Where exposure is decided.
The control plane is the signed-in Warplock application. Your integration partner and your own admins, developers and viewers use it to decide which entities exist, promote configuration through DEV, STAGING and PROD, issue and revoke access, and read what happened. It runs in Warplock's sovereign cloud and never touches your database directly; the runtimes it configures do.
Draft Change
A change-set that has not touched any environment. Entities, columns, policies, deployment settings.
Preview
The generated DAB config and a redacted runtime plan, rendered before anything runs.
Validate
SQL Capability checks against the SQL Connection; contradictory deployment settings rejected.
Approve
Where Policy Governance requires it, a Client-held approval is recorded before Promotion.
Promote
Into DEV, STAGING or PROD. Blocked if the environment moved underneath the preview.
Effective Config Version
An immutable, checksummed snapshot that is now the environment's truth.
Deployment Job
The worker renders, validates and applies it, or records a Plan-only result if the host is frozen.
A rollback is a new Draft Change created from an older Effective Config Version. It goes through the same preview, validation and Promotion, so a rollback is never a shortcut around the gates.
Display names, descriptions, token restrictions and rate-limit policies are audited direct edits with a required reason. They never change what DAB executes.
Operational truth, close to the action.
Every list shows the IDs, environment scope, version, health timestamp and Gateway route an operator needs before changing anything. Dense tables, not dashboards. Non-colour status labels throughout.
| Environment | Effective Config Version | Runtime | Gateway route | Health |
|---|---|---|---|---|
| DEV | ecv_8c1f… | Running | /mcp/gw_3k9d… | Healthy · 12s ago |
| STAGING | ecv_8c1f… | Running | /mcp/gw_3k9d… | Healthy · 9s ago |
| PROD | ecv_51a0… | Running | /mcp/gw_p7x2… | Healthy · 14s ago |
Row actions: start, stop, restart, create rollback draft, edit TFN redaction, edit payload policy. Each requires an audit reason and writes an Operational Event.
Nothing is hard-deleted.
Lifecycle Controls keep history, audit and dependencies intact. Three kinds of change, each with its own gate.
Archived SQL Connections keep their non-secret history and lose their encrypted credential. Archived Clients keep every record for audit. A Blank-Slate Reset returns an environment to a new-Client baseline only after explicit operator approval.
See it with your own entities.
Your partner will set up a Client workspace and walk one Draft Change from preview to PROD with you.