Compliance evidence lives in the tools you already run. TATER reads 76 of them across 17 categories — and for 69 it does more than read: it evaluates configuration against benchmark checks and folds the result into the same posture score as your Microsoft 365 tenant.
IAM, S3, CloudTrail, Config, VPC, GuardDuty - 10 CIS benchmark checks
WAF, SSL/TLS mode, DNSSEC, always-HTTPS, bot protection (5 checks)
Databricks workspace posture - SCIM users, IP access lists, admin sprawl, PAT hygiene (4 checks)
Firewall rules, VPC usage, monitoring, database security (4 checks)
Fastly CDN posture - user 2FA, services, API token sprawl (3 checks)
IAM, audit logging, VPC firewall, storage access, KMS key rotation (7 checks)
HCP Terraform IaC posture - org 2FA enforcement, workspace inventory, auto-apply exposure (3 checks)
Heroku PaaS posture - account 2FA, team inventory, app surface (3 checks)
Linode IaaS posture - profile 2FA, users without 2FA, unrestricted users (3 checks)
Azure subscriptions, resource security, 30+ resource type assessments - 10 checks
MongoDB Atlas database CSPM (org MFA, project IP allowlists, audit)
Netlify site inventory + SSL + deploy posture
Snowflake posture - network policies, SSO/SAML, MFA auth policies, ACCOUNTADMIN sprawl, static passwords (5 checks)
Vercel hosting posture - SAML SSO enforcement, deployment protection, members (3 checks)
Authentication platform - MFA, brute force, bot detection, attack protection (5 checks)
MFA platform - enrollment rate, bypass codes, admin audit, auth policies (5 checks)
Google admin directory - 2FA enrollment, admin audit, security settings (6 checks)
Unified directory - MFA, password policy, system binding, user audit (5 checks)
Azure AD authentication, SSO, MFA, conditional access, identity governance - 12 checks
Enterprise IAM - scan MFA policies, password rules, admin roles, inactive accounts (7 checks)
Cloud IAM - MFA policy, user status, app access, event config (5 checks)
PingOne posture - password policies, sign-on policies, MFA device policies, users (4 checks)
WorkOS enterprise identity - organizations, SSO connections, directory-sync SCIM (3 checks)
Intercom posture - teammates, workspace identity (2 checks)
Adaptive Card notifications to Teams channels
Postmark email posture - sending-domain DKIM/Return-Path, server inventory (2 checks)
SendGrid email posture - teammates, API key scope breadth, account type (3 checks)
Block-kit notifications to Slack channels
Twilio posture - account status + tier, API key rotation age (2 checks)
Grafana observability posture - org, admin count, service-account inventory (3 checks)
LaunchDarkly posture - member MFA, members, access-token sprawl (3 checks)
Incident response + on-call posture (PagerDuty)
PostHog analytics posture - org 2FA enforcement, members, projects (3 checks)
Sentry org posture - 2FA enforcement, data scrubbing, public sharing, members (5 checks)
Slack workspace posture + audit log (read-side companion to notify-only Slack integration)
Forward security events to a Sentinel workspace and query for compliance evidence
Infrastructure monitoring, security analytics, compliance evidence (4 checks)
Send events to Splunk via HTTP Event Collector and query security data (4 checks)
Sumo Logic SIEM posture - SAML/SSO providers, RBAC roles, account plan (3 checks)
Forward audit events via syslog (CEF format) - Sentinel, QRadar, ArcSight, LogRhythm, 15+ SIEMs
HMAC-signed JSON webhook for SIEM/SOAR ingestion
Asana project + audit log evidence
Send compliance events to any webhook endpoint (no native connector required)
Create Jira issues for compliance findings; pull ticket status for evidence (3 checks)
Modern issue tracking - create compliance tasks and scan project health (3 checks)
Create ServiceNow incidents for compliance gaps and pull remediation status (3 checks)
Customer support ticketing-as-evidence + admin posture (Zendesk)
Box posture - enterprise context, managed-user inventory, admin audit-log access (3 checks)
Dropbox Business posture - license use, member status, linked devices, file events (4 checks)
monday.com posture - account tier + seat plan, users, admin + guest exposure (3 checks)
Notion workspace + integration bot inventory
Zoom account posture - sign-in 2FA, password policy, meeting access controls, users (4 checks)
Employee directory - completeness, offboarding, department audit (4 checks)
HR/Payroll - employee validation, company info, payroll status (3 checks)
Workforce platform - worker status, departments, device enrollment (3 checks)
HRIS posture for onboarding/offboarding evidence (Workday)
Repos, pipelines, boards - scan repos and create work items from compliance findings
Git repos - branch restrictions, pipelines, 2FA enforcement (4 checks)
Repos, branch protection, secret scanning, Dependabot, 2FA, CodeQL (8 checks)
DevSecOps - branch protection, pipeline security, 2FA, scanning (6 checks)
Apple MDM - FileVault, OS updates, config profiles, enrollment (5 checks)
Apple MDM - blueprint compliance, library items, device status (4 checks)
Unified endpoint management with device compliance policies - 8 checks
EDR - sensor coverage, detections, prevention policy, vulnerabilities (6 checks)
MDE vulnerability management, device health, threat detection - 8 checks
AI endpoint protection - agent health, threats, policies, updates (6 checks)
Vulnerability management - scan coverage, critical/high vulns, patch compliance (5 checks)
Developer security - dependency vulns, license compliance, fix rates (5 checks)
Nessus scanning - recency, vuln counts, coverage, agent status (5 checks)
HubSpot CRM posture - account tier + data residency, users, super-admin sprawl (3 checks)
CRM posture + connected app inventory (Salesforce)
Meraki dashboard posture - 2FA, login hardening, full-access admin sprawl (4 checks)
ZTNA mesh posture - key expiry, device approval, client updates, ACL (5 checks)
Runbook execution and remediation automation for failing controls
Application security testing posture (Veracode SAST/DAST)
Security awareness - training completion, phishing simulations, risk scores (5 checks)
The catalog grows with what customers actually run. Tell us what you need read, and we will tell you whether it is already on the roadmap.