Launching Multi-Team and Enterprise Readiness Features
July 27th, 2026
Today we’re thrilled to announce a package of critical infrastructure features, from tenant isolation to compliance to identity, that let engineering teams run Hatchet across the entire organization.
Here’s what we’re launching:
Identity & Access
- SSO: You can now connect Okta, Microsoft Entra, OneLogin, JumpCloud, Google, or a generic OIDC provider to set up single sign-on flows to Hatchet.
- SSO Enforcement: You can also now enforce SSO for all sign-ins.
- Tenant Tagging with User Groups: Tag groups and tenants within Hatchet to grant access and visibility across your team.
Isolation & Compliance
- Dedicated Shards: Opt for dedicated infrastructure to run your workloads and pin deployment shards to specific organizations.
- Tenant Region Selection: You can now self-select the region each tenant runs in, meeting your compliance and latency requirements without workarounds.
- Audit Logs API: Pull your audit history into security tooling without manual exports.
Visibility & Operations
- Organization-Level Billing: Your finance team will love this one. We moved billing to the organization level. Now, instead of having a subscription for each tenant, your organization has one subscription and one bill. Also, your engineering team will get unified resource limits and plan history—that’s a win-win!
- Tenant-Scoped Prometheus Metrics: Scrape Prometheus metrics from a tenant to see worker pool capacity, utilization, and headroom without leaving your preferred monitoring setup.
Running Hatchet across multiple teams? Need SSO, audit logs, or dedicated infrastructure? We’d love to chat with you. Book some time with us here.