work through any of the above.
