Governance by Design
Domains in Honeydew are scoped layers of governance that define who sees what and how.
They combine semantic logic with access policies - applying security, filters, and overrides before any query is compiled.
Honeydew enforces governance through your warehouse - not around it.
Every query, whether from BI or AI, is compiled with your existing access rules, identities, and data policies built in.
Domains in Honeydew are scoped layers of governance that define who sees what and how.
They combine semantic logic with access policies - applying security, filters, and overrides before any query is compiled.
Honeydew doesn’t reinvent access control - it compiles into it.
Your warehouse is the execution environment and the enforcement point for RLS policies and access roles. Honeydew ensures every query respects those controls automatically.
Honeydew connects directly to your identity provider for unified authentication and authorization.
When an authenticated user runs a query - through a dashboard, an API endpoint, or an MCP interface - Honeydew compiles it using their data warehouse identity, propagating their identity end-to-end.
All processing done by Honeydew is on your premises: in your cloud data warehouse, using your LLM provider, your Git provider and your authentication provider.

At Honeydew, we prioritize security from the start to ensure that your data is always protected. Honeydew is SOC 2 Type II compliant. We maintain industry-leading privacy standards, technology, and practices.