documentation
Docs
How to connect a database read-only, and how the two things that keep answers honest actually work.
Connect a database
These are the same instructions the product shows you when a credential check fails, so there is only ever one version of them.
- start here Why read-only, and what we check the gate, per engine
- postgres PostgreSQL CREATE ROLE … LOGIN, default-privilege grants
- mysql MySQL / MariaDB GRANT SELECT, and the privileges to avoid
- snowflake Snowflake a reader role, and pinning the warehouse
- bigquery BigQuery dataViewer + jobUser, and the scan cap