Connection strings are not change control
Credentials open the door. Receipts govern the write.
SQLGuard field notes
Practical distinctions we keep finding while building permission controls for database agents. Mechanisms, evidence, and limits—from one engineering team to another.
Written by SQLGuard·hello@sqlguard.io·Follow by RSS·12 notes
Credentials open the door. Receipts govern the write.
A chat yes is a moment. A statement-bound receipt is evidence.
Sandbox and EXPLAIN are taste. Production execute still needs authorize.
Logs explain what ran. Receipts decide whether it was allowed.
Tenant isolation and statement permission solve different failures.
A green PR check is a rehearsal. Runtime still needs PASS + verify.
mode=readonly is a kill switch. The intentional write still needs a decision.
The pager question after an agent mutates production.
Unrestricted / write modes set capability. Permission binds one statement.
Local [y/N] helps one client. Other hosts need a statement-bound receipt.
Risk guidance is useful before a write, but guidance is not permission.
Lint inspects a statement. A receipt answers who permitted the write.