How to Harden

Open-source SaaS security hardening guides for supply chain defense. Protect your organization from third-party breaches.

See it in action

The hth CLI scans your SaaS platforms against hardening guides and fixes what it finds.

hth — GitHub Security Scan
118
Hardening Guides
7
SaaS Categories
49
Code Packs

1Password

AI Drafted

Enterprise password manager hardening for 1Password Business SSO, policies, and vault security

Security

Abnormal Security

AI Drafted

Email security platform hardening for Abnormal Security including SSO configuration, admin access, and integration security

Security

ADP

AI Drafted

Payroll platform security for API connections, SSO, and data access controls

HR/Finance

Airtable

AI Drafted

Low-code platform hardening for Airtable Enterprise including SSO, access controls, and collaboration security

Productivity

Amplitude

AI Drafted

Product analytics platform hardening for Amplitude including SAML SSO, project access, and data governance

Data

Anthropic

AI Drafted

AI platform security hardening for Claude API, Console, SSO, workspace isolation, and admin controls

Productivity </> Code Pack

Asana

AI Drafted

Project management platform hardening for Asana including SAML SSO, admin console controls, and mobile security

Productivity

Atlassian Cloud

AI Drafted

Jira/Confluence security for organization policies, app controls, and data residency

Productivity </> Code Pack

Auth0

AI Drafted

Identity platform hardening for Auth0 tenant security, MFA, and attack protection

Identity </> Code Pack

Amazon Web Services

AI Drafted

AWS identity management hardening for IAM Identity Center including MFA, permission sets, and account access

Identity </> Code Pack

Azure DevOps

AI Drafted

Microsoft DevOps security for pipelines, service connections, and artifact feeds

DevOps </> Code Pack

BambooHR

AI Drafted

HR platform security for API keys, access levels, and sensitive field protection

HR/Finance

BeyondTrust

AI Drafted

Remote access security for PRA, session monitoring, and credential injection

Identity </> Code Pack

Bitbucket

AI Drafted

Code repository security hardening for Bitbucket Cloud including workspace security, branch permissions, and access controls

DevOps </> Code Pack

Box

AI Drafted

Enterprise content security for sharing policies, app controls, and classification

Data

Braze

AI Drafted

Customer engagement platform hardening for Braze including SAML SSO, permission sets, and API security

Marketing

Buildkite

AI Drafted

CI/CD platform hardening for Buildkite including SAML SSO, team permissions, agent security, and pipeline controls

DevOps </> Code Pack

OpenAI

AI Drafted

Enterprise AI security hardening for ChatGPT, SSO configuration, data privacy, and admin controls

Productivity

CircleCI

AI Drafted

CI/CD pipeline security including contexts, secrets, and runner hardening

DevOps </> Code Pack

Clari

AI Drafted

Revenue platform hardening for Clari including SAML SSO, user permissions, and forecast data security

Productivity

Cloudflare

AI Drafted

Security hardening for Cloudflare Zero Trust, Access, Gateway, and WARP deployment

Security </> Code Pack

SAP

AI Drafted

Travel and expense management platform hardening for SAP Concur including SAML SSO, expense policies, and audit controls

HR/Finance

Coupa

AI Drafted

Procurement and spend management platform hardening for Coupa including SAML SSO, role-based access control, and data security

HR/Finance

CrowdStrike Falcon

AI Drafted

EDR platform hardening for API security, update policies, and RTR access

Security </> Code Pack

Anysphere

AI Drafted

AI code editor security hardening for code privacy, API key management, and workspace trust

DevOps

CyberArk

AI Drafted

Privileged access management hardening for vaults, PSM, and credential rotation

Identity </> Code Pack

Databricks

AI Drafted

Data platform security for workspace access, Unity Catalog, and secrets management

Data </> Code Pack

Datadog

AI Drafted

Observability platform hardening for Datadog including SAML SSO, role-based access control, and organization security settings

Security </> Code Pack

Docker Hub

AI Drafted

Container registry security for access tokens, image signing, and repository controls

DevOps </> Code Pack

DocuSign

AI Drafted

eSignature platform hardening for DocuSign including SSO configuration, session security, and admin controls

Productivity

Drata

AI Drafted

Compliance automation platform hardening for Drata including access controls, integration security, and monitoring configuration

Security

Dropbox

AI Drafted

Cloud storage security for sharing policies, linked apps, and admin controls

Data

Duo Security

AI Drafted

Multi-factor authentication hardening for Cisco Duo, admin policies, and bypass protection

Identity

Figma

AI Drafted

Design platform hardening for Figma Enterprise including SSO, access controls, and governance features

Productivity

Fivetran

AI Drafted

Data integration platform hardening for Fivetran including SSO configuration, role-based access, and connector security

Data </> Code Pack

Freshservice

AI Drafted

ITSM security for API tokens, CMDB access, and change management controls

Security

Fullstory

AI Drafted

Digital experience intelligence platform hardening for Fullstory including SAML SSO, data privacy controls, and access management

Data

GitHub

AI Drafted

Comprehensive source control and CI/CD security hardening for GitHub organizations, Actions, supply chain protection, and Enterprise Cloud/Server

DevOps </> Code Pack

GitLab

AI Drafted

DevOps platform security for CI/CD pipelines, repository access, and runners

DevOps </> Code Pack

Gong

AI Drafted

Revenue intelligence platform hardening for Gong including SAML SSO, data access controls, and recording security

Productivity

Google

AI Drafted

Comprehensive security hardening for Google Workspace, Gmail, Drive, and Google Admin Console

Productivity </> Code Pack

Gusto

AI Drafted

Payroll security for admin controls, partner integrations, and bank account protection

HR/Finance

Harness

AI Drafted

Software delivery platform hardening for Harness including SAML SSO, RBAC, secret management, and pipeline security

DevOps </> Code Pack

HashiCorp Vault

AI Drafted

Secrets management security including auth methods, policies, and audit logging

Security </> Code Pack

Digital insights platform hardening for Heap including SAML SSO, environment access, and data governance

Data

HubSpot

AI Drafted

CRM security for private apps, OAuth scopes, and data export controls

Marketing

Intercom

AI Drafted

Customer messaging platform hardening for Intercom including SAML SSO, workspace security, and data protection

Marketing

Jamf

AI Drafted

MDM hardening for Jamf Pro macOS and iOS device management

Security </> Code Pack

Jenkins

AI Drafted

CI/CD security hardening for Jenkins including authorization, agent security, and pipeline protection

DevOps

JFrog

AI Drafted

Artifact management security for repository permissions, Xray policies, and access tokens

DevOps </> Code Pack

Jira Cloud

AI Drafted

Issue tracking platform hardening for Atlassian Jira Cloud including SAML SSO, organization security, and access controls

Productivity

JumpCloud

AI Drafted

Cloud directory and identity management hardening for JumpCloud SSO, MFA, and device management

Identity </> Code Pack

Keeper Security

AI Drafted

Enterprise password manager hardening for Keeper Security including role enforcement, MFA, and admin console security

Identity

Klaviyo

AI Drafted

E-commerce marketing security for API keys, profile protection, and export controls

Marketing

KnowBe4

AI Drafted

Security awareness training platform hardening for KnowBe4 including SAML SSO, admin access, and campaign security

Security

LastPass

AI Drafted

Enterprise password manager hardening for LastPass Business including MFA policies, admin controls, and security dashboard

Identity

LaunchDarkly

AI Drafted

Feature flag security for SDK keys, environment access, and approval workflows

DevOps </> Code Pack

Linear

AI Drafted

Issue tracking platform hardening for Linear including SAML SSO, workspace access, and team permissions

DevOps

Looker

AI Drafted

Google BI security for model access, embed secrets, and database connections

Data

Mailchimp

AI Drafted

Email marketing security for API keys, audience protection, and domain authentication

Marketing

Adobe Marketo

AI Drafted

Marketing automation security for API users, LaunchPoint services, and lead database

Marketing

Microsoft 365

AI Drafted

Comprehensive security hardening for Microsoft 365, Exchange Online, SharePoint, Teams, and OneDrive

Productivity </> Code Pack

Microsoft Entra ID

AI Drafted

Identity Provider hardening for Azure Active Directory, Conditional Access, PIM, and Zero Trust

Identity </> Code Pack

Microsoft Intune

AI Drafted

Endpoint management hardening for Microsoft Intune — defending against admin-plane abuse, credential theft, and destructive wipe attacks

Security </> Code Pack

Mimecast

AI Drafted

Email security hardening for Mimecast including targeted threat protection, impersonation policies, and gateway configuration

Security

Miro

AI Drafted

Visual collaboration security for board sharing, app controls, and export restrictions

Productivity

Mixpanel

AI Drafted

Product analytics platform hardening for Mixpanel including SAML SSO, project access controls, and data governance

Data

Monday.com

AI Drafted

Work management platform hardening for Monday.com including SAML SSO, authentication policies, and admin controls

Productivity

MongoDB

AI Drafted

Database-as-a-Service security hardening for MongoDB Atlas network access, authentication, and encryption

Data </> Code Pack

Netskope

AI Drafted

Security hardening for Netskope CASB, SWG, and ZTNA deployment

Security

NetSuite

AI Drafted

ERP security for role-based access, SuiteScript controls, and integration hardening

Data </> Code Pack

New Relic

AI Drafted

Observability security for API keys, license keys, and log obfuscation

Data </> Code Pack

Notion

AI Drafted

Collaboration platform hardening for Notion including SAML SSO, workspace security, and data protection controls

Productivity

Okta

AI Drafted

Identity Provider hardening for SSO, MFA policies, and API token security

Identity </> Code Pack

OneLogin

AI Drafted

Identity provider hardening for OneLogin including MFA policies, user security, and SmartFactor Authentication

Identity

Oracle HCM Cloud

AI Drafted

Enterprise HR security for security profiles, HDL controls, and IDCS integration

HR/Finance </> Code Pack

Orca Security

AI Drafted

Cloud security platform hardening for Orca Security including SAML SSO, role-based access, and cloud account integration

Security </> Code Pack

Outreach

AI Drafted

Sales engagement platform hardening for Outreach including SAML SSO, user permissions, and data security

Productivity

PagerDuty

AI Drafted

Incident management platform hardening for PagerDuty including SSO configuration, user provisioning, and access controls

Security

Paylocity

AI Drafted

HCM platform hardening for Paylocity including SAML SSO configuration, MFA enforcement, and role-based access controls

HR/Finance

Pendo

AI Drafted

Product experience platform hardening for Pendo including SAML SSO, subscription access, and data privacy controls

Data

Ping Identity

AI Drafted

Identity federation security for PingFederate, PingOne, and OAuth configurations

Identity </> Code Pack

Postman

AI Drafted

API platform security hardening for Postman Enterprise including SSO, team policies, and API key management

DevOps

Power BI

AI Drafted

Microsoft BI security for tenant settings, gateway credentials, and embed controls

Data </> Code Pack

Proofpoint

AI Drafted

Email security platform hardening for Proofpoint including SAML SSO, admin access controls, and threat protection policies

Security

Qualys

AI Drafted

Vulnerability management platform hardening for Qualys VMDR including user access, scanning configuration, and policy compliance

Security </> Code Pack

Rapid7

AI Drafted

Vulnerability management platform hardening for Rapid7 InsightVM and Command Platform including SSO, console security, and user management

Security

Rippling

AI Drafted

Workforce platform security for app provisioning, device management, and SCIM controls

HR/Finance

SailPoint

AI Drafted

Identity governance security for certification campaigns, source configs, and API access

Identity

Salesforce

AI Drafted

CRM platform security for MFA enforcement, Connected Apps, and Shield Event Monitoring

Marketing </> Code Pack

SAP SuccessFactors

AI Drafted

HCM security for permission groups, integration center, and data protection

HR/Finance </> Code Pack

Twilio Segment

AI Drafted

Customer data platform hardening for Segment including SAML SSO, workspace access, and data governance

Data

SendGrid

AI Drafted

Email delivery platform hardening for Twilio SendGrid including API key management, two-factor authentication, and SSO configuration

Marketing

SentinelOne

AI Drafted

Endpoint Detection and Response (EDR) hardening for SentinelOne Singularity platform

Security

Sentry

AI Drafted

Application monitoring platform hardening for Sentry including SAML SSO, team access, data scrubbing, and integration security

DevOps

ServiceNow

AI Drafted

IT service management platform hardening for ServiceNow including SSO configuration, Security Center, and high-security plugins

Security </> Code Pack

Shopify

AI Drafted

E-commerce platform hardening for Shopify Plus including SAML SSO, staff permissions, and store security

Productivity

Slack

AI Drafted

Enterprise security hardening for Slack workspaces, SSO, DLP, and data governance

Productivity </> Code Pack

Smartsheet

AI Drafted

Work management security for sharing defaults, connector controls, and activity logging

Productivity

Snowflake

AI Drafted

Data warehouse security including network policies, MFA enforcement, and access controls

Data </> Code Pack

Snyk

AI Drafted

AppSec platform security for service accounts, SCM integrations, and Broker configs

Security

Splunk

AI Drafted

SIEM platform hardening for Splunk Cloud including SAML SSO, role-based access control, and data security

Security </> Code Pack

Square (Block)

AI Drafted

Commerce platform hardening for Square including SSO configuration, team permissions, and API security

Productivity

Stripe

AI Drafted

Payment platform hardening for Stripe including SSO configuration, team permissions, and API key security

Productivity </> Code Pack

Tableau

AI Drafted

BI platform security for site roles, data source credentials, and embed controls

Data

Tenable

AI Drafted

Vulnerability management platform hardening for Tenable.io and Security Center including user access, scanning security, and agent configuration

Security

Terraform Cloud

AI Drafted

IaC platform security for workspace variables, team access, and run triggers

DevOps </> Code Pack

Twilio

AI Drafted

Cloud communications platform hardening for Twilio including SSO configuration, account security, and API key management

Marketing

UKG

AI Drafted

HCM platform hardening for UKG Pro including SAML SSO configuration, authentication upgrade features, and access controls

HR/Finance

Vanta

AI Drafted

Compliance automation platform hardening for Vanta including access controls, integration security, and continuous monitoring

Security

Vercel

AI Drafted

Comprehensive platform security for authentication, WAF, deployment protection, secrets, network isolation, security headers, and monitoring

DevOps </> Code Pack

Webex

AI Drafted

Enterprise collaboration hardening for Cisco Webex including meeting security, SSO configuration, and admin controls

Productivity

Wiz

AI Drafted

Cloud security platform hardening for connector security and RBAC controls

Security </> Code Pack

Workato

AI Drafted

Comprehensive security hardening for Workato including SSO, RBAC, encryption key management, API security, secrets management, environment separation, and audit logging

DevOps </> Code Pack

Workday

AI Drafted

HCM platform hardening for security groups, integration security, and domain policies

HR/Finance

Zendesk

AI Drafted

Support platform security for API tokens, app marketplace, and ticket redaction

Productivity

Zoom

AI Drafted

Video conferencing security for meeting policies, recording controls, and app marketplace

Productivity

Zscaler

AI Drafted

Security hardening for Zscaler ZIA, ZPA, and Client Connector deployment

Security </> Code Pack