Input validation for SQL text and connection selection Optional dry-run mode (no execution, just summary) Parameterized queries to reduce injection risk Structured ...