What is Midplane?
A thin access layer / MCP server that sits in front of Postgres, enforcing query-level policies, column masking, and audit logging.
Product typeApplication, Cloud & Data Security
Pricing$0 · Subscription, Freemium
DeploymentSelf-hosted · On-premises
APINot available
Integrations and access
Platforms, integrations, and language support vary by plan and region. Confirm final requirements with the vendor.
Platforms
IntegrationsAPI and webhooks
Languages
Support
What reviewers say
Loading community reviews…
Enterprise readiness
Compliance claims are normalized from current vendor documentation and independently reviewed by SOTA2.
AES-256-GCM encryption for database credentials via per-region AWS KMS keys with envelope encryption Machine tokens stored as HMAC-SHA256 digests with constant-time comparison Postgres row-level security for audit log tenant isolation Browser hardening headers: Content-Security-Policy (frame-ancestors 'none'), X-Frame-Options (DENY), X-Content-Type-Options (nosniff), Referrer-Policy (strict-origin-when-cross-origin), Permissions-Policy (camera/microphone/geolocation disabled), Strict-Transport-Security (2-year max-age, includeSubDomains, preload) Per-agent least-privilege scoping with fail-closed on no-grant credentials Per-region cryptographic key separation for credentials and tokens Strictly necessary cookies only; no advertising or third-party advertising trackers Benchmarks and comparisons
Independent benchmarksStructured task results are being verified.
Side-by-side comparisonsComparison workspaces will be available in a later release.