Built to be trusted by teams
Your data stays in your databases. We control who can do what, and record everything.
Workspace isolation
Every request is tied to the workspace you are signed into. Nothing is exposed across workspaces.
Four access roles
Owner, Admin, Editor and Viewer, enforced on the server every time, not just by hiding buttons.
Audit log of every change
Who, when, and the values before and after. Filterable and exportable, with 7 to 365 days of history depending on the plan.
Platform admins see metadata only
Our support team can manage accounts, plans and invitations, but cannot open or edit the data in your databases, and every action is recorded.
Controlled sessions
Access tokens are short-lived. Suspending an account or resetting a password ends all existing sessions.
Safe password resets
Reset links work once and expire. Only a hash of the link is stored.
Single sign-on for organisations
On the Pro plan, sign in through your OpenID Connect provider with PKCE. An SSO session is bound to its workspace, and you can require members to use SSO only.
What each role can do
| Owner | Everything, including the plan and managing owners |
|---|---|
| Admin | Manage members, connections and table structure, and read the audit log |
| Editor | Edit data, and create or run pipelines |
| Viewer | Read-only access |
Need more for your security team?
Contact us. We are happy to answer security questionnaires and walk your team through the architecture.