Matters.AI, Cockroach Labs Launch Data Security Integration for DPDP-Regulated Data
Bengaluru-based AI-native data security company Matters.AI and Cockroach Labs, the company behind the distributed SQL database CockroachDB, have launched an integration to identify personal and regulated data within CockroachDB deployments and map it to the database users, roles and privileges that can access it.
The integration, available to CockroachDB customers, classifies data at the column level and creates an access map showing which accounts can reach regulated data, where excessive privileges exist and whether data is stored in a jurisdiction where it should not be.
The launch comes as Indian enterprises prepare for compliance with the Digital Personal Data Protection (DPDP) Rules. The rules were notified in November 2025, with substantive obligations for data fiduciaries scheduled to take effect from May 2027. Banks, payment companies and insurers are also subject to existing data-localisation and cybersecurity requirements from the Reserve Bank of India.
According to the companies, the integration scans CockroachDB databases, tables and columns using 38 personally identifiable information (PII) detectors covering eight regulatory jurisdictions. It can also detect payment card numbers, protected health information and secrets stored in free-text columns.
The classified data is then correlated with CockroachDB users, roles and privilege grants. This allows security teams to identify which accounts can access regulated information, which roles have privileges beyond their current usage and where regulated data may be located outside the appropriate jurisdiction. The findings can be mapped against requirements under the DPDP Act, PCI DSS, HIPAA, GDPR, ISO 27001 and SOC 2.Also ReadDelvitech to Invest Up to $30 Mn in Bengaluru Manufacturing Facility, Create 800 Jobs
What’s your take on this story?Add your comment
A key feature of the integration is that data classification and privilege analysis take place inside the customer’s own infrastructure. The companies said raw records and sampled values are not transmitted to the Matters.AI control plane; only findings and operational metadata are sent.
For Indian organisations subject to data-residency requirements, the companies said this architecture allows security analysis without moving the underlying customer data outside the organisation’s environment.
“Enterprises distributed their databases to survive anything. In doing so, they made their most sensitive data harder to see than ever: more regions, more tables, more roles, and still no answer to the simplest question a CISO can ask: who can reach this data right now?” said Keshava Murthy, Co-Founder and CEO of Matters.AI. He added that the integration provides this visibility at the column level within the customer’s own environment.
The companies cited IBM’s Cost of a Data Breach Report 2026, which puts the average cost of a data breach in India at ₹25.5 crore, up 15.9% year on year. The report puts the average cost for financial services organisations at ₹40.9 crore per breach. Indian organisations without security automation took an average of 236 days to identify a breach, according to the release.
The release also points to penalties under the DPDP Act, with the Data Protection Board of India able to impose penalties of up to ₹250 crore per instance for failure to implement reasonable security safeguards.
“Together with Matters.AI, we’re making data protection seamless for our customers. This integration gives teams instant visibility into where their sensitive data lives, who can access it, and what’s happening to it,” said Tejas Baldev, Vice President of Sales, APAC, at Cockroach Labs.
