Skip to main content

In-VPC PostgreSQL masking and anonymization engine

Project description

PrivaCI

One command. Sanitized staging data. No data leaves your VPC.

PrivaCI is a stateless batch engine that reads from a PostgreSQL source (typically a production replica), masks PII with a three-tier pipeline, and writes realistic synthetic data to a staging database with referential integrity preserved.

Prerequisites

  • Python 3.12+, or the official container image (ghcr.io/boundarylogic/privaci)
  • A PostgreSQL source (typically a production replica) and an empty target database

Quickstart

Fastest path — self-contained evaluation stack (~60 s):

export ANONYMIZATION_SALT="$(openssl rand -hex 32)"
make eval-up

See docs/quickstart.md for the full walkthrough.

Your own databases:

pip install -e .
privaci gen-salt > .privaci-salt && chmod 600 .privaci-salt
export ANONYMIZATION_SALT=$(cat .privaci-salt)
export SOURCE_DB_URL=postgresql://user:pass@source-host:5432/app
export TARGET_DB_URL=postgresql://user:pass@target-host:5432/staging

privaci validate && privaci dry-run && privaci run && privaci verify

Browse the docs site locally: pip install -e ".[dev]" && make docs-serve

Documentation

Start with the documentation index or quickstart. Key pages:

Using PrivaCI

Developing PrivaCI

License

The engine is licensed under the Elastic License 2.0. Optional paid features ship as a separate plugin layer via the plugin contracts.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

privaci-0.1.0b7.tar.gz (120.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

privaci-0.1.0b7-py3-none-any.whl (164.1 kB view details)

Uploaded Python 3

File details

Details for the file privaci-0.1.0b7.tar.gz.

File metadata

  • Download URL: privaci-0.1.0b7.tar.gz
  • Upload date:
  • Size: 120.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for privaci-0.1.0b7.tar.gz
Algorithm Hash digest
SHA256 7e12e5229d3b95b44477cb085601ba38f50e7aeae9032fd713d608ecfde0746c
MD5 1d06d08163e8d5f005acab99e45d4738
BLAKE2b-256 ad989939f2f2a33d3e41dfda3f6e4006cde2e84a4058578c1176f4e8985a9d40

See more details on using hashes here.

Provenance

The following attestation bundles were made for privaci-0.1.0b7.tar.gz:

Publisher: publish-pypi.yml on BoundaryLogic/privaci

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file privaci-0.1.0b7-py3-none-any.whl.

File metadata

  • Download URL: privaci-0.1.0b7-py3-none-any.whl
  • Upload date:
  • Size: 164.1 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for privaci-0.1.0b7-py3-none-any.whl
Algorithm Hash digest
SHA256 6fe085a7b227950bea387cd80c7b4cea9807e5621cb7c26368f70f35c286e9fa
MD5 3840889a843001b3cc4ab66e5dadf67e
BLAKE2b-256 4416777acb7caad5583adcdea7701c3168279472460f8f4a982edf93ab7573fc

See more details on using hashes here.

Provenance

The following attestation bundles were made for privaci-0.1.0b7-py3-none-any.whl:

Publisher: publish-pypi.yml on BoundaryLogic/privaci

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page