> For the complete documentation index, see [llms.txt](https://developer.harness.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto.md).

# New to STO?

- [Harness Security Testing Orchestration (STO) Overview](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/overview.md): How STO enables DevOps teams to shift-left security testing.
- [Get Started](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/get-started.md): Get started with STO.
- [Key Concepts](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts.md)
- [Targets, variants, and baselines in STO](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts/targets-and-baselines.md): What to scan - repo/branch, image/tag, app/version, and baseline (root) element.
- [Severity scores and levels in STO](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts/severities.md): How issue severity scores and levels are calculated.
- [Output variables in STO pipeline executions](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts/output-variables.md): Output variables (issues by severity) generated by scan steps.
- [Fail pipelines based on scan results](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts/fail-pipelines-by-severity.md): Fail the pipeline if any issue meets or exceeds the specified severity.
- [Exemptions for specific issues](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts/exemptions.md): You can expempt specific issues from STO failure policies.
- [STO scan modes](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts/sto-workflows-overview.md): Ingest results using orchestration, ingestion, and extraction.
- [Run an Orchestration scan in an STO Pipeline](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts/run-an-orchestrated-scan-in-sto.md): Scan a target and ingest the results in one step.
- [Run an ingestion scan in an STO Pipeline](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts/ingest-scan-results-into-an-sto-pipeline.md): Configure a step to ingest scan results from a data file.
- [Extraction mode for SaaS scan tools](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/key-concepts/extraction-scans.md): Extract and ingest results from SaaS scanners
- [What\`s Supported](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/sto-whats-supported.md)
- [Harness STO Features](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/sto-whats-supported/features.md): List of STO Features
- [Supported Security Scanners](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/sto-whats-supported/scanners.md): Supported scanners in STO
- [Build Infrastructure](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/sto-whats-supported/infrastructure.md): Supported infrastructure for STO
- [Harness STO Deployment Options & Supported Features](https://developer.harness.io/security-testing-orchestration/3.0/new-to-sto/sto-whats-supported/sto-deployments.md): Supported STO deployments
