Read-only access
Queries are checked for write operations. Database sessions open in read-only mode, and your organization provides an account with read-only permissions.
SECURITY & TRUST CENTER
You choose which data is accessible, who can see the results and where the model runs.

TRUST CHECKS
Definitions, relationships, metrics, data quality, freshness and changes are assessed separately. A check that hasn't run is never treated as a pass. Missing checks can limit access to the related feature.
Queries are checked for write operations. Database sessions open in read-only mode, and your organization provides an account with read-only permissions.
Authorized users approve business definitions, monitoring topics, business rules and responsible people.
Inspect the query and sources behind an answer. Actions can be followed in the audit trail.
BUILT AROUND YOUR ORGANIZATION
Need to work on a private network? Run the model on-premises. If you choose an external model, your data policy defines what may be shared. In metadata-only mode, source rows are not sent to the external model.
Explore deployment optionsENTERPRISE ACCESS
Connect DBeater to your organization's sign-in and user management.
OIDC supports Entra ID, Okta, Keycloak and compatible identity providers. Your team can use the accounts they already have.
Role-based access control (RBAC) determines who can use each screen and action. SCIM connects account creation and access removal to your corporate directory. Organizations and data sources are isolated from each other.
Personal data fields are classified and masked according to the selected policy. Connection passwords are held in a vault encrypted with AES-256-GCM. Web sessions use secure cookies, origin checks and request validation.
If something goes wrong, an administrator can generate and review a support package. It excludes customer rows, queries, schema names, passwords and raw error text.
A FEW THINGS YOU MAY BE WONDERING
Change Review assesses how a table or column change affects metrics, rules and saved answers. Discovery and validation can be run again afterwards.
Together, we choose the sources and schemas, identify sensitive fields, decide where the model will run and who can see results. The connection uses read-only access.

DBeater Desktop
LET'S TAKE A LOOK
Let's talk about your data sources, the problem you want to solve
and the ideas you'd like to explore.