01 / Surfaces
A Fire Drill restores a backup somewhere disposable, checks what came back and records the result. It runs on your host, or on a machine SafeGrd starts for it, and SafeGrd records the result.
- :
New node token
Copy this now and update the daemon on . It is not shown again.
Loading your surfaces.
Nothing protected yet
Choose where backups go and what to protect, then connect the host that runs them.
| Status | Surface | Last backup | Recovery point | Restore time | Schedule | Details |
|---|---|---|---|---|---|---|
|
Anomalous
Silent
Last checked in . If this host is gone,
restore from a new one, then retire it under Edit.
Overdue
Unreachable
Unreachable since :
Backup failed
The last backup on SafeGrd failed :
Not recorded
Hook failed
Drill blocked: no key
Drilled in memory
Drill failed
Update available
|
|
Backup execution failed
|
|
|
Expected. No daemon on this host runs it.
|
|
|
Problem
Recovery
(flagged by Threat Shield)
Last backup
Retention
Backed up by SafeGrd, from the connection string it holds
Key
To back up now, run |
||||||
02 / Snapshots
No snapshots yet
Run safegrd backup to create your first encrypted snapshot.
| Snapshot ID | Surface | Contents | Raw / Encrypted | Threat Shield | Retention | Created |
|---|---|---|---|---|---|---|
| Host removed | Files Email Postgres MySQL MongoDB SQLite |
Failed
Anomalous
Clean baseline
Incremental
Outside project storage
|
Kept as last known good
|
03 / Fire Drills
Each drill restores a snapshot and checks what came back. The result is recorded against the surface.
Recovery point and restore time, measured from each surface's snapshots and drills (RPO and RTO in a security questionnaire). How each figure is measured.
| Surface | Verified | Latest backup | Worst gap, 30 days | Restore time |
|---|---|---|---|---|
|
|
Anomalous |
|
|
No backups yet
Each surface shows its recovery point here after its first backup, and its restore time after its first drill.
No fire drills run yet
Run safegrd verify --snapshot … to restore a snapshot in a sandbox and prove it comes back.
| Status | Surface | Restored | Tested | Certificate |
|---|---|---|---|---|
| Public Ran on SafeGrd |
A badge is available once a surface is protected.
README badge and public page
The badge shows whether a surface's drills pass. Publish the surface's page and the badge links to its newest certificate.
The page shows this surface's newest passed drill and changes as new ones pass. Each one it shows is published.
An owner or admin can publish this surface's page.
An owner or admin can change this.
05 / Access tokens
Use tokens to authenticate the SafeGrd CLI, GitHub Actions, or Kubernetes sidecars. A token can enrol a host, read, and ask for a backup or a drill. It cannot delete a backup, remove a surface or change where backups go.
Token created
Make sure to copy your personal access token now. You won't be able to see it again!
No access tokens
A token authenticates the SafeGrd CLI, a GitHub Action or a Kubernetes sidecar against this control plane. It is shown once, at creation, and expires after the time you choose, up to a year.
| Token name | Key prefix | Scope | Created at | Expires | Actions |
|---|---|---|---|---|---|
| No expiry |
Backup and drill requests
Every "back up now" and "drill now" asked of this organization's surfaces: who asked, from the console or with which token, and what they were told.
No requests yet
Scheduled backups and drills are not listed here, only the ones someone asked for.
| When | Request | Surface | Asked by | Outcome |
|---|---|---|---|---|
04 / Projects
Projects group database nodes, send their snapshots to SafeGrd hosted storage or to your own S3 bucket, and isolate backup domains. Projects are unlimited across all plans.
No projects yet
A project keeps one environment's backups apart from another's, with its own storage and its own hosts.
| Project name | Slug | Status | Storage sink | Nodes | Actions |
|---|---|---|---|---|---|
| Archived Active |
SafeGrd hosted
|
|
05 / Project storage
Where this project's backups go: SafeGrd hosted storage, where your plan includes it, or your own S3-compatible bucket. Every snapshot is compressed and encrypted before it is uploaded, on your host or on the machine SafeGrd starts for a surface with no host, so either one only ever holds ciphertext.
Backups keep going to hosted storage until a bucket is saved below.
S3 storage
Key access record
Audit log of secret releases and access refusals across this organization. Secrets are identified by type and never displayed in plaintext.
Nothing released yet
No stored secrets have been released to any host in this organization.
| When | What | Host | From | Outcome |
|---|---|---|---|---|
06 / Billing
Every paid plan protects as many surfaces as you have. Plans differ in how often a Fire Drill runs, whether it loads a real database, and whether you can export the evidence.
Every paid plan:
If you cancel:
Without a plan after the trial:
Payment
Renewals are charged to this card.
No card on file.
Invoices
No invoices yet.
| Date | Total | Status | Invoice |
|---|---|---|---|
Cancelling stops future charges at the end of the current period. Your surfaces keep being backed up and no stored snapshot is removed. You cannot add new surfaces afterwards. You can resume it any time before the paid period ends.
Profile
Two-factor sign-in
Organization
Key access record
Every key and credential SafeGrd released, to which host and when, and every refusal.
Alerts
Failed backups, failed or blocked Fire Drills, hosts that stop checking in, surfaces that fall behind their schedule, and recoveries.
Email:
Compliance platform
Each Fire Drill record is sent to your compliance platform as dated evidence, signed and with the link to verify it. SafeGrd keeps the platform's API token sealed and uses it only to send.
:
Sending evidence to a platform is part of the Scale plan, with the Evidence Pack.
Team members
Team members come with a paid plan
The Free plan is for the organization's owner alone. Every paid plan adds as many admins, members and viewers as you need. Anyone already in the organization keeps their access.
| Name | Role | Added | Actions | |
|---|---|---|---|---|
| INVITED |
|
Delete organization
Takes this organization out of SafeGrd: its projects, members and settings stop working. Backups already
written stay in their storage; copy hosted ones out first with safegrd export. Decommission every host and cancel the subscription first. We keep the
organization's records for 12 months so it can be restored, then erase them. To have them erased sooner,
write to support@safegrd.dev.
Platform overview
Global telemetry, multi-tenant directory, and early access waitlist across all organizations.
Stale means no pass succeeded for three intervals, or the last three failed; the operator channel is told when that starts and when it ends.
| Job | Every | Last run | Took | Last success | Next run | State |
|---|---|---|---|---|---|---|
Backups and drills SafeGrd runs on its own machines: every open job, and every job that ended in the last 24 hours.
The queue is the runner_jobs table. The server sweeps it every
seconds, at start, and as soon as someone asks for a job.
| Queued | Organization | Surface | Job | State | Machine | Detail |
|---|---|---|---|---|---|---|
| Step | Reached | Of signups | Lost at this step |
|---|---|---|---|
Not finished yet
| Organization | Signed up | Got as far as |
|---|---|---|
| Tenant organization | Owner | Plan / Tier | Surfaces | Hosted storage | Latest backup | Fire Drill health | Created | ||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
|
Not offered
|
|
|||||||||||||||||
|
|||||||||||||||||||
Periods the hourly sweep left for a person. A period marked sending was being charged when the server stopped, so whether the provider charged it is unknown. Check the provider, then answer: Charged records it as sent, Not charged sends it again on the next sweep. Abandoned and unsupported periods are invoiced by hand, then marked charged.
| Organization | Period | Plan | Overage | Provider | State | Last answer | |
|---|---|---|---|---|---|---|---|
| Work email | Name | Company | Surfaces / Notes | Joined at | Status |
|---|---|---|---|---|---|