Data Isolation

Your data stays separate.
Unless you connect it.

Every project, pipeline, and team is independent by default. Nothing shares data unless you explicitly decide.

Template: Customer Intelligence
Project: Retail
Isolated by default
Project: Finance
Isolated by default
Project: Logistics
Isolated by default

Separation is the starting point.

You create projects from a template. Each project starts empty — no shared data, no shared pipelines, no shared access. Nothing happens automatically.

You decide what connects

Everything is independent until you explicitly bridge it.

Independent by nature

Core structural elements are separated cleanly.

Pipelines

Created separately, then plugged into any project.

Teams

Assigned to projects as needed. No automatic inheritance.

Integrations

3rd party connections belong to projects explicitly.

Explicit connections

Pipeline: demand_forecastavailable
Team: data scienceunassigned

You choose which projects use which pipelines, teams, and integrations. No assumed relationships.

Environments

Core vs Apex Isolation

Choose the boundary strength that fits your compliance needs.

Core Environment

Shared Foundation

Teams and projects can explicitly connect resources across a controlled boundary. Designed for scalable internal collaboration.

Apex Environment

Fully Sandboxed

No data leaves the environment unless you build explicit bridges. Maximum isolation for regulated or multi-tenant requirements.

No accidental
sharing.

Prevent data spillage, unauthorized access, and tangled pipelines by relying on strict default isolation.

Data from one project flowing into another without permission

A team seeing projects they weren't explicitly assigned to

Pipelines mixing data across unrelated projects

Integrations leaking information between environments

Governance Layer

Isolation is not optional.

Projects

start completely empty, with absolutely no shared state.

Pipelines

must be explicitly connected to interact with project data.

Access

never crosses project boundaries without permission.

"Separation is the rule. Connections are the exception."

Looking for the technical specifics?

See the Security Specifications page for authentication, encryption, and access control details.

See how isolation works for your use case.

No pressure. Just a clear walkthrough of your environment.