Runtime Configuration

Updated

September 10, 2026

Harness Security Testing Agent vs Flagsmith | Harness Comparisons | Runtime Configuration

Harness FME adds built-in experimentation, OPA governance, and native CI/CD pipeline integration that Flagsmith's open-source model does not include.

Full platform vs NoneBuilt-in A/B experimentation
Yes vs NoOPA policy enforcement
14 native vs Webhook onlyCI/CD pipeline steps
Built-in vs Enterprise license req.Enterprise RBAC & approvals

Feature Comparison

FeatureHarnessFlagsmith
Platform & Deployment
Managed SaaS offering
Supported
Supported
Self-hosted / On-prem
Supported
SupportedOpen-source; self-hosted is Flagsmith's primary differentiator
Edge API (global CDN delivery)
Partially supported
SupportedFlagsmith Edge API delivers flags from edge nodes globally; <100ms p99 latency
Private cloud / air-gapped
Supported
SupportedAvailable with Enterprise license
Pricing model
SupportedDeveloper-seat based; no per-request billing
Partially supportedRequest-based: Free (50k req/mo), Start-Up ($45/mo / 1M req), Scale-Up, Enterprise
Flag Management
Boolean and multivariate flags
Supported
Supported
Percentage / gradual rollouts
Supported
Supported
User / identity targeting
Supported
Supported
Segment targeting
Supported
Supported
Remote configuration (JSON values)
Partially supported
SupportedFlagsmith's core strength: feature values as remote config alongside flags
Local evaluation mode
SupportedEvaluation inside SDK; no per-evaluation network call
SupportedLocal eval mode improved in 2024 to support identity overrides
Real-time flag updates
Supported
SupportedSSE-based real-time updates available
Scheduled flag changes
Supported
Partially supported
Custom fields on flags
Partially supported
SupportedCustom Fields GA in 2024: mandatory/optional fields on Flag, Environment, Segment
Experimentation
Built-in A/B testing
Supported
Not supportedFlagsmith has no native experimentation or A/B testing engine
Statistical significance testing
Supported
Not supported
Metric / goal tracking
Supported
Not supported
Dimensional / segment analysis
Supported
Not supported
AI experiment summaries
Supported
Not supported
Warehouse-native experimentation
Supported
Not supported
Basic analytics / flag evaluation counts
Partially supported
Partially supportedEvaluation analytics available; not a full product analytics suite
Governance & Compliance
Fine-grained RBAC
Supported
Partially supportedRoles system added 2024; RBAC requires Enterprise license
OPA / Policy-as-Code
Supported
Not supported
Approval workflows
Supported
Not supported
Audit trails
Supported
Partially supportedAvailable on paid plans; Enterprise for full granularity
SSO / SAML
Supported
Partially supportedEnterprise plan only
Git-based flag management
Supported
Not supported
ServiceNow / ITSM change management
Supported
Not supported
Developer Experience
Official SDKs (server + client)
Supported20+ SDKs
Supported15+ SDKs across server, client, mobile, edge
OpenFeature standard support
SupportedFounding member; providers for 10+ languages
SupportedFlagsmith is also an OpenFeature founding member with native providers
MCP tools for AI-assisted IDEs
Supported
Not supported
Native CI/CD pipeline steps
Supported14 pipeline steps in Harness pipelines
Not supported
Jira integration
Supported
SupportedJira integration GA in 2024
Slack / Teams / webhooks
Supported
Supported
Grafana / observability integration
Supported
SupportedGrafana integration added 2024
Sentry / error tracking integration
Partially supported
SupportedSentry integration for flag change correlation
AI & Innovation (2024–2025)
AI experiment summaries
Supported
Not supported
MCP server for AI coding tools
Supported
Not supported
Warehouse-native experimentation
Supported
Not supported
Local evaluation with identity overrides
Supported
SupportedFlagsmith 2024: local eval now works even when using identity overrides
Custom fields on flag entities (2024)
Partially supported
SupportedMandatory/optional metadata fields on flags, environments, segments
SupportedFull supportPartially supportedPartial supportNot supportedNot supported

Key Differentiators

Why teams choose Harness FME over Flagsmith

Harness
Flagsmith

Built-in experimentation platform — Flagsmith has none

Harness

Harness FME includes a complete experimentation platform: A/B and multivariate tests, statistical significance testing, metric goal tracking, dimensional analysis by segment (browser, device, region), and AI-generated summaries that explain results and recommend roll out, roll back, or refinement. Experimentation is a first-class feature, not an afterthought.

Flagsmith

Flagsmith has no native A/B testing or experimentation engine. You can split traffic with percentage rollouts, but there is no statistical significance calculation, no metric goal tracking, and no results dashboard. Teams must integrate a separate analytics platform and run their own analysis — adding tooling, data pipelines, and engineering overhead.

OPA policy enforcement prevents misconfigured flags from reaching production

Harness

Harness FME enforces OPA policies at save time. Rego rules define what constitutes a valid flag change, and the platform blocks violations before they are persisted. This creates enforceable governance that satisfies audit requirements in regulated industries — not just advisory access controls.

Flagsmith

Flagsmith added a Roles-based RBAC system in 2024, but there is no OPA policy-as-code enforcement. Governance relies on access controls — there is no way to define and automatically enforce rules such as 'all production flags must have an owner' or 'flags cannot exceed 50% rollout without an approved experiment.'

14 native CI/CD pipeline steps — progressive delivery without custom scripting

Harness

Harness FME ships 14 native pipeline steps covering the full flag lifecycle within Harness deployment pipelines. Progressive delivery — deploy a service, ramp a flag to 5%, wait, verify metrics, ramp to 100% — is a declarative pipeline configuration, not a custom script.

Flagsmith

Flagsmith provides webhooks for flag change events and a REST API, but has no native CI/CD pipeline integration. Connecting Flagsmith to a deployment pipeline requires custom webhook handlers or scripted API calls — a brittle, bespoke integration that each team builds and maintains independently.

Enterprise governance built-in, not licensed separately

Harness

Harness FME includes fine-grained RBAC, approval workflows, full audit trails, SSO/SAML, and Git-based flags-as-code as core platform features — available to all paid tiers, not only Enterprise customers requiring a separate commercial license.

Flagsmith

Flagsmith's RBAC, SSO, and advanced audit trails are gated behind a paid Enterprise license. Teams on the Start-Up or Scale-Up plans get limited governance capabilities — a significant gap for organizations with change management requirements.

Decision Guide

Flagsmith is good for

  • Remote configuration — storing and serving structured JSON values per environment — is as important as feature flags in your use case
  • Flagsmith's Edge API with global CDN delivery is critical for client-side or mobile SDK latency requirements
  • Your team is self-hosting and the open-source Flagsmith model with full code transparency is a non-negotiable requirement

Harness is best for

  • You need statistical A/B testing and experiment analysis inside your feature flag platform — not wired together from separate tools
  • Compliance requires OPA policy enforcement, approval workflows, or ServiceNow ITSM integration that Flagsmith's Enterprise license does not cover
  • Your deployment pipelines need to control flag rollouts as first-class pipeline steps, not via custom webhook handlers
  • You want AI-powered experiment summaries, dimensional analysis, and warehouse-native experimentation as part of the feature flag workflow
Start for Free

Summary

Flagsmith is a clean, developer-friendly flag and remote config platform. Harness FME is the upgrade path when experimentation and enterprise governance become non-negotiable.

FAQs

More Comparisons

Harness vs

Gremlin

Harness Resilience Testing facilitates collaboration between SREs and developers while automating chaos, load, and disaster recovery testing — beyond Gremlin's manual approach.

Resilience Testing

Compare →

Harness Resilience Testing vs Gremlin
Harness Resilience Testing vs Gremlin

Harness vs

Codefresh

Harness CI delivers AI-powered test intelligence, enterprise governance, and multi-cloud flexibility beyond Codefresh.

Continuous Integration

Compare →

Harness CI vs Codefresh
Harness CI vs Codefresh

Harness vs

Liquibase OSS + DIY

Harness DB DevOps deploys app code and Liquibase changelogs together in a single governed pipeline. Liquibase OSS is a strong migration engine — but the delivery layer around it (governance, orchestration, visibility) is yours to build and maintain.

Database DevOps

Compare →

Harness DB DevOps vs Liquibase OSS + DIY Pipelines
Harness DB DevOps vs Liquibase OSS + DIY Pipelines

Get Started

Get Started with Harness AI

Try the full platform free. No module restrictions, no credit card.