Impliancy is designed with a clear and transparent security model that aligns with enterprise governance requirements.
This page explains how authentication, authorization, and data handling work inside Impliancy.
All users authenticate through your Microsoft Entra ID tenant.
Impliancy uses a service principal to access:
The service principal uses client credential flow and does not impersonate any user. See Dataverse Permissions for more details.
Authorization is based on:
Permissions are enforced on every API call within Impliancy.
All metadata is isolated by the Power Platform tenant itself.
When multiple client tenants are connected:
Impliancy stores only governance-related metadata:
Impliancy does not store:
Every significant governance action is logged:
Audit logs are viewable by admins. See Audit Log for more details
To operate Impliancy securely: