Static analysis for dbt and warehouse code

CI-time DSPM for data pipelines

Catch PII leaks, cardinality bugs, and AI-generated SQL defects before they ship. Veric reads your dbt project and warehouse schemas in CI — no data movement, no runtime agents.

Free tier. No credit card. Self-serve install in under 5 minutes.

From zero to your first finding in minutes

01

Install the CLI

`brew install veric` or `curl | sh`. Runs on macOS, Linux, and Windows. Zero runtime deps — pure static analysis.

02

Run `veric scan` in CI

One command. Reads your dbt project, warehouse information_schema, and SQL. Emits SARIF for code scanning, JSON for everything else.

03

Review findings in the dashboard

PR comments, Slack digests, workspace history. Triage, suppress, and resolve with full audit trail.

Your data never leaves your warehouse

Veric reads code and metadata. We do not read, copy, or store the rows in your warehouse. Everything runs inside your CI.

Veric high-level architectureThe veric CLI runs in CI. It reads dbt manifests and warehouse information_schema metadata, and emits findings to the Veric control plane. Warehouse row data never leaves the customer's environment.Your CI / developer machineveric CLIAG-backed static analyzerdbt project (manifest.json)information_schema(metadata only)Veric control planefindings + analyticsfindings (SARIF/JSON)over HTTPS

From our design partners

Quotes are representative; named attributions ship once partner agreements allow.

We found two PII leaks in a PR that would have shipped to production. The SARIF integration meant zero new tooling for our reviewers.
Design partner (healthcare)
Staff data engineer
Other SQL linters scream about style. Veric actually understands our refs and stops the cardinality bugs that matter.
Design partner (B2B SaaS)
Analytics engineering lead
The AI-generated SQL guardrails are the reason we could greenlight Copilot for our analytics team.
Design partner (fintech)
Head of data platform

Ship safer data pipelines today

Free tier ships with full rule coverage. Upgrade when you need unlimited repositories, longer retention, or SSO.