← Boreon TabTotal GRC suite
Risk Anthropic Claude · optional

TabRisk

Read-only PII/PHI exposure scanner

Scans your Tableau estate the way a privacy reviewer would — reading the metadata surface read-only, running a deterministic floor of regex, checksum and dictionary detectors, and fusing each hit into a transparent risk score. Every finding is stamped "possible PII/PHI — requires human verification," and the output is audit-ready evidence you can attach to a review — never a legal certification, never de-identification.

What TabRisk does

Built deep. Delivered governed.

Deterministic detector floor — SSN (reserved-range), credit card (Luhn), email, phone & US_NPI (80840+Luhn), each validator-backed to cut false positives before anything reaches the ledger

Read-only by construction — extracts the Metadata-API surface (field names, captions, descriptions, calc formulas) with no write path anywhere; a disabled Catalog degrades to a warning, never an error

Transparent risk fusion — risk = confidence × sensitivity × prevalence × exposure, with the scoring methodology emitted verbatim so an auditor can reproduce every score by hand

AI-cannot-certify ledger invariant — Claude may raise or annotate a finding (stamped AI-suggested), but only a deterministic checksum or a human signature can certify it; the disposition state machine rejects any AI confirm

Secrets-free, masked artifacts — CSV/JSONL findings export with evidence masked (***-**-1234) and credentials session-only and in-memory; TabRisk never exfiltrates the very data it detects

Who it's for

For governance, privacy and compliance teams who need to find where sensitive data is hiding across the Tableau estate and produce defensible, audit-ready evidence for human review.

On AI

AI assists as an advisory classifier only — disambiguating ambiguous columns and drafting finding rationales (bring-your-own Claude, local model default, deterministic fallback). Every detector, score and disposition stays deterministic, and AI is never in the write path and can never certify a finding.

5
validator-backed detectors · 28 tests passing, fully offline
The rest of the suite

Better together.

TabMigrate

Claude
Governed Server → Cloud migration

Moves Tableau content from Server to Cloud on the official Migration SDK — but wraps it in a workflow a human can actually trust: see the real project tree, tick exactly what migrates, map the users and projects that always snag a move, then dry-run, preview risk, and approve before a single byte is published. Every run ends with a downloadable compliance audit you can attach to a change ticket.

Explore TabMigrate

TabOffboard

Claude
Governed offboarding & licence reclamation

Offboards a departing Tableau user the way a careful administrator would — discovering every object they own read-only, drafting a reassignment plan to a chosen steward, and gating the writes behind explicit human approval. Content is always reassigned before the seat is reclaimed, and every run lands a secrets-free audit you can attach to a change ticket.

Explore TabOffboard

TabLineage

Claude Ultracode
Cross-server lineage & blast radius

Point TabLineage at up to four Tableau reference points — workbooks, published data sources, or Prep flows — across the same or different servers, and it merges their end-to-end lineage into one deterministic graph where the shared tables and data sources reveal the blast radius. Then it drops you into a WCAG-AA node-link Explorer to walk the whole landscape — point, click, pan, zoom — and download the lineage as evidence.

Explore TabLineage

TabGuard

Claude
Read-only estate security & threat scan

Connect once, then sweep an entire Tableau estate the way a security reviewer would — enumerating every workbook, data source and flow, unpacking the packaged files read-only, and running a deterministic battery of scanners for embedded secrets and injectable SQL. Each finding lands with a rule ID, redacted evidence, a severity, and a pre-attached CIS Controls v8.1 Safeguard and NIST CSF 2.0 function — audit-ready evidence you can drop straight into a SOC 2 or ISO 27001 ticket.

Explore TabGuard

TabQuality

Claude
UAT → PROD workbook QA & promotion

Reads a Tableau workbook the way a careful reviewer would — running deterministic quality checks, comparing a UAT candidate against live PROD with a true semantic diff, and producing a client-ready audit you can attach to a change ticket. When the candidate passes clean, it gates PROD promotion behind a typed, dual-signed approval and writes an immutable record of who promoted what, when.

Explore TabQuality

TabTable

Claude
Audit-grade Tableau evidence converter

Turns any Tableau workbook into reproducible, content-hashed audit evidence — every field, formula and connection extracted by our own XML reader, past where Tableau’s API stops. Same bytes in, byte-identical evidence out — the reproducible, timestamped class of artifact SOC 2 Type 2 and SOX ITGC reviewers ask for.

Explore TabTable

TabTranslate

Claude
Governed workbook localization & republish

Localizes a Tableau workbook the safe way — translating only the author-written display text and leaving every internal name, calculation, and packaged data source untouched, so a translation can’t break the workbook. It auto-detects the source language, localizes into any of Tableau’s 10 official display languages, and publishes to a project you choose — with the translated file always available as a download.

Explore TabTranslate

TabRender

Claude Ultracode
Data-safe workbook recolour & render

Recolours a Tableau workbook to a governed brand or accessibility palette by rewriting only its visual style XML — never a single data, calc, or connection byte — and hands back a polished file with a SHA-256 data-safety manifest you can attach to a change ticket. Tableau’s own VizQL engine renders the final pixels on open; the recolour stays 100% deterministic and AI never touches the write path.

Explore TabRender

Make TabRisk part of your governance.

License TabRisk on its own, link it with others, or unlock the whole Boreon TabTotal suite.