We use the access to pull aggregate information by using common table expressions (for SQL sources). We always give you all the SQL that was used to generate the data (view queries). All connection information is stored encrypted or in environment variables. Finally, since we're open source, you're welcome to look to see we are not doing anything that would compromise a clients data