{"id":34441,"date":"2026-03-02T20:08:25","date_gmt":"2026-03-02T19:08:25","guid":{"rendered":"https:\/\/www.hakoit.com\/?p=34441"},"modified":"2026-04-23T00:06:14","modified_gmt":"2026-04-22T22:06:14","slug":"power-apps-security-best-practices","status":"publish","type":"post","link":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/","title":{"rendered":"Power Apps Security Best Practices \u2014 Permissions, Roles &#038; Data Protection (2026)"},"content":{"rendered":"<p>[et_pb_section fb_built=\u00bb1&#8243; _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb da_disable_devices=\u00bboff|off|off\u00bb global_colors_info=\u00bb{}\u00bb da_is_popup=\u00bboff\u00bb da_exit_intent=\u00bboff\u00bb da_has_close=\u00bbon\u00bb da_alt_close=\u00bboff\u00bb da_dark_close=\u00bboff\u00bb da_not_modal=\u00bbon\u00bb da_is_singular=\u00bboff\u00bb da_with_loader=\u00bboff\u00bb da_has_shadow=\u00bbon\u00bb][et_pb_row _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_column type=\u00bb4_4&#8243; _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_text _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<p><strong>Is your data at risk?.<\/strong> Discover the following <strong>Power Apps Security Best Practices<\/strong> to bulletproof your Power Apps now!.<\/p>\n<p><strong>Power Apps<\/strong> is a powerful tool that allows businesses to build custom applications with ease. However, with great power comes the responsibility of securing sensitive data and protecting applications from vulnerabilities.<br \/>This article dives into the <em>Power Apps Security Best Practices<\/em>, helping you protect your environment from vulnerabilities while ensuring that your apps operate smoothly and securely.<br \/>Ready to become a security superhero? Let&#8217;s safeguard your Power Apps before it&#8217;s too late!<\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=\u00bb4.27.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Understand Power Platform Security Best Practices<\/h2>\n<p>Power Apps is part of a larger family called the Microsoft Power Platform. To be fully safe, you must look at the big picture. Following <b>Microsoft Power Platform security best practices<\/b> helps protect your data across all tools, not just your apps.<\/p>\n<p>By using these <b>Power Platform security best practices<\/b>, you ensure that your Connectors, Automate flows, and Virtual Agents are just as secure as your apps. Good <b>Power Platform best practices<\/b> start with securing the environment where your apps live.<\/p>\n<p>[\/et_pb_text][et_pb_code _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<div class=\"pas-glass-container\"><!-- [et_pb_line_break_holder] -->    <\/p>\n<style><!-- [et_pb_line_break_holder] -->        .pas-glass-container {<!-- [et_pb_line_break_holder] -->            padding: 30px;<!-- [et_pb_line_break_holder] -->            margin: 20px 0;<!-- [et_pb_line_break_holder] -->        }<!-- [et_pb_line_break_holder] -->        .pas-glass-container .pas-inner {<!-- [et_pb_line_break_holder] -->            background: rgba(255, 255, 255, 0.25);<!-- [et_pb_line_break_holder] -->            backdrop-filter: blur(10px);<!-- [et_pb_line_break_holder] -->            -webkit-backdrop-filter: blur(10px);<!-- [et_pb_line_break_holder] -->            border-radius: 10px;<!-- [et_pb_line_break_holder] -->            border: 1px solid rgba(255, 255, 255, 0.18);<!-- [et_pb_line_break_holder] -->            padding: 30px;<!-- [et_pb_line_break_holder] -->            width: 100%;<!-- [et_pb_line_break_holder] -->            box-shadow: 0 8px 32px 0 rgba(31, 38, 135, 0.37);<!-- [et_pb_line_break_holder] -->            margin: 0 auto;<!-- [et_pb_line_break_holder] -->        }<!-- [et_pb_line_break_holder] -->        .pas-glass-container h2 {<!-- [et_pb_line_break_holder] -->            color: #333;<!-- [et_pb_line_break_holder] -->            margin-bottom: 20px;<!-- [et_pb_line_break_holder] -->            font-size: 24px;<!-- [et_pb_line_break_holder] -->            font-weight: bold;<!-- [et_pb_line_break_holder] -->        }<!-- [et_pb_line_break_holder] -->        .pas-glass-container ul {<!-- [et_pb_line_break_holder] -->            list-style-type: none;<!-- [et_pb_line_break_holder] -->            padding: 0;<!-- [et_pb_line_break_holder] -->            margin: 0;<!-- [et_pb_line_break_holder] -->        }<!-- [et_pb_line_break_holder] -->        .pas-glass-container li {<!-- [et_pb_line_break_holder] -->            margin-bottom: 15px;<!-- [et_pb_line_break_holder] -->            color: #444;<!-- [et_pb_line_break_holder] -->            font-size: 16px;<!-- [et_pb_line_break_holder] -->            line-height: 1.5;<!-- [et_pb_line_break_holder] -->            padding-left: 20px;<!-- [et_pb_line_break_holder] -->            position: relative;<!-- [et_pb_line_break_holder] -->        }<!-- [et_pb_line_break_holder] -->    <\/style>\n<p><!-- [et_pb_line_break_holder] -->    <\/p>\n<div class=\"pas-inner\"><!-- [et_pb_line_break_holder] -->        <\/p>\n<h2>Power Apps Security Best Practices: Key Takeaways<\/h2>\n<p><!-- [et_pb_line_break_holder] -->        <\/p>\n<ul><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Enable Multi-Factor Authentication (MFA) to add an extra layer of security beyond passwords.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Implement environment-level security to isolate resources based on purpose and intended users.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Use Role-Based Access Control (RBAC) to restrict access based on user roles within the organization.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Secure data storage and transmission using encryption protocols like TLS for data in transit and at rest.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Apply Data Loss Prevention (DLP) policies to monitor and restrict the sharing of sensitive information.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Follow the Least Privilege Principle, granting users only the minimal access required for their jobs.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Regularly monitor and audit activity using tools like Azure Monitor, Dataverse auditing, and Microsoft 365 Compliance Center.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Keep systems updated by applying security patches promptly and staying informed about the latest updates.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Limit the use of custom code to reduce potential security vulnerabilities.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Educate users on security best practices, including password hygiene and phishing awareness.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Use data validation and input controls to prevent harmful data from compromising your Power Apps.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Ensure security in Power Automate flows by limiting access to sensitive data and using secure connectors.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Consider using Dataverse for enhanced security features, especially for complex data privacy needs.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Implement backups and disaster recovery strategies to ensure data can be restored in case of security breaches.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Document and regularly review security policies to keep your organization prepared for evolving threats.<\/li>\n<p><!-- [et_pb_line_break_holder] -->            <\/p>\n<li>Develop and maintain an Incident Response Plan to effectively handle potential security breaches.<\/li>\n<p><!-- [et_pb_line_break_holder] -->        <\/ul>\n<p><!-- [et_pb_line_break_holder] -->    <\/div>\n<p><!-- [et_pb_line_break_holder] --><\/div>\n<p>[\/et_pb_code][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_column type=\u00bb4_4&#8243; _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_text admin_label=\u00bb2- MFA\u00bb _builder_version=\u00bb4.27.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Enable Multi-Factor Authentication (MFA)<\/h2>\n<p>Relying solely on passwords is risky. By enabling multi-factor authentication (MFA), you add an additional layer of security. Users must provide two or more forms of identification\u2014such as a password and a verification code sent to their phone\u2014before accessing Power Apps.<\/p>\n<ul>\n<li><strong>Why MFA is Crucial:<\/strong><br \/>Passwords can be easily compromised, but MFA ensures that even if a password is stolen, unauthorized access is still prevented. Using Azure Active Directory for identity verification strengthens overall security.<\/li>\n<li><em><strong>TIP:<\/strong><\/em> Set up MFA using mobile apps like Microsoft Authenticator for a seamless experience. #Microsoft Entra<\/li>\n<\/ul>\n<h3><b>Choosing the Right Authentication<\/b><\/h3>\n<p>Setting up strong <b>Power Apps authentication<\/b> is the first step to stopping hackers. You should not rely on just one way to log in. Using modern <b>Power Apps authentication methods<\/b> like Multi-Factor Authentication (MFA) creates a strong barrier. This ensures that only the right people can get into your business data.<\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb hover_enabled=\u00bb0&#8243; sticky_enabled=\u00bb0&#8243;]<\/p>\n<div class=\"stat-card\" style=\"background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);; border-radius: 12px; padding: 24px; margin: 32px 0; box-shadow: 0 4px 6px rgba(0,0,0,0.1);\">\n<div style=\"display: flex; align-items: center; gap: 16px; margin-bottom: 16px;\">\n<div style=\"color: white; font-size: 14px; font-weight: 600; text-transform: uppercase; letter-spacing: 1px;\"> Did you know&#8230;? <\/div>\n<\/p><\/div>\n<div style=\"color: white; font-size: 20px; font-weight: 700; line-height: 1.4; margin-bottom: 12px;\"> Multi-Factor Authentication (MFA) can prevent over 99.9% of account compromise attacks by adding an extra layer of identity verification. <\/div>\n<div style=\"color: rgba(255,255,255,0.9); font-size: 14px;\"> Source: <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2019\/08\/20\/one-simple-action-you-can-take-to-prevent-more-than-99-percent-of-account-compromise-attacks\/\" rel=\"nofollow noopener\" target=\"_blank\" style=\"color: white; text-decoration: underline;\"> Microsoft Security Blog <\/a> <\/div>\n<\/p><\/div>\n<p>[\/et_pb_text][et_pb_text _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Microsoft Entra ID Integration<\/h2>\n<p>Power Apps integrates natively with Microsoft Entra ID (formerly Azure AD). Security best practices:<\/p>\n<ul>\n<li>Enable <strong>Conditional Access policies<\/strong> to require MFA for Power Apps access from unmanaged or personal devices.<\/li>\n<li>Use <strong>Entra security groups<\/strong> to manage app sharing \u2014 adding or removing a user from the group automatically grants or revokes access to all shared apps.<\/li>\n<li>Enable <strong>Privileged Identity Management (PIM)<\/strong> for Environment Admin roles to require approval and time-limit elevated access.<\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text admin_label=\u00bbUse Environment-Level Security\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Use Environment-Level Security<\/h2>\n<p>Power Apps environments are a best practice for Power Apps security, as they help isolate resources and applications based on their purpose. A <strong>Power Platform environment<\/strong> is a container for your organization&#8217;s business solutions. It stores and manages data, apps, chatbots, and flows, while allowing separation based on roles, security needs, or intended users.<\/p>\n<ul>\n<li><em><strong>TIP:<\/strong><\/em> Implement environment-level security to ensure that development, testing, and production environments are separate. This segregation reduces the likelihood of accidental data exposure or unintended access between environments.<\/li>\n<li>More info (see <span style=\"text-decoration: underline;\">Microsoft<\/span> environments image below): <a href=\"https:\/\/learn.microsoft.com\/en-us\/power-platform\/admin\/environments-overview\" target=\"_blank\" rel=\"noopener\">Link<\/a><\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_image src=\u00bbhttps:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/10\/power-apps-environments.png\u00bb alt=\u00bbPower Apps Security &#8211; Environments\u00bb title_text=\u00bbPower Apps Security &#8211; Environments\u00bb url=\u00bbhttps:\/\/learn.microsoft.com\/en-us\/power-platform\/admin\/environments-overview\u00bb url_new_window=\u00bbon\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_image][et_pb_text _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Environment Strategy for Security<\/h2>\n<p>The single most impactful security decision in Power Platform is your environment structure:<\/p>\n<ul>\n<li>Never deploy production apps to the default environment \u2014 it has no DLP policy by default and every licensed user is automatically an Environment Maker.<\/li>\n<li>Use separate environments for Development, Testing, and Production.<\/li>\n<li>Apply the most restrictive DLP policies to any environment that touches production data.<\/li>\n<li>Use environment-level security groups to control who can even see each environment.<\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Power Apps Roles and Permissions<\/h2>\n<p>Power Apps uses three layers of permissions you need to configure for every production app:<\/p>\n<ul>\n<li><strong>Environment roles:<\/strong> Environment Admin, Environment Maker, and basic user. These control who can create and manage apps within a given environment.<\/li>\n<li><strong>App-level sharing:<\/strong> Each canvas app is shared explicitly with individuals, security groups, or the whole organisation. Always share with security groups \u2014 not individuals \u2014 to make access management scalable.<\/li>\n<li><strong>Data source permissions:<\/strong> Access to the underlying data (SharePoint, Dataverse, SQL) must be granted separately from app access. A user with the app shared but no data permission will see blank screens.<\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text admin_label=\u00bb1 RBAC\u00bb _builder_version=\u00bb4.27.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Implement Role-Based Access Control (RBAC)<\/h2>\n<p><strong>Role-Based Access Control<\/strong> is one of the most fundamental security measures. With RBAC, you can restrict access to users based on their roles within the organization. For example, a financial team member might need access to certain data that an HR team member should not see.<\/p>\n<ul>\n<li><strong>Why RBAC Matters:<\/strong><br \/>By segmenting access, you reduce the chances of sensitive data being viewed or modified by the wrong people. This ensures that each user only interacts with the information that is necessary for their role.<\/li>\n<li><em><strong>Tip:<\/strong><\/em> Regularly review and update roles to align with changes in user responsibilities.<\/li>\n<li>More info: <a href=\"https:\/\/learn.microsoft.com\/en-us\/power-platform\/admin\/security-roles-privileges\" target=\"_blank\" rel=\"noopener\">Link<\/a><\/li>\n<\/ul>\n<h3><b>Managing Access Control<\/b><\/h3>\n<p>Giving everyone the same permission is dangerous. You should use <b>Power Apps access control<\/b> to limit what users can do. By setting up specific <b>Power Apps security roles<\/b>, you can define exactly who can read, write, or delete data. This keeps your sensitive information safe from accidental changes.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row column_structure=\u00bb1_5,3_5,1_5&#8243; _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb locked=\u00bboff\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_column type=\u00bb1_5&#8243; _builder_version=\u00bb4.21.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_column][et_pb_column type=\u00bb3_5&#8243; _builder_version=\u00bb4.21.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_text _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2 style=\"text-align: center;\">Microsoft Azure Role-Based Access Control (RBAC)<\/h2>\n<p>[\/et_pb_text][et_pb_video src=\u00bbhttps:\/\/youtu.be\/I1mefHptRgo\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_video][\/et_pb_column][et_pb_column type=\u00bb1_5&#8243; _builder_version=\u00bb4.21.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_column type=\u00bb4_4&#8243; _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_text admin_label=\u00bbSecure Data Storage and Transmission\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Secure Data Storage and Transmission<\/h2>\n<p>Ensuring that data is securely stored and transmitted is critical. Power Apps often interact with other platforms like SharePoint or SQL Server, and it is essential that all data transfers are encrypted using HTTPS.<\/p>\n<p><strong>Data Encryption Best Practices:<\/strong><\/p>\n<ul>\n<li>Use encryption protocols such as TLS to protect data in transit.<\/li>\n<li>Ensure that any sensitive data stored in databases is encrypted at rest.<\/li>\n<li><em><strong>Tip: <\/strong><\/em>Implementing these practices keeps information safe from cyber threats during transmission and storage.<\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text admin_label=\u00bbservicio \u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<blockquote>\n<p><strong>Insight:<\/strong> Our <a href=\"https:\/\/www.hakoit.com\/en\/power-apps-consulting-services\/\" target=\"_blank\" rel=\"noopener\">Power Apps consulting services<\/a> can fine-tune the development of customizable apps to align with your business goals.<\/p>\n<\/blockquote>\n<p>[\/et_pb_text][et_pb_text admin_label=\u00bbApply Data Loss Prevention (DLP) Policies\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Apply Data Loss Prevention (DLP) Policies<\/h2>\n<p>Data loss prevention (DLP) policies can help monitor and restrict the sharing of sensitive information. By setting up DLP rules, organizations can ensure that confidential data isn&#8217;t inadvertently shared or leaked.<\/p>\n<h3>Steps for Implementing DLP:<\/h3>\n<ul>\n<li>Define rules for detecting and handling sensitive data.<\/li>\n<li>Use <a href=\"https:\/\/www.hakoit.com\/en\/what-is-power-platform\/\" target=\"_blank\" rel=\"noopener\">Power Platform<\/a>\u2019s DLP tools to block unauthorized data transfers.<\/li>\n<li><strong><a href=\"https:\/\/www.hakoit.com\/en\/power-apps-consulting-services\/\">HakoIT<\/a>&#8216;s Recommendation<\/strong>: Review and update DLP policies as your organization\u2019s data handling needs evolve.<\/li>\n<li>More info: <a href=\"https:\/\/learn.microsoft.com\/en-us\/power-platform\/admin\/prevent-data-loss\" target=\"_blank\" rel=\"noopener nofollow\">Link<\/a><\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h3>Comprehensive Power Apps Security Best Practices<\/h3>\n<p>[\/et_pb_text][et_pb_image src=\u00bbhttps:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/10\/power-apps-security-best-practices-hako-it-1.jpg\u00bb alt=\u00bbPower Apps Security Best Practices\u00bb title_text=\u00bbPower Apps Security Best Practices\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_image][et_pb_text admin_label=\u00bb6. The Least Privilege Principle\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>The Least Privilege Principle<\/h2>\n<p>The \u00abLeast Privilege\u00bb principle dictates that users should only be given the minimal level of access required to perform their jobs. Granting broad access increases the risk of accidental data breaches.<\/p>\n<ul>\n<li><strong>Example:<\/strong><br \/>A project manager may need access to financial data for reporting purposes, but they shouldn&#8217;t have the ability to modify it. Limiting privileges reduces security risks while ensuring operational efficiency.<\/li>\n<li><strong>Best Practice<\/strong>: Regularly audit and adjust permissions to prevent privilege creep.<\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Power Apps Data Loss Prevention (DLP) Policies<\/h2>\n<p>DLP policies control which connectors can be combined in a single app or flow. They are configured at environment or tenant level by an administrator in the Power Platform Admin Center.<\/p>\n<ul>\n<li>Classify all connectors as <strong>Business<\/strong>, <strong>Non-Business<\/strong>, or <strong>Blocked<\/strong>.<\/li>\n<li>Business and Non-Business connectors cannot share data in the same app \u2014 this prevents business data from being sent to personal services.<\/li>\n<li>Apply stricter DLP in production environments; allow broader connector access in development environments.<\/li>\n<li>Review and update DLP policies whenever Microsoft releases new connectors.<\/li>\n<\/ul>\n<p>[\/et_pb_text][et_pb_text _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb hover_enabled=\u00bb0&#8243; sticky_enabled=\u00bb0&#8243;]<\/p>\n<div class=\"stat-card\" style=\"background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);; border-radius: 12px; padding: 24px; margin: 32px 0; box-shadow: 0 4px 6px rgba(0,0,0,0.1);\">\n<div style=\"display: flex; align-items: center; gap: 16px; margin-bottom: 16px;\">\n<div style=\"color: white; font-size: 14px; font-weight: 600; text-transform: uppercase; letter-spacing: 1px;\"> Did you know&#8230;? <\/div>\n<\/p><\/div>\n<div style=\"color: white; font-size: 20px; font-weight: 700; line-height: 1.4; margin-bottom: 12px;\"> Data Loss Prevention (DLP) policies in Power Platform act as guardrails, preventing users from accidentally sharing sensitive business data with unauthorized external services. <\/div>\n<div style=\"color: rgba(255,255,255,0.9); font-size: 14px;\"> Source: <a href=\"https:\/\/learn.microsoft.com\/en-us\/power-platform\/admin\/prevent-data-loss\" rel=\"nofollow noopener\" target=\"_blank\" style=\"color: white; text-decoration: underline;\"> Microsoft Learn <\/a> <\/div>\n<\/p><\/div>\n<p>[\/et_pb_text][et_pb_text admin_label=\u00bbRegularly Monitor and Audit activity\u00bb _builder_version=\u00bb4.27.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Regularly Monitor and Audit activity<\/h2>\n<p>Implementing monitoring and auditing tools allows organizations to track user activities within Power Apps. This is essential for identifying unusual or suspicious behavior, such as unauthorized access attempts or data modifications.<\/p>\n<h3>Auditing Tools to Use with Power Apps:<\/h3>\n<ul>\n<li><a href=\"https:\/\/www.hakoit.com\/en\/tips-for-troubleshooting-power-apps-and-optimization\/\">Application Insights<\/a> \/ Azure Monitor<\/li>\n<li><a href=\"https:\/\/www.hakoit.com\/en\/tips-for-troubleshooting-power-apps-and-optimization\/\">Power Apps Monitor<\/a><\/li>\n<li>Dataverse auditing. <a href=\"https:\/\/learn.microsoft.com\/en-us\/power-apps\/developer\/data-platform\/auditing\/overview\" target=\"_blank\" rel=\"noopener nofollow\">Link<\/a><\/li>\n<li>Microsoft 365 Compliance Center<\/li>\n<\/ul>\n<p>These tools help administrators track access logs, identify potential security breaches, and ensure compliance with security policies.<\/p>\n<h3>Running a Security Audit<\/h3>\n<p>You cannot fix what you do not see. Running a regular <b>Power Platform security audit<\/b> helps you find weak spots. This audit looks at user logs and app usage to spot weird behavior. A good <b>Power Platform security audit<\/b> will tell you exactly which files were opened and who opened them.<\/p>\n<p>[\/et_pb_text][et_pb_image src=\u00bbhttps:\/\/www.hakoit.com\/wp-content\/uploads\/2023\/05\/powerapps-monitor-tool-app-debug.jpg\u00bb alt=\u00bbPower Apps Monitor tool &#8211; App debug\u00bb title_text=\u00bbPower Apps Monitor tool &#8211; App debug\u00bb url=\u00bbhttps:\/\/www.hakoit.com\/en\/tips-for-troubleshooting-power-apps-and-optimization\/\u00bb url_new_window=\u00bbon\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_image][et_pb_text admin_label=\u00bbKeep Systems Updated\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Keep Systems Updated<\/h2>\n<p>Power Apps, like any other software, require regular updates to patch known vulnerabilities. Failing to keep systems up to date leaves organizations vulnerable to new threats.<\/p>\n<h3>Key Security Updates:<\/h3>\n<ul>\n<li>Apply all security patches as soon as they are available.<\/li>\n<li>Stay informed about the latest updates to the <a href=\"https:\/\/www.hakoit.com\/en\/what-is-power-platform\/\" target=\"_blank\" rel=\"noopener\">Power Platform<\/a> by following Microsoft&#8217;s official security announcements. We publish all the news in <a href=\"https:\/\/www.linkedin.com\/company\/hako-it\/\" target=\"_blank\" rel=\"noopener\">LinkedIn, Follow us.<\/a><\/li>\n<\/ul>\n<p><strong>Power Apps Security Best Practices &#8211; Pro Tip:<\/strong> Republish Regularly<br \/>Keep your apps up-to-date by republishing often. This simple step:<\/p>\n<ul>\n<li>Updates features<\/li>\n<li>Boosts performance<\/li>\n<li>Ensures your App is on the latest version of Power Apps.<\/li>\n<\/ul>\n<p><strong>Haven&#8217;t published in months?<\/strong> You might see instant improvements. <strong>So hit that publish button today!<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>[\/et_pb_text][et_pb_code admin_label=\u00bbAdsApps\u00bb _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb locked=\u00bboff\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<div id=\"adsHakoITpowerApps\"><a href=\"https:\/\/www.hakoit.com\/en\/services\/power-apps\/\" target=\"_blank\" rel=\"noopener\"><!-- [et_pb_line_break_holder] --><img decoding=\"async\" class=\"aligncenter\" title=\"CREATE YOUR APP\" src=\"https:\/\/www.hakoit.com\/wp-content\/uploads\/2022\/05\/Power-Apps-Consulting.jpg\" alt=\"CREATE YOUR APP\" width=\"auto\" height=\"auto\" \/><!-- [et_pb_line_break_holder] --><\/a><\/div>\n<p>[\/et_pb_code][et_pb_text admin_label=\u00bbLimit the Use of Custom Code\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Limit the Use of Custom Code<\/h2>\n<p>Power Apps supports custom code through Power Automate flows and connectors. While custom code can enhance functionality, it also introduces security risks.<\/p>\n<p><strong>Example<\/strong>: Limit the <strong>use of <a href=\"https:\/\/www.hakoit.com\/en\/how-to-create-a-custom-connector-in-powerapps-api-complete-guide\/\">Custom Connectors<\/a><\/strong> to trusted and verified sources. Additionally, regularly <strong>review any custom code<\/strong> for potential security vulnerabilities. Keeping the customizations minimal and secure reduces the attack surface of your applications.<\/p>\n<p>[\/et_pb_text][et_pb_text admin_label=\u00bb10. Educating Users on Security Best Practices\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Educating Users on Security Best Practices<\/h2>\n<p>User education plays a pivotal role in securing Power Apps. By training employees on secure password practices, phishing threats, and proper data handling, organizations can significantly reduce security risks.<\/p>\n<h3>Key Training Topics:<\/h3>\n<ul>\n<li>Password hygiene: Encourage the use of strong, unique passwords.<\/li>\n<li>Phishing awareness: Teach users how to recognize and avoid phishing attacks.<\/li>\n<li><em><strong>TIP:<\/strong><\/em> Implementing regular training sessions ensures a security-conscious culture within your organization.<\/li>\n<\/ul>\n<blockquote>\n<p><strong>Explore impactful Power Apps Ideas &amp; Use Cases:<\/strong> <a href=\"https:\/\/www.hakoit.com\/en\/20-power-apps-examples-and-use-cases-to-boost-your-business\/\" target=\"_blank\" rel=\"noopener\">Link Here<\/a>.<\/p>\n<\/blockquote>\n<p>[\/et_pb_text][et_pb_text admin_label=\u00bb11. Use Data Validation and Input Controls\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>6 Additional Essential Power Apps Security Best Practices You Might Be Missing<\/h2>\n<h2>Use Data Validation and Input Controls<\/h2>\n<p>Proper input <strong>validation<\/strong> ensures that data entering your system is secure and doesn\u2019t introduce <strong>vulnerabilities<\/strong>, such as SQL injection attacks.<br \/><strong>Use validation rules<\/strong>, input controls and it&#8217;s important to follow secure coding practices to prevent harmful data from compromising your Power Apps.<\/p>\n<p><strong>Expert TIP:<\/strong><\/p>\n<ul>\n<li>Always sanitize and validate user inputs to protect against malicious activity.<\/li>\n<li>Avoid hardcoding sensitive information, such as credentials, within the app.<\/li>\n<\/ul>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row column_structure=\u00bb3_5,2_5&#8243; _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_column type=\u00bb3_5&#8243; _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_text admin_label=\u00bb12. Security in Power Automate Flows\u00bb _builder_version=\u00bb4.27.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Security in Power Automate Flows<\/h2>\n<p>Power Automate flows are often used in conjunction with Power Apps to automate business processes. However, these flows can introduce security risks if not properly managed.<br \/>Following <strong>best practices for Power Automate flows<\/strong>, such as limiting access to sensitive data and using secure connectors, helps mitigate these risks.<\/p>\n<ul>\n<li><strong>TIP:<\/strong> Automating processes is powerful, but ensuring that these automations are secure is essential for maintaining the overall security of your Power Apps environment.<\/li>\n<\/ul>\n<blockquote>\n<p><b>Don&#8217;t Forget Power Automate<\/b> Your apps often talk to other services using workflows. It is important to follow <b>Power Automate security best practices<\/b> specifically for these connections. If a workflow is not secure, it can leak data even if the app itself is safe. Reviewing who can run flows and what data they can touch is a key part of these <b>Power Automate security best practices<\/b>.<\/p>\n<\/blockquote>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=\u00bb2_5&#8243; _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_image src=\u00bbhttps:\/\/www.hakoit.com\/wp-content\/uploads\/2022\/12\/powerautomate-logo.png\u00bb title_text=\u00bbpowerautomate-logo\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb custom_margin=\u00bb2vh||||false|false\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_image][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_column type=\u00bb4_4&#8243; _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_text admin_label=\u00bb13. Use Dataverse for Enhanced Security\u00bb _builder_version=\u00bb4.27.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Use Dataverse for Enhanced Security<\/h2>\n<p>Microsoft Dataverse offers robust security features that are especially beneficial for organizations with complex data privacy needs. It provides advanced encryption and detailed control over data access.<\/p>\n<h3>Dataverse Benefits:<\/h3>\n<ul>\n<li>Fine-grained security control<\/li>\n<li>Superior encryption standards<\/li>\n<li>For organizations managing sensitive data, integrating Dataverse can significantly enhance overall security.<\/li>\n<\/ul>\n<h3 data-path-to-node=\"24\"><b>Dataverse Security Tips<\/b><\/h3>\n<p data-path-to-node=\"24\">If you use Dataverse to store your data, you have extra security options. One of the top <b>dataverse security best practices<\/b> is to use \u00abField Level Security.\u00bb This lets you hide specific columns of data, like salaries or ID numbers, even if the user has access to the rest of the table.<\/p>\n<p>[\/et_pb_text][et_pb_image src=\u00bbhttps:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/10\/Power-Apps-Security-Dataverse.jpg\u00bb alt=\u00bbPower Apps Security Dataverse\u00bb title_text=\u00bbPower Apps Security Best Practices &#8211; 4&#8243; _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_image][et_pb_text admin_label=\u00bb14. Backups and Disaster Recovery in Power Apps\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Backups and Disaster Recovery in Power Apps<\/h2>\n<p>Even with the best security measures in place, it&#8217;s important to<strong> plan for the worst<\/strong>. Implementing <strong>backups and disaster recovery strategies<\/strong> ensures that your data can be restored in the event of a security breach or system failure.<br \/><strong>Tip:<\/strong> By having a disaster recovery plan in place, you can minimize downtime and ensure that your business continues to operate smoothly, even in the face of security incidents.<\/p>\n<p>[\/et_pb_text][et_pb_text admin_label=\u00bb15. Document and Review Security Policies\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Document and Review Security Policies<\/h2>\n<p>Documenting security measures ensures clarity within your team. Regularly reviewing and updating these policies keeps your organization prepared for evolving security threats.<\/p>\n<p><em><strong>Tip:<\/strong> <\/em>Keep all security documentation up-to-date and accessible to relevant team members for easy reference.<\/p>\n<p>[\/et_pb_text][et_pb_text admin_label=\u00bb16. Incident Response Plans\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Incident Response Plans<\/h2>\n<p>No matter how <strong>secure your Power Apps environment<\/strong> is, it&#8217;s important to have an <strong>Incident Response Plan<\/strong> in place. This plan outlines the steps to take in the event of a security breach, helping you respond quickly and effectively.<\/p>\n<p><strong>TIP:<\/strong> By having a plan in place, you can minimize the impact of security incidents and ensure a swift recovery.<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_column type=\u00bb4_4&#8243; _builder_version=\u00bb4.23.1&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_text admin_label=\u00bbFAQ\u00bb _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2><strong>Power Apps Security Best Practices &#8211; Frequently Asked Questions (FAQs)<\/strong><\/h2>\n<h3>How do I restrict who can create Power Apps in my organisation?<\/h3>\n<p>Remove the Environment Maker role from the default environment for all users. Create a dedicated maker environment with controlled membership, and manage environment-level roles via the Power Platform Admin Center.<\/p>\n<h3>Can Power Apps access be restricted to specific devices?<\/h3>\n<p>Yes. Use Microsoft Entra ID Conditional Access policies to require compliant or Entra-joined devices before users can access Power Apps.<\/p>\n<h3>What is Role-Based Access Control (RBAC) in Power Apps?<\/h3>\n<p>RBAC limits user access based on their role, ensuring that users only interact with data relevant to their job.<\/p>\n<h3>How does Multi-Factor Authentication (MFA) secure Power Apps?<\/h3>\n<p>MFA adds an extra layer of security by requiring multiple forms of verification before granting access.<\/p>\n<h3>Why is data encryption important in Power Apps?<\/h3>\n<p>Encryption protects data both during transmission and when stored, preventing unauthorized access to sensitive information.<\/p>\n<h3>What is the \u00abLeast Privilege\u00bb principle?<\/h3>\n<p>This principle restricts users&#8217; access to the minimum required to perform their tasks, reducing potential security risks.<\/p>\n<h3>How can I monitor user activity in Power Apps?<\/h3>\n<p>You can use tools like Application Insights (Azure Monitor) and auditing features in Power Apps like Power Apps Monitor to track and analyze user activity.<\/p>\n<h3>What are the best practices for securing Power Apps?<\/h3>\n<p>The best practices include implementing role-based access control, using multi-factor authentication, encrypting data, and regularly auditing user activity.<\/p>\n<h3>How can I prevent data loss in Power Apps?<\/h3>\n<p>Implement Data Loss Prevention (DLP) policies to control how sensitive data is shared and transmitted.<\/p>\n<h3>How can I secure custom connectors in Power Apps?<\/h3>\n<p>Limit the use of custom connectors to trusted sources and ensure secure authentication methods, like OAuth, are in place.<\/p>\n<h3>What should I do if a security breach occurs in Power Apps?<\/h3>\n<p>Having an incident response plan is crucial. This plan should include steps for containing the breach, assessing the damage, and restoring security.<\/p>\n<p>More information: <a href=\"https:\/\/learn.microsoft.com\/en-us\/power-platform\/admin\/security\/faqs\" target=\"_blank\" rel=\"noopener nofollow\">Link<\/a><\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=\u00bb4.27.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2><b>Quick Summary<\/b><\/h2>\n<p>Looking for a fast way to improve? Here is a summary of <b>power apps tips, tricks, and best practices<\/b> to remember:<\/p>\n<ul>\n<li>\nAlways update your apps.\n<\/li>\n<li>\nCheck your connector settings.\n<\/li>\n<li>\nTrain your team on phishing.\n<\/li>\n<\/ul>\n<p>Following these <b>power apps tips, tricks, and best practices<\/b> will keep your environment healthy and secure.<\/p>\n<p>[\/et_pb_text][et_pb_code admin_label=\u00bbFAQ Google\u00bb _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<script type=\"application\/ld+json\"><!-- [et_pb_line_break_holder] -->{<!-- [et_pb_line_break_holder] -->  \"@context\": \"https:\/\/schema.org\",<!-- [et_pb_line_break_holder] -->  \"@type\": \"FAQPage\",<!-- [et_pb_line_break_holder] -->  \"mainEntity\": [{<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"What is Role-Based Access Control (RBAC) in Power Apps?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"RBAC limits user access based on their role, ensuring that users only interact with data relevant to their job.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"How does Multi-Factor Authentication (MFA) secure Power Apps?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"MFA adds an extra layer of security by requiring multiple forms of verification before granting access.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"Why is data encryption important in Power Apps?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"Encryption protects data both during transmission and when stored, preventing unauthorized access to sensitive information.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"What is the \u201cLeast Privilege\u201d principle?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"This principle restricts users\u2019 access to the minimum required to perform their tasks, reducing potential security risks.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"How can I monitor user activity in Power Apps?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"You can use tools like Application Insights (Azure Monitor) and auditing features in Power Apps like Power Apps Monitor to track and analyze user activity.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"What are the best practices for securing Power Apps?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"The best practices include implementing role-based access control, using multi-factor authentication, encrypting data, and regularly auditing user activity.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"How can I prevent data loss in Power Apps?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"Implement Data Loss Prevention (DLP) policies to control how sensitive data is shared and transmitted.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"How can I secure custom connectors in Power Apps?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"Limit the use of custom connectors to trusted sources and ensure secure authentication methods, like OAuth, are in place.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"What should I do if a security breach occurs in Power Apps?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"Having an incident response plan is crucial. This plan should include steps for containing the breach, assessing the damage, and restoring security.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"How do I restrict who can create Power Apps in my organisation?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"Remove the Environment Maker role from the default environment for all users. Create a dedicated maker environment with controlled membership, and manage environment-level roles via the Power Platform Admin Center.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }, {<!-- [et_pb_line_break_holder] -->    \"@type\": \"Question\",<!-- [et_pb_line_break_holder] -->    \"name\": \"Can Power Apps access be restricted to specific devices?\",<!-- [et_pb_line_break_holder] -->    \"acceptedAnswer\": {<!-- [et_pb_line_break_holder] -->      \"@type\": \"Answer\",<!-- [et_pb_line_break_holder] -->      \"text\": \"Yes. Use Microsoft Entra ID Conditional Access policies to require compliant or Entra-joined devices before users can access Power Apps.\"<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->  }]<!-- [et_pb_line_break_holder] -->}<!-- [et_pb_line_break_holder] --><\/script>[\/et_pb_code][et_pb_code _builder_version=\u00bb4.27.5&#8243; _module_preset=\u00bbdefault\u00bb hover_enabled=\u00bb0&#8243; sticky_enabled=\u00bb0&#8243;]<\/p>\n<div class=\"rv-tabla-estilo\"><!-- [et_pb_line_break_holder] --><\/p>\n<table><!-- [et_pb_line_break_holder] -->  <\/p>\n<thead><!-- [et_pb_line_break_holder] -->    <\/p>\n<tr><!-- [et_pb_line_break_holder] -->      <\/p>\n<th>Security Category<\/th>\n<p><!-- [et_pb_line_break_holder] -->      <\/p>\n<th>Key Recommendations<\/th>\n<p><!-- [et_pb_line_break_holder] -->    <\/tr>\n<p><!-- [et_pb_line_break_holder] -->  <\/thead>\n<p><!-- [et_pb_line_break_holder] -->  <\/p>\n<tbody><!-- [et_pb_line_break_holder] -->    <\/p>\n<tr><!-- [et_pb_line_break_holder] -->      <\/p>\n<td><strong>Identity &amp; Access<\/strong><\/td>\n<p><!-- [et_pb_line_break_holder] -->      <\/p>\n<td>Enable Multi-Factor Authentication (MFA), implement Role-Based Access Control (RBAC), and use Microsoft Entra ID (Conditional Access &amp; PIM).<\/td>\n<p><!-- [et_pb_line_break_holder] -->    <\/tr>\n<p><!-- [et_pb_line_break_holder] -->    <\/p>\n<tr><!-- [et_pb_line_break_holder] -->      <\/p>\n<td><strong>Environment Strategy<\/strong><\/td>\n<p><!-- [et_pb_line_break_holder] -->      <\/p>\n<td>Isolate resources by purpose (Dev, Test, Prod), avoid the default environment for production apps, and utilize environment-level security groups.<\/td>\n<p><!-- [et_pb_line_break_holder] -->    <\/tr>\n<p><!-- [et_pb_line_break_holder] -->    <\/p>\n<tr><!-- [et_pb_line_break_holder] -->      <\/p>\n<td><strong>Data Protection<\/strong><\/td>\n<p><!-- [et_pb_line_break_holder] -->      <\/p>\n<td>Enforce Data Loss Prevention (DLP) policies to restrict connectors and ensure data is encrypted in transit (TLS) and at rest.<\/td>\n<p><!-- [et_pb_line_break_holder] -->    <\/tr>\n<p><!-- [et_pb_line_break_holder] -->    <\/p>\n<tr><!-- [et_pb_line_break_holder] -->      <\/p>\n<td><strong>Governance &amp; Audit<\/strong><\/td>\n<p><!-- [et_pb_line_break_holder] -->      <\/p>\n<td>Apply the \u00abLeast Privilege\u00bb principle, perform regular security audits using Azure Monitor\/Dataverse logs, and maintain an Incident Response Plan.<\/td>\n<p><!-- [et_pb_line_break_holder] -->    <\/tr>\n<p><!-- [et_pb_line_break_holder] -->    <\/p>\n<tr><!-- [et_pb_line_break_holder] -->      <\/p>\n<td><strong>App Maintenance<\/strong><\/td>\n<p><!-- [et_pb_line_break_holder] -->      <\/p>\n<td>Regularly republish apps to apply updates, sanitize user inputs to prevent injection, and minimize the use of custom code\/connectors.<\/td>\n<p><!-- [et_pb_line_break_holder] -->    <\/tr>\n<p><!-- [et_pb_line_break_holder] -->    <\/p>\n<tr><!-- [et_pb_line_break_holder] -->      <\/p>\n<td><strong>User Awareness<\/strong><\/td>\n<p><!-- [et_pb_line_break_holder] -->      <\/p>\n<td>Educate staff on password hygiene, phishing detection, and general security protocols to prevent human-error-related breaches.<\/td>\n<p><!-- [et_pb_line_break_holder] -->    <\/tr>\n<p><!-- [et_pb_line_break_holder] -->  <\/tbody>\n<p><!-- [et_pb_line_break_holder] --><\/table>\n<p><!-- [et_pb_line_break_holder] --><\/div>\n<p>[\/et_pb_code][et_pb_text admin_label=\u00bbconclusion\u00bb _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Conclusion \/ Power Apps Security<\/h2>\n<p>Securing your Power Apps environment is critical for protecting your business data and ensuring the integrity of your applications. By following these best practices\u2014such as implementing RBAC, enabling MFA, and securing data connections\u2014you can minimize security risks and safeguard your applications. Regular monitoring, updates, and user education further enhance the security posture of your Power Apps.<\/p>\n<p><strong>\ud83d\udc49 <a href=\"https:\/\/www.hakoit.com\/en\/power-apps-consulting-services\/#contact\" target=\"_blank\" rel=\"noopener\">Contact us<\/a> <\/strong>for more insights on Power Apps, <strong>or <a href=\"https:\/\/www.hakoit.com\/en\/power-apps-consulting-services\/#contact\">schedule a meeting HERE<\/a>.<\/strong><\/p>\n<p>&nbsp;<\/p>\n<p>[\/et_pb_text][et_pb_text _builder_version=\u00bb4.27.0&#8243; _module_preset=\u00bbdefault\u00bb link_option_url=\u00bblinks\u00bb locked=\u00bboff\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h2>Free Power Apps Tutorials and Guides:<\/h2>\n<p>Do you want to continue learning about\u00a0<strong>Power Apps<\/strong>? Below is a\u00a0<strong>simple and easy beginner\u2019s tutorial<\/strong>\u00a0for creating an application with a SharePoint or Excel list:<\/p>\n<blockquote>\n<p><strong><a href=\"https:\/\/www.hakoit.com\/en\/how-to-build-an-app-in-30-seconds\/\" target=\"_blank\" rel=\"noopener\">How to build an app in 30 Seconds \u2013 Sharepoint<\/a>\u00a0| Microsoft Power Apps<\/strong><\/p>\n<p><strong><a href=\"https:\/\/www.hakoit.com\/en\/create-an-app-with-excel-in-5-steps-powerapps-tutorial\/\">Create an APP with EXCEL in 5 Steps<\/a><\/strong><\/p>\n<p><strong><a href=\"https:\/\/www.hakoit.com\/en\/power-apps-copilot-ai-tutorial-gpt-based-features-build-an-app\/\" target=\"_blank\" rel=\"noopener\">Power Apps Copilot AI Tutorial<\/a><\/strong><\/p>\n<p><strong><a href=\"https:\/\/www.hakoit.com\/en\/how-to-create-a-power-apps-custom-connector-api-the-complete-guide\/\" target=\"_blank\" rel=\"noopener\">How to create a Power Apps Custom Connector<\/a>\u00a0<\/strong>| API The Complete Guide<\/p>\n<\/blockquote>\n<p>&nbsp;<\/p>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][et_pb_row column_structure=\u00bb1_5,1_5,1_5,1_5,1_5&#8243; make_equal=\u00bbon\u00bb admin_label=\u00bbAutor Facu\u00bb _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_column type=\u00bb1_5&#8243; _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_column][et_pb_column type=\u00bb1_5&#8243; _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_column][et_pb_column type=\u00bb1_5&#8243; _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_image src=\u00bbhttps:\/\/www.hakoit.com\/wp-content\/uploads\/2023\/03\/Facundo-Capdevila-200.png\u00bb alt=\u00bbFacundo Capdevila\u00bb title_text=\u00bbFacundo Capdevila\u00bb align=\u00bbcenter\u00bb _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_image][et_pb_text _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb header_3_font=\u00bb|||||on|||\u00bb header_3_text_align=\u00bbcenter\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<h3 style=\"text-align: center;\">Facundo Capdevila<\/h3>\n<p>[\/et_pb_text][\/et_pb_column][et_pb_column type=\u00bb1_5&#8243; _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_column][et_pb_column type=\u00bb1_5&#8243; _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][\/et_pb_column][\/et_pb_row][et_pb_row _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb locked=\u00bboff\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_column type=\u00bb4_4&#8243; _builder_version=\u00bb4.19.4&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb][et_pb_code admin_label=\u00bbCTA footer EN\u00bb _builder_version=\u00bb4.27.4&#8243; _module_preset=\u00bbdefault\u00bb locked=\u00bboff\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<style><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper {<!-- [et_pb_line_break_holder] -->        font-family: -apple-system, BlinkMacSystemFont, 'Segoe UI', Roboto, Oxygen, Ubuntu, Cantarell, sans-serif;<!-- [et_pb_line_break_holder] -->        background: #f8f9fa;<!-- [et_pb_line_break_holder] -->        padding: 20px;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .blog-footer {<!-- [et_pb_line_break_holder] -->        background: linear-gradient(135deg, #667eea 0%, #764ba2 100%);<!-- [et_pb_line_break_holder] -->        color: white;<!-- [et_pb_line_break_holder] -->        padding: 50px 40px;<!-- [et_pb_line_break_holder] -->        text-align: center;<!-- [et_pb_line_break_holder] -->        position: relative;<!-- [et_pb_line_break_holder] -->        overflow: hidden;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .blog-footer::before {<!-- [et_pb_line_break_holder] -->        content: '';<!-- [et_pb_line_break_holder] -->        position: absolute;<!-- [et_pb_line_break_holder] -->        top: 0;<!-- [et_pb_line_break_holder] -->        left: 0;<!-- [et_pb_line_break_holder] -->        right: 0;<!-- [et_pb_line_break_holder] -->        bottom: 0;<!-- [et_pb_line_break_holder] -->        background: url('data:image\/svg+xml,<svg xmlns=\"http:\/\/www.w3.org\/2000\/svg\" viewBox=\"0 0 100 100\"><defs><pattern id=\"grid\" width=\"10\" height=\"10\" patternUnits=\"userSpaceOnUse\"><path d=\"M 10 0 L 0 0 0 10\" fill=\"none\" stroke=\"rgba(255,255,255,0.1)\" stroke-width=\"1\"\/><\/pattern><\/defs><rect width=\"100\" height=\"100\" fill=\"url(%23grid)\"\/><\/svg>');<!-- [et_pb_line_break_holder] -->        opacity: 0.3;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .footer-content {<!-- [et_pb_line_break_holder] -->        position: relative;<!-- [et_pb_line_break_holder] -->        z-index: 2;<!-- [et_pb_line_break_holder] -->        max-width: 600px;<!-- [et_pb_line_break_holder] -->        margin: 0 auto;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .footer-pain-point {<!-- [et_pb_line_break_holder] -->        font-size: 28px;<!-- [et_pb_line_break_holder] -->        font-weight: 700;<!-- [et_pb_line_break_holder] -->        margin-bottom: 15px;<!-- [et_pb_line_break_holder] -->        color: #fff;<!-- [et_pb_line_break_holder] -->        text-shadow: 0 2px 4px rgba(0,0,0,0.2);<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .footer-value-props {<!-- [et_pb_line_break_holder] -->        margin-bottom: 35px;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .value-prop {<!-- [et_pb_line_break_holder] -->        display: flex;<!-- [et_pb_line_break_holder] -->        align-items: center;<!-- [et_pb_line_break_holder] -->        justify-content: center;<!-- [et_pb_line_break_holder] -->        gap: 12px;<!-- [et_pb_line_break_holder] -->        font-size: 18px;<!-- [et_pb_line_break_holder] -->        margin-bottom: 12px;<!-- [et_pb_line_break_holder] -->        opacity: 0.95;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .value-prop-icon {<!-- [et_pb_line_break_holder] -->        background: rgba(255,255,255,0.2);<!-- [et_pb_line_break_holder] -->        padding: 8px;<!-- [et_pb_line_break_holder] -->        border-radius: 50%;<!-- [et_pb_line_break_holder] -->        font-size: 16px;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .footer-urgency {<!-- [et_pb_line_break_holder] -->        font-size: 14px;<!-- [et_pb_line_break_holder] -->        margin-bottom: 25px;<!-- [et_pb_line_break_holder] -->        background: rgba(255,255,255,0.1);<!-- [et_pb_line_break_holder] -->        padding: 10px 20px;<!-- [et_pb_line_break_holder] -->        border-radius: 20px;<!-- [et_pb_line_break_holder] -->        display: inline-block;<!-- [et_pb_line_break_holder] -->        animation: custom-footer-pulse 2s infinite;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    @keyframes custom-footer-pulse {<!-- [et_pb_line_break_holder] -->        0% { opacity: 1; }<!-- [et_pb_line_break_holder] -->        50% { opacity: 0.7; }<!-- [et_pb_line_break_holder] -->        100% { opacity: 1; }<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .footer-cta {<!-- [et_pb_line_break_holder] -->        background: linear-gradient(135deg, #ff6b6b 0%, #ee5a24 100%);<!-- [et_pb_line_break_holder] -->        color: white;<!-- [et_pb_line_break_holder] -->        padding: 20px 50px;<!-- [et_pb_line_break_holder] -->        border: none;<!-- [et_pb_line_break_holder] -->        border-radius: 50px;<!-- [et_pb_line_break_holder] -->        font-size: 22px;<!-- [et_pb_line_break_holder] -->        font-weight: 700;<!-- [et_pb_line_break_holder] -->        cursor: pointer;<!-- [et_pb_line_break_holder] -->        transition: all 0.3s ease;<!-- [et_pb_line_break_holder] -->        box-shadow: 0 10px 30px rgba(255, 107, 107, 0.4);<!-- [et_pb_line_break_holder] -->        text-decoration: none;<!-- [et_pb_line_break_holder] -->        display: inline-flex;<!-- [et_pb_line_break_holder] -->        align-items: center;<!-- [et_pb_line_break_holder] -->        gap: 12px;<!-- [et_pb_line_break_holder] -->        margin-bottom: 25px;<!-- [et_pb_line_break_holder] -->        position: relative;<!-- [et_pb_line_break_holder] -->        overflow: hidden;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .footer-cta:hover {<!-- [et_pb_line_break_holder] -->        transform: translateY(-3px);<!-- [et_pb_line_break_holder] -->        box-shadow: 0 15px 40px rgba(255, 107, 107, 0.6);<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .footer-cta::before {<!-- [et_pb_line_break_holder] -->        content: '';<!-- [et_pb_line_break_holder] -->        position: absolute;<!-- [et_pb_line_break_holder] -->        top: 0;<!-- [et_pb_line_break_holder] -->        left: -100%;<!-- [et_pb_line_break_holder] -->        width: 100%;<!-- [et_pb_line_break_holder] -->        height: 100%;<!-- [et_pb_line_break_holder] -->        background: linear-gradient(90deg, transparent, rgba(255,255,255,0.3), transparent);<!-- [et_pb_line_break_holder] -->        transition: left 0.5s;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->    .custom-footer-wrapper .footer-cta:hover::before {<!-- [et_pb_line_break_holder] -->        left: 100%;<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] --> @media (max-width: 768px) {<!-- [et_pb_line_break_holder] -->        .custom-footer-wrapper .blog-footer {<!-- [et_pb_line_break_holder] -->            padding: 40px 20px;<!-- [et_pb_line_break_holder] -->        }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->        .custom-footer-wrapper .footer-pain-point {<!-- [et_pb_line_break_holder] -->            font-size: 24px;<!-- [et_pb_line_break_holder] -->        }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->        .custom-footer-wrapper .value-prop {<!-- [et_pb_line_break_holder] -->            font-size: 17px;<!-- [et_pb_line_break_holder] -->        }<!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->        .custom-footer-wrapper .footer-cta {<!-- [et_pb_line_break_holder] -->            font-size: 18px;<!-- [et_pb_line_break_holder] -->            padding: 18px 35px;<!-- [et_pb_line_break_holder] -->        }<!-- [et_pb_line_break_holder] -->    }<!-- [et_pb_line_break_holder] -->   <!-- [et_pb_line_break_holder] --><\/style>\n<p><!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] --><\/p>\n<div class=\"custom-footer-wrapper\"><!-- [et_pb_line_break_holder] -->    <\/p>\n<div class=\"blog-footer\"><!-- [et_pb_line_break_holder] -->        <\/p>\n<div class=\"footer-content\"><!-- [et_pb_line_break_holder] -->            <pee class=\"footer-pain-point\">Wasting time on Manual Processes?<\/pee><!-- [et_pb_line_break_holder] -->            <!-- [et_pb_line_break_holder] -->            <\/p>\n<div class=\"footer-value-props\"><!-- [et_pb_line_break_holder] -->                <\/p>\n<div class=\"value-prop\"><!-- [et_pb_line_break_holder] -->                    <span class=\"value-prop-icon\">\ud83d\udcf1<\/span><!-- [et_pb_line_break_holder] -->                    <span>We help you automate your processes with Power Apps in weeks, not months.<\/span><!-- [et_pb_line_break_holder] -->                <\/div>\n<p><!-- [et_pb_line_break_holder] -->            <\/div>\n<p><!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->            <\/p>\n<div class=\"footer-urgency\"><!-- [et_pb_line_break_holder] -->                \ud83d\udd25 Only 3 project slots left this month<!-- [et_pb_line_break_holder] -->            <\/div>\n<p><!-- [et_pb_line_break_holder] --><!-- [et_pb_line_break_holder] -->            <a href=\"https:\/\/www.hakoit.com\/en\/contact\/\" target=\"_blank\" class=\"footer-cta\"><!-- [et_pb_line_break_holder] -->                <span>\ud83d\ude80<\/span><!-- [et_pb_line_break_holder] -->                Book Your Consultation Today<!-- [et_pb_line_break_holder] -->            <\/a><!-- [et_pb_line_break_holder] -->        <\/div>\n<p><!-- [et_pb_line_break_holder] -->    <\/div>\n<p><!-- [et_pb_line_break_holder] --><\/div>\n<p><!-- [et_pb_line_break_holder] -->[\/et_pb_code][et_pb_text admin_label=\u00bbrelacionados\u00bb _builder_version=\u00bb4.21.0&#8243; _module_preset=\u00bbdefault\u00bb global_colors_info=\u00bb{}\u00bb]<\/p>\n<div class=\"rpbt_shortcode\">\n<h3>Art\u00edculos Relacionados<\/h3>\n<style type=\"text\/css\">\n\t\t\t#rpbt-related-gallery-1 {\n\t\t\t\tmargin: auto;\n\t\t\t}\n\t\t\t#rpbt-related-gallery-1 .gallery-item {\n\t\t\t\tfloat: left;\n\t\t\t\tmargin-top: 10px;\n\t\t\t\ttext-align: center;\n\t\t\t\twidth: 33%;\n\t\t\t}\n\t\t\t#rpbt-related-gallery-1 img {\n\t\t\t\tborder: 2px solid #cfcfcf;\n\t\t\t}\n\t\t\t#rpbt-related-gallery-1 .gallery-caption {\n\t\t\t\tmargin-left: 0;\n\t\t\t}\n\t\t\t\/* see gallery_shortcode() in wp-includes\/media.php *\/\n\t\t<\/style>\n\t\t<div id='rpbt-related-gallery-1' class='gallery related-gallery related-galleryid-34441 gallery-columns-3 gallery-size-medium'><dl class='gallery-item' role='figure' aria-label='20 Power Apps Examples \ud83d\udcf1 and Use Cases To Boost Your Business Productivity!'>\n\t\t\t<dt class='gallery-icon landscape'>\n\t\t\t\t<a href='https:\/\/www.hakoit.com\/en\/20-power-apps-examples-and-use-cases-to-boost-your-business\/'><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"188\" src=\"https:\/\/www.hakoit.com\/wp-content\/uploads\/2023\/12\/power-apps-examples-ideas-300x188.jpg\" class=\"attachment-medium size-medium\" alt=\"power apps examples\" aria-describedby=\"rpbt-related-gallery-1-33445\" \/><\/a>\n\t\t\t<\/dt>\n\t\t\t\t<dd class='wp-caption-text gallery-caption' id='rpbt-related-gallery-1-33445'>\n\t\t\t\t20 Power Apps Examples \ud83d\udcf1 and Use Cases To Boost Your Business Productivity!\n\t\t\t\t<\/dd><\/dl><dl class='gallery-item' role='figure' aria-label='Getting Started with Power Apps \u2014 Beginner&#8217;s Tutorial (2026 Step-by-Step Guide)'>\n\t\t\t<dt class='gallery-icon landscape'>\n\t\t\t\t<a href='https:\/\/www.hakoit.com\/en\/getting-started-with-power-apps\/'><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"188\" src=\"https:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/05\/Getting-Started-with-Power-Apps-300x188.jpg\" class=\"attachment-medium size-medium\" alt=\"Getting Started with Power Apps\" aria-describedby=\"rpbt-related-gallery-1-34050\" \/><\/a>\n\t\t\t<\/dt>\n\t\t\t\t<dd class='wp-caption-text gallery-caption' id='rpbt-related-gallery-1-34050'>\n\t\t\t\tGetting Started with Power Apps \u2014 Beginner&#8217;s Tutorial (2026 Step-by-Step Guide)\n\t\t\t\t<\/dd><\/dl><dl class='gallery-item' role='figure' aria-label='How to Embed a Power BI Report in Power Apps \u2014 Step-by-Step Guide (2026)'>\n\t\t\t<dt class='gallery-icon landscape'>\n\t\t\t\t<a href='https:\/\/www.hakoit.com\/en\/embed-power-bi-in-power-apps\/'><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"188\" src=\"https:\/\/www.hakoit.com\/wp-content\/uploads\/2025\/11\/embed-power-bi-in-powerapps-300x188.jpg\" class=\"attachment-medium size-medium\" alt=\"embed power bi in powerapps\" aria-describedby=\"rpbt-related-gallery-1-39403\" \/><\/a>\n\t\t\t<\/dt>\n\t\t\t\t<dd class='wp-caption-text gallery-caption' id='rpbt-related-gallery-1-39403'>\n\t\t\t\tHow to Embed a Power BI Report in Power Apps \u2014 Step-by-Step Guide (2026)\n\t\t\t\t<\/dd><\/dl><br style=\"clear: both\" \/>\n\t\t<\/div>\n<\/div>\n<p>[\/et_pb_text][\/et_pb_column][\/et_pb_row][\/et_pb_section]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Is your data at risk?. Discover the following Power Apps Security Best Practices to bulletproof your Power Apps now!. Power Apps is a powerful tool that allows businesses to build custom applications with ease. However, with great power comes the responsibility of securing sensitive data and protecting applications from vulnerabilities.This article dives into the Power [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":36683,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"on","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[29,570],"tags":[908,910,572,942,940,944,582],"class_list":["post-34441","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-power-apps","tag-microsoft-power-apps","tag-microsoft-power-platform","tag-power-apps","tag-power-apps-best-practices","tag-power-apps-security","tag-power-apps-security-best-practices","tag-power-platform"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.0 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Power Apps Security Best Practices \u2014 Permissions, Roles &amp; Data Protection (2026) - Hako IT<\/title>\n<meta name=\"description\" content=\"Power Apps Security Best Practices: role-based access, DLP policies, Entra ID integration, environment strategy, and data governance\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/\" \/>\n<meta property=\"og:locale\" content=\"es_ES\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Power Apps Security Best Practices \u2014 Permissions, Roles &amp; Data Protection (2026) - Hako IT\" \/>\n<meta property=\"og:description\" content=\"Power Apps Security Best Practices: role-based access, DLP policies, Entra ID integration, environment strategy, and data governance\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/\" \/>\n<meta property=\"og:site_name\" content=\"Hako IT\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/hakoit\/\" \/>\n<meta property=\"article:published_time\" content=\"2026-03-02T19:08:25+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-04-22T22:06:14+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/10\/power-apps-security.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1080\" \/>\n\t<meta property=\"og:image:height\" content=\"675\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Facundo Capdevila\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Hako_it\" \/>\n<meta name=\"twitter:site\" content=\"@Hako_it\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Facundo Capdevila\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"15 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/\"},\"author\":{\"name\":\"Facundo Capdevila\",\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/#\\\/schema\\\/person\\\/7bc7438ca4e8257b78d34e1437a6d73a\"},\"headline\":\"Power Apps Security Best Practices \u2014 Permissions, Roles &#038; Data Protection (2026)\",\"datePublished\":\"2026-03-02T19:08:25+00:00\",\"dateModified\":\"2026-04-22T22:06:14+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/\"},\"wordCount\":4469,\"publisher\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.hakoit.com\\\/wp-content\\\/uploads\\\/2024\\\/10\\\/power-apps-security.jpg\",\"keywords\":[\"Microsoft Power Apps\",\"Microsoft Power Platform\",\"Power Apps\",\"Power Apps best practices\",\"Power Apps security\",\"Power Apps security best practices\",\"Power Platform\"],\"articleSection\":[\"News\",\"Power Apps\"],\"inLanguage\":\"es\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/\",\"url\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/\",\"name\":\"Power Apps Security Best Practices \u2014 Permissions, Roles & Data Protection (2026) - Hako IT\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.hakoit.com\\\/wp-content\\\/uploads\\\/2024\\\/10\\\/power-apps-security.jpg\",\"datePublished\":\"2026-03-02T19:08:25+00:00\",\"dateModified\":\"2026-04-22T22:06:14+00:00\",\"description\":\"Power Apps Security Best Practices: role-based access, DLP policies, Entra ID integration, environment strategy, and data governance\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.hakoit.com\\\/wp-content\\\/uploads\\\/2024\\\/10\\\/power-apps-security.jpg\",\"contentUrl\":\"https:\\\/\\\/www.hakoit.com\\\/wp-content\\\/uploads\\\/2024\\\/10\\\/power-apps-security.jpg\",\"width\":1080,\"height\":675,\"caption\":\"power apps security\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/en\\\/power-apps-security-best-practices\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Portada\",\"item\":\"https:\\\/\\\/www.hakoit.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Power Apps Security Best Practices \u2014 Permissions, Roles &#038; Data Protection (2026)\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/#website\",\"url\":\"https:\\\/\\\/www.hakoit.com\\\/\",\"name\":\"Hako IT\",\"description\":\"Soluciones de Software: Desarrollo - Consultor\u00eda de IT - Analytics -Marketing Digital. \u2713 Proponemos soluciones\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.hakoit.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/#organization\",\"name\":\"Hako IT\",\"url\":\"https:\\\/\\\/www.hakoit.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.hakoit.com\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/Hako-Consultori\u0301a-1.png\",\"contentUrl\":\"https:\\\/\\\/www.hakoit.com\\\/wp-content\\\/uploads\\\/2019\\\/02\\\/Hako-Consultori\u0301a-1.png\",\"width\":597,\"height\":584,\"caption\":\"Hako IT\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/hakoit\\\/\",\"https:\\\/\\\/x.com\\\/Hako_it\",\"https:\\\/\\\/www.instagram.com\\\/hako_it\\\/\",\"https:\\\/\\\/www.youtube.com\\\/@hako-it\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.hakoit.com\\\/#\\\/schema\\\/person\\\/7bc7438ca4e8257b78d34e1437a6d73a\",\"name\":\"Facundo Capdevila\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/2b18453a68ea6e5b625edae4a43c70a7fa7b737ed73483526459d70d0b7be90d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/2b18453a68ea6e5b625edae4a43c70a7fa7b737ed73483526459d70d0b7be90d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/2b18453a68ea6e5b625edae4a43c70a7fa7b737ed73483526459d70d0b7be90d?s=96&d=mm&r=g\",\"caption\":\"Facundo Capdevila\"},\"url\":\"https:\\\/\\\/www.hakoit.com\\\/author\\\/d91a050b7df524a9\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Power Apps Security Best Practices \u2014 Permissions, Roles & Data Protection (2026) - Hako IT","description":"Power Apps Security Best Practices: role-based access, DLP policies, Entra ID integration, environment strategy, and data governance","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/","og_locale":"es_ES","og_type":"article","og_title":"Power Apps Security Best Practices \u2014 Permissions, Roles & Data Protection (2026) - Hako IT","og_description":"Power Apps Security Best Practices: role-based access, DLP policies, Entra ID integration, environment strategy, and data governance","og_url":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/","og_site_name":"Hako IT","article_publisher":"https:\/\/www.facebook.com\/hakoit\/","article_published_time":"2026-03-02T19:08:25+00:00","article_modified_time":"2026-04-22T22:06:14+00:00","og_image":[{"width":1080,"height":675,"url":"https:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/10\/power-apps-security.jpg","type":"image\/jpeg"}],"author":"Facundo Capdevila","twitter_card":"summary_large_image","twitter_creator":"@Hako_it","twitter_site":"@Hako_it","twitter_misc":{"Escrito por":"Facundo Capdevila","Tiempo de lectura":"15 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/#article","isPartOf":{"@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/"},"author":{"name":"Facundo Capdevila","@id":"https:\/\/www.hakoit.com\/#\/schema\/person\/7bc7438ca4e8257b78d34e1437a6d73a"},"headline":"Power Apps Security Best Practices \u2014 Permissions, Roles &#038; Data Protection (2026)","datePublished":"2026-03-02T19:08:25+00:00","dateModified":"2026-04-22T22:06:14+00:00","mainEntityOfPage":{"@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/"},"wordCount":4469,"publisher":{"@id":"https:\/\/www.hakoit.com\/#organization"},"image":{"@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/10\/power-apps-security.jpg","keywords":["Microsoft Power Apps","Microsoft Power Platform","Power Apps","Power Apps best practices","Power Apps security","Power Apps security best practices","Power Platform"],"articleSection":["News","Power Apps"],"inLanguage":"es"},{"@type":"WebPage","@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/","url":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/","name":"Power Apps Security Best Practices \u2014 Permissions, Roles & Data Protection (2026) - Hako IT","isPartOf":{"@id":"https:\/\/www.hakoit.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/#primaryimage"},"image":{"@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/#primaryimage"},"thumbnailUrl":"https:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/10\/power-apps-security.jpg","datePublished":"2026-03-02T19:08:25+00:00","dateModified":"2026-04-22T22:06:14+00:00","description":"Power Apps Security Best Practices: role-based access, DLP policies, Entra ID integration, environment strategy, and data governance","breadcrumb":{"@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/#primaryimage","url":"https:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/10\/power-apps-security.jpg","contentUrl":"https:\/\/www.hakoit.com\/wp-content\/uploads\/2024\/10\/power-apps-security.jpg","width":1080,"height":675,"caption":"power apps security"},{"@type":"BreadcrumbList","@id":"https:\/\/www.hakoit.com\/en\/power-apps-security-best-practices\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Portada","item":"https:\/\/www.hakoit.com\/"},{"@type":"ListItem","position":2,"name":"Power Apps Security Best Practices \u2014 Permissions, Roles &#038; Data Protection (2026)"}]},{"@type":"WebSite","@id":"https:\/\/www.hakoit.com\/#website","url":"https:\/\/www.hakoit.com\/","name":"Hako IT","description":"Soluciones de Software: Desarrollo - Consultor\u00eda de IT - Analytics -Marketing Digital. \u2713 Proponemos soluciones","publisher":{"@id":"https:\/\/www.hakoit.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.hakoit.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/www.hakoit.com\/#organization","name":"Hako IT","url":"https:\/\/www.hakoit.com\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/www.hakoit.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.hakoit.com\/wp-content\/uploads\/2019\/02\/Hako-Consultori\u0301a-1.png","contentUrl":"https:\/\/www.hakoit.com\/wp-content\/uploads\/2019\/02\/Hako-Consultori\u0301a-1.png","width":597,"height":584,"caption":"Hako IT"},"image":{"@id":"https:\/\/www.hakoit.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/hakoit\/","https:\/\/x.com\/Hako_it","https:\/\/www.instagram.com\/hako_it\/","https:\/\/www.youtube.com\/@hako-it"]},{"@type":"Person","@id":"https:\/\/www.hakoit.com\/#\/schema\/person\/7bc7438ca4e8257b78d34e1437a6d73a","name":"Facundo Capdevila","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/2b18453a68ea6e5b625edae4a43c70a7fa7b737ed73483526459d70d0b7be90d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/2b18453a68ea6e5b625edae4a43c70a7fa7b737ed73483526459d70d0b7be90d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/2b18453a68ea6e5b625edae4a43c70a7fa7b737ed73483526459d70d0b7be90d?s=96&d=mm&r=g","caption":"Facundo Capdevila"},"url":"https:\/\/www.hakoit.com\/author\/d91a050b7df524a9\/"}]}},"_links":{"self":[{"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/posts\/34441","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/comments?post=34441"}],"version-history":[{"count":9,"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/posts\/34441\/revisions"}],"predecessor-version":[{"id":42166,"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/posts\/34441\/revisions\/42166"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/media\/36683"}],"wp:attachment":[{"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/media?parent=34441"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/categories?post=34441"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.hakoit.com\/hako-api\/wp\/v2\/tags?post=34441"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}