Security and compliance
Ensure data security and compliance with monitoring and change traceability
Everything you need to govern database change at enterprise scale, without slowing teams down.
Redgate Flyway Enterprise is the change layer that governs every database change, whether human-written or AI-generated.
Automated policy checks, drift detection, and deterministic deployment scripts catch problems in the pipeline, not in production, so teams spend less time firefighting and more time shipping.
AI coding tools have removed the constraint on how much code your team can write. That means more database changes, arriving faster, with wider quality variance.
“One of the key things is developer confidence and enabling them to take risks because the pipeline is going to catch it.”

Features to keep pace with AI
Bridges Claude Code, GitHub Copilot, Cursor, Google Gemini and other AI tools directly into Flyway Enterprise's workflows. Every AI-generated change is version-controlled, policy-checked, and subject to the same guardrails as human-authored changes, from the moment it's created, before it reaches your pipeline.
95+ rules enforced automatically on every change in CI. Redgate-authored policy library makes it easy to start governing changes from day 1. Non-compliant changes blocked before they merge.
Extend the policy library with your own architecture and security standards. The golden path enforces itself, no manual reminders required.
Continuously monitors for divergence between expected and actual state. Catches hotfixes, manual edits, and AI-generated changes that bypassed the pipeline before they become a production incident.
Generate three resolution scripts when drift is detected: a revert script to remove the drift, an incorporate script to pull it into version control as a migration, and a filter file to exclude it from future checks. Clear options to re-align environments and keep deployments flowing.
When the database is the last manual step in an otherwise automated pipeline, it becomes the ceiling on how fast AI delivery can go. Flyway Enterprise extends your delivery pipeline to cover the database – automating work your team should not be doing by hand: script generation, validation, and deployment.
“Customers cut deployment times by 58% on average, and by as much as 98%: a Fortune 250 financial institution went from 12 to 24 hours down to 20 minutes.”

Features that remove the bottleneck
AI tools generate non-deterministic schema changes that vary from run to run. Hand-coded scripts add their own variance and human error. Flyway Enterprise resolves both at source, auto-generating versioned migration scripts from a schema comparison. This means the same deterministic output every time.
Scripts are built and verified against a shadow database before saving. If the SQL is invalid, has a missing column, broken constraint, or syntax error, the script fails early before getting to production.
Auto-generated rollback for every versioned migration. When a schema change can be quickly reversed with an undo script, the code is already there and waiting.
Generate a complete build script from any version of a database in a single command. Use it to provision new environments and to produce the build documentation regulated teams need.
Generate plain-language descriptions and commit messages for any migration script, so reviewers spend less time deciphering unfamiliar or AI-generated changes.
When something goes wrong in production, the question is always the same: what changed, when, and who approved it. Without an audit trail, answering it can mean hours trawling logs, tickets and messages – even before you fix the problem. Flyway Enterprise creates a complete, traceable record of every database change from commit to production, built as part of the deployment, not assembled after the fact.

Audit features
A complete view of what will change on the target before any migration runs. The DBA review packet, generated automatically, answerable to auditors.
Ensure that every release follows the policies you have in place - automated policy-as-code checks covering best practice, data protection, and security out of the box, plus any custom policies you want to enforce on every deployment.
Every migration time-stamped and traceable from commit to production. Root cause analysis in minutes.
Track changes to individual database objects, tables, views, procedures, not just whole schemas, so an auditor can see exactly which object changed, when, and how. Exactly which object changed, when, and how. Available for SQL Server, Oracle, PostgreSQL, MySQL and their cloud variants. Individual object tracking at enterprise scale.
Version control reference, configuration, and lookup data alongside schema changes for SQL Server, Oracle, PostgreSQL, and MySQL, deploying all of it through the same pipeline.
Detailed structured logs for every change.
Redgate Flyway supports 60+ database engines
Advanced capabilities are available for SQL Server, Oracle, PostgreSQL, MySQL and Databricks.
| Foundation |
|---|
| SQL migrations runner Version-controlled migration scripts in plain SQL for 60+ databases |
| CLI, API and Desktop GUI Terminal, pipeline step, or visual interface |
| Built-in Git client Database changes tracked alongside application code |
| 60+ databases supported SQL Server, PostgreSQL, Oracle, Databricks, MySQL, Azure SQL DB, Aurora, Amazon RDS, and more |
| Policy and governance |
|---|
| Built-in code review engine Policy checks in CLI and GUI |
| Code review policy library (95+ rules) Includes Redgate-authored and SQLFluff rules, ensuring best practices, data protection and security policies are met. |
| Custom policy integration Extend with your own architecture standards |
| Drift detection and resolution Continuous monitoring and auto-generated fix scripts |
| New Flyway MCP Server Governed AI agent workflow, Claude Code, Copilot, and more |
| Insider threat mitigation All schema changes tracked, unauthorized edits flagged |
| Script generation and deployment |
|---|
| Schema comparison engine Auto-generate migration scripts from database diffs |
| Deterministic migration generation Same output every time, V, U, and B scripts in one command |
| Script validation Scripts verified pre-staging, structural failures caught early |
| Dry run (flyway check) Preview the changes Flyway will make to the database before applying them |
| Undo scripts Auto-generated rollback scripts for every versioned migration |
| Baseline generation Full build script for environment provisioning and documentation |
| Preview AI script summaries Plain-language descriptions and commit messages for migration scripts |
| Cherry pick Allows running a specific migration script, not necessarily in the prescribed order |
| Audit, compliance, and traceability |
|---|
| Change reports Complete view of what will change before any migration runs |
| Complete deployment audit trail Every change timestamped from commit to production |
| Object-level versioning Track individual objects, not just whole schemas, for granular audit history |
| Static data versioning Version reference and lookup data alongside schema changes |
| Separation of duties Developer, Ops, and DBA access controls enforced |
| Support and development |
|---|
| Priority support from Redgate engineers Average 87% 'Excellent' support rating |
| AWS and Azure Marketplace Deploy directly from your cloud provider |
| SSO and enterprise authentication Single sign-on and enterprise auth support |
| Flyway Autopilot Guided setup for fastest time to production value |
Capability support varies by database
To see which capabilities each database supports, see the documentation.
Whether you want more details about Redgate Flyway, a demo, or to know about best practice – get in touch.
Book a consultation