managing allowed urls for recording in leapwork go.md


version: "2026" language: "en"

Managing Allowed URLs for Recording in Leapwork Go

Allowed URLs lets administrators define which web addresses their team is permitted to record in Leapwork Go.

This is an important security and governance control. When the policy is enabled, admins decide which networks and systems the team can record from and execute against. That helps prevent accidental recording or load testing against unauthorized environments, third-party systems, or non-approved domains.

Why this matters

Before you start

How to manage Allowed URLs

  1. Open Settings in Leapwork Go.
  2. Go to Policy Configuration > Allowed URLs.
  3. Turn on Enforce Allowlist to restrict recording and execution to approved URLs only.
  4. Add the URLs your team is allowed to use.
  5. Review the list to confirm it contains only approved hosts and environments.
  6. Update the list whenever your approved test landscape changes.

What users will experience when the policy is enabled

Recommended admin practices

Outcome

With Allowed URLs in place, administrators stay in control of which systems can be recorded and used for API and load testing in Leapwork Go. This creates a safer and more predictable operating model for teams that need to record traffic while staying inside approved security boundaries.