Autonomous SaaS license reclamation and spend governance with dry-run execution locks, allowlisting, and zero-trust credential isolation.
SeatPrune is an enterprise-grade autonomous SaaS license reclamation and spend governance system. It identifies inactive user licenses across GitHub Enterprise, GitHub Copilot, and Slack, calculates wasted spend, dispatches check-in alerts, and executes safe seat revocations.
seatprune prune, execute_reclamation) default to --dry-run = True. Destructive modifications require explicit --no-dry-run flags.SEATPRUNE_ALLOWLIST.allowlist_protected audit events.GITHUB_TOKEN, SLACK_WEBHOOK_URL) are read strictly from process environment variables via Pydantic Settings.admin:org read, manage_billing:copilot).seatprune://audit/latest) for SIEM ingestion.SEATPRUNE_ALLOWLIST contains all service accounts, bots, and executive emails.
GITHUB_TOKEN is issued with minimal necessary OAuth/PAT permissions.
seatprune prune --dry-run.