CI/CD
Create and destroy masked workspaces from GitHub Actions, GitLab CI, Jenkins, Buildkite, or internal runners.
// integrations // your stack, governed
38+ databases, every major CI/CD platform, enterprise SSO, observability stacks, and AI agents — all plug into the same governed test data workflow.
// 01 / database connectors
// 02 / developer surface
The same workflow runs through CLI, REST, webhooks, and MCP. Platform teams can standardize the path instead of maintaining one-off scripts.
CLI
REST API
Webhooks
MCP / Agents
GitHub Actions
Private cloud
// 03 / categories
Create and destroy masked workspaces from GitHub Actions, GitLab CI, Jenkins, Buildkite, or internal runners.
Bring enterprise login and authorization into the same policy path as provisioning and refresh.
Forward job status, audit events, policy decisions, and provisioning metrics to the tools your team already watches.
Expose safe workspace operations through typed tools — masking, RBAC, and audit still enforced server-side.
// 04 / engine modules // code you can audit
SOFI is built as composable engine modules. Security teams audit them. Platform teams extend them. Every integration sits on top of the same foundation.
38+ database connectors. Auto-registers via ConnectorRegistry.
50+ rules, 27 PII categories, hyperscale fan-out via Celery chord.
CoW with 4MB blocks, SHA-256 dedup, zstd compression.
PostgreSQL WAL, MySQL binlog, Oracle, SQL Server logical replication.
Pipeline CDC → Transform → Destination. Coordinated VDB groups.
Subset with referential integrity. Foreign key aware.
Private routing, RBAC, masking policy, soft-delete + audit trail. Adding GitHub Actions or Slack doesn't loosen the security baseline.