EQQ-Triangle Security by Architecture, not by promise
EQQ® cannot change your data, cannot move your data off your premises, and cannot bypass the database permissions you already control.
Queries can never write
Every EQQ query is read-only by design. No query - whether run by a first-day user or a power user - can change, move, or delete a record in your database. There is no write path to misuse, so your production data is safe from the tool itself, not just from its users.
Your data never leaves your premises
EQQ installs inside your firewall, on your own server, next to your own database. It is not a cloud service: no copy of your data is uploaded, synchronized, or cached outside your network. What your security team controls today, it keeps controlling. Your IT Support can lift this restriction for external organizations or individuals who are intended recipients of some queries’ outputs.
Built on the permissions you already have
EQQ reads through your database’s own security model - the same accounts, roles, and views your DBA already manages. Users see what you decide they see. Adding EQQ does not create a parallel permission system to configure, audit, or worry about.
Have a security question?
Ask us directly - or ask your security team to. We're happy to walk through the architecture.