Governance by Design
Domains in Honeydew are scoped layers of governance that define who sees what and how.
They combine semantic logic with access policies - applying security, filters, and overrides before any query is compiled.
Honeydew enforces governance through your warehouse - not around it.
Every query, whether from BI or AI, is compiled with your existing access rules, identities, and data policies built in.
Domains in Honeydew are scoped layers of governance that define who sees what and how.
They combine semantic logic with access policies - applying security, filters, and overrides before any query is compiled.
Honeydew doesn’t reinvent access control - it compiles into it.
Your warehouse is the execution environment and the enforcement point for row-level security policies and access roles. Honeydew ensures every query respects those controls automatically.
Honeydew connects directly to your identity provider for unified authentication and authorization.
When an authenticated user runs a query - through a dashboard, an API endpoint, or an MCP interface - Honeydew compiles it using their data warehouse identity, propagating their identity end-to-end.
All processing done by Honeydew runs in your own accounts: your cloud data warehouse, your LLM provider, your Git provider and your authentication provider.
A model can reason its way around anything it's merely told. Honeydew enforces access below the model, where no prompt can reach.
Put an AI in front of your live data and every answer arrives already scoped to the person asking. The model never gets to decide who sees what.

At Honeydew, we prioritize security from the start to ensure that your data is always protected. Honeydew is SOC 2 Type II compliant. We maintain industry-leading privacy standards, technology, and practices.