Built to be trusted by teams

Your data stays in your databases. We control who can do what, and record everything.

  • Workspace isolation

    Every request is tied to the workspace you are signed into. Nothing is exposed across workspaces.

  • Four access roles

    Owner, Admin, Editor and Viewer, enforced on the server every time, not just by hiding buttons.

  • Audit log of every change

    Who, when, and the values before and after. Filterable and exportable, with 7 to 365 days of history depending on the plan.

  • Platform admins see metadata only

    Our support team can manage accounts, plans and invitations, but cannot open or edit the data in your databases, and every action is recorded.

  • Controlled sessions

    Access tokens are short-lived. Suspending an account or resetting a password ends all existing sessions.

  • Safe password resets

    Reset links work once and expire. Only a hash of the link is stored.

  • Single sign-on for organisations

    On the Pro plan, sign in through your OpenID Connect provider with PKCE. An SSO session is bound to its workspace, and you can require members to use SSO only.

What each role can do

OwnerEverything, including the plan and managing owners
AdminManage members, connections and table structure, and read the audit log
EditorEdit data, and create or run pipelines
ViewerRead-only access

Need more for your security team?

Contact us. We are happy to answer security questionnaires and walk your team through the architecture.