The Humanitec Platform Orchestrator is a crucial component of an Internal Developer Platform (IDP), serving as its core and orchestrating collaboration between multiple tools. To ensure the security and compliance of the platform, Humanitec prioritizes security measures, including regular pen tests, ISO 27001:2013 certification, and GDPR compliance. The Platform Orchestrator connects to network and clusters through various modes, such as direct connection, Bastion Host, agent-based, or self-hosted options. Secrets are managed using four methods: full SaaS, customer-stored secrets with Drivers hosted at Humanitec, customer-stored secrets with Drivers hosted at the client's servers, or self-hosted. The Humanitec Operator is used to resolve secrets during deployment and can be integrated with GitOps operators like ArgoCD or Flux to minimize access to clusters. By utilizing these security modes, Humanitec offers a comprehensive solution for enterprise security.