Comparison
Four complementary layers.
Four different records.
Prompt guardrails evaluate requests. Identity and IAM establish who may act. DSPM maps data posture. SmartVerify records observed PostgreSQL execution and results. This matrix shows where each layer establishes evidence without treating one as a replacement for another.
| Comparison | Prompt guardrails Request layer | Identity and IAM Access layer | DSPM Posture layer | SmartVerify Execution layer |
|---|---|---|---|---|
| Evidence produced | A record of the prompt or request evaluated and the guardrail decision. | Authentication, authorization, role, policy, and access-decision records. | Inventory, classification, exposure, and posture findings for data at rest. | A signed record of the PostgreSQL statement as executed, returned row count, columns read, session, and agent identity. |
| Enforcement point | At the model or application request boundary. | At sign-in, token issuance, and resource authorization boundaries. | At the data-posture and remediation workflow layer. | Inside the customer VPC on the agent-to-data path. |
| Timing | Before or during model and tool-request handling. | When identity and access decisions are made. | When posture discovery, scanning, or assessment runs. | As observed PostgreSQL traffic executes and the database returns results. |
| Current product availability | Varies by the selected product and deployment. Confirm with the provider. | Varies by the selected IAM product and deployment. Confirm with the provider. | Varies by the selected DSPM product and deployment. Confirm with the provider. | PostgreSQL Record is available now. See the Platform coverage grid for current source and control availability. |
Use each layer for the question it can answer
Prompt guardrails can lower the probability of a bad request. Identity and IAM govern access. DSPM establishes posture. SmartVerify bounds and records the execution consequence on observed PostgreSQL connections, with zero application code changes.
Keep identity, prompt, and posture controls for their established boundaries
Add SmartVerify for signed PostgreSQL execution records
Bring the complementary records into investigation and review workflows