PG Orbit · Features
Your secrets stay on your device.
PG Orbit is a real client: queries travel from your device to your database, not through our servers. Credentials are stored in the platform keychain (iOS Keychain, Android encrypted storage, macOS Keychain), and the optional sync service is designed so secrets cannot leave the device even in principle — the sync payload simply has no field for them.
What syncs and what never does
With a sync account, we store your email, connection settings (host, port, database, user, SSH settings), and saved queries. Passwords, private keys, and passphrases never sync. Query history sync is opt-in and off by default because history contains your raw SQL.
- Biometric app lock: Face ID, Touch ID, or fingerprint, with auto-lock on app switch
- SSL/TLS with Require and Verify-Full modes, client certificates supported
- Signed, sandboxed macOS app with hardened runtime
- Delete your sync account and all synced data from settings, any time