EQQ-Triangle Security

EQQ-Triangle Security by Architecture, not by promise

EQQ® cannot change your data, cannot move your data off your premises, and cannot bypass the database permissions you already control.

Read-only, always

Queries can never write

Every EQQ query is read-only by design. No query - whether run by a first-day user or a power user - can change, move, or delete a record in your database. There is no write path to misuse, so your production data is safe from the tool itself, not just from its users.

Installed on your network

Your data never leaves your premises

EQQ installs inside your firewall, on your own server, next to your own database. It is not a cloud service: no copy of your data is uploaded, synchronized, or cached outside your network. What your security team controls today, it keeps controlling. Your IT Support can lift this restriction for external organizations or individuals who are intended recipients of some queries’ outputs.

Your rules apply

Built on the permissions you already have

EQQ reads through your database’s own security model - the same accounts, roles, and views your DBA already manages. Users see what you decide they see. Adding EQQ does not create a parallel permission system to configure, audit, or worry about.

Have a security question?

Ask us directly - or ask your security team to. We're happy to walk through the architecture.