Security and deployment
Read-only. Your environment. Your metadata, exportable in full.
DQHQ is designed so that the security conversation is short. It reads, it does not write. It holds metadata, not your data. It runs where you say it runs, and everything it learns leaves with you the day you ask.
Not in the write path
DQHQ connects to your systems of record, warehouse, feeds and exports with read-only credentials through standard connectors. It never modifies a source system and it cannot become a dependency of one.
Metadata, not data
The layer holds schemas, definitions, lineage, test results, classifications and profiles. Sampled values used for profiling stay in your environment and can be disabled per source.
Deploys where you need it
Inside your own cloud account or data center, in a dedicated private cloud we operate for you, or hosted. Data residency follows your choice; the layer works the same in all three.
Access follows classification
Classifications such as PII, MNPI, member-submitted or confidential travel with the data. People and AI agents see only the columns their role allows, including over MCP.
Exportable, in full, at any time
Everything DQHQ holds is stored in open, documented formats and can be exported completely. The walk-away cost is near zero by design, and the catalog stays with you after a pilot either way.
Questionnaires welcome
Send your vendor security questionnaire before the scoping call and we will return it completed. Encryption, SSO, audit logging and retention details are covered there and in a room, not on this page.
security@dataqualityhq.com for questionnaires and disclosures

