<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Tool Reference on DefectDojo Documentation</title><link>https://docs.defectdojo.com/connectors/toolreference/</link><description>Recent content in Tool Reference on DefectDojo Documentation</description><generator>Hugo</generator><language>en</language><copyright>Copyright (c) 2020-2025 DefectDojo, Inc.</copyright><atom:link href="https://docs.defectdojo.com/connectors/toolreference/index.xml" rel="self" type="application/rss+xml"/><item><title>Upstream Connectors Tool Reference</title><link>https://docs.defectdojo.com/connectors/toolreference/upstream/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/upstream/</guid><description>&lt;p&gt;&lt;span style="background-color:rgba(242, 86, 29, 0.3)"&gt;Note: Upstream Connectors are a DefectDojo Pro-only feature.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;When setting up a Connector for a supported tool, you&amp;rsquo;ll need to give DefectDojo specific information related to the tool&amp;rsquo;s API. At a base level, you&amp;rsquo;ll need:&lt;/p&gt;</description></item><item><title>Downstream Connectors Tool Reference</title><link>https://docs.defectdojo.com/connectors/toolreference/downstream/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/downstream/</guid><description>&lt;p&gt;Here are specific instructions detailing how to set up a DefectDojo Downstream Connector with a third party Issue Tracker.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/azure_devops_boards/"&gt;Azure DevOps Boards&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/bitbucket/#downstream-connector"&gt;Bitbucket&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/github/#downstream-connector"&gt;GitHub&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/gitlab/#downstream-connector"&gt;GitLab&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/jira/"&gt;Jira&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/linear/"&gt;Linear&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/opsgenie/"&gt;Opsgenie&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/pagerduty/"&gt;PagerDuty&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/servicenow/"&gt;ServiceNow&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/servicenow_secops/"&gt;ServiceNow SecOps&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/shortcut/"&gt;Shortcut&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/freshservice/"&gt;Freshservice&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/servicedesk_plus/"&gt;ServiceDesk Plus&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.defectdojo.com/connectors/toolreference/zendesk/"&gt;Zendesk&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;</description></item><item><title>AccuKnox</title><link>https://docs.defectdojo.com/connectors/toolreference/accuknox/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/accuknox/</guid><description>&lt;p&gt;The AccuKnox connector imports &lt;strong&gt;cloud security posture (CSPM) findings&lt;/strong&gt; across your whole AccuKnox tenant. DefectDojo creates a Record for each &lt;strong&gt;connected cloud account&lt;/strong&gt;, plus a tenant-level catch-all Record — findings that match no specific account land there, so nothing is silently dropped.&lt;/p&gt;</description></item><item><title>Action1</title><link>https://docs.defectdojo.com/connectors/toolreference/action1/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/action1/</guid><description>&lt;p&gt;The Action1 connector imports &lt;strong&gt;endpoint vulnerability findings&lt;/strong&gt; from Action1. DefectDojo creates a Record for each &lt;strong&gt;endpoint (host)&lt;/strong&gt;.&lt;/p&gt;
&lt;h4 id="prerequisites"&gt;Prerequisites&lt;/h4&gt;
&lt;p&gt;An Action1 &lt;strong&gt;API key and secret&lt;/strong&gt; pair. The key acts as the OAuth client ID and the secret is never logged.&lt;/p&gt;</description></item><item><title>Acunetix 360</title><link>https://docs.defectdojo.com/connectors/toolreference/acunetix_360/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/acunetix_360/</guid><description>&lt;p&gt;The Acunetix 360 connector imports &lt;strong&gt;DAST vulnerability findings&lt;/strong&gt; from the Acunetix 360 cloud platform (the Invicti platform). DefectDojo discovers your account&amp;rsquo;s scanned websites and creates a Record for each &lt;strong&gt;website&lt;/strong&gt;; the findings for a website come from its latest completed scan.&lt;/p&gt;</description></item><item><title>Akamai</title><link>https://docs.defectdojo.com/connectors/toolreference/akamai/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/akamai/</guid><description>&lt;p&gt;The Akamai API Security connector uses an API key to pull security findings from the Akamai API. DefectDojo will discover your Akamai environment and create separate Records for each &lt;strong&gt;Application&lt;/strong&gt; and &lt;strong&gt;Host&lt;/strong&gt; configured in your account.&lt;/p&gt;</description></item><item><title>Akto</title><link>https://docs.defectdojo.com/connectors/toolreference/akto/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/akto/</guid><description>&lt;p&gt;The Akto connector imports &lt;strong&gt;API security testing findings&lt;/strong&gt; from Akto. DefectDojo creates a Record for each Akto &lt;strong&gt;API collection&lt;/strong&gt;.&lt;/p&gt;
&lt;h4 id="prerequisites"&gt;Prerequisites&lt;/h4&gt;
&lt;p&gt;An Akto &lt;strong&gt;API key&lt;/strong&gt;, created under &lt;strong&gt;Settings &amp;gt; Integrations &amp;gt; Akto APIs&lt;/strong&gt; in the Akto dashboard. It is sent as the &lt;code&gt;X-API-KEY&lt;/code&gt; header and is never logged.&lt;/p&gt;</description></item><item><title>Alert Logic</title><link>https://docs.defectdojo.com/connectors/toolreference/alert_logic/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/alert_logic/</guid><description>&lt;p&gt;The Alert Logic connector imports &lt;strong&gt;vulnerability exposures&lt;/strong&gt; from your Alert Logic account. DefectDojo creates a Record for each Alert Logic &lt;strong&gt;deployment&lt;/strong&gt;, with no per-deployment configuration required.&lt;/p&gt;</description></item><item><title>Anchore Enterprise</title><link>https://docs.defectdojo.com/connectors/toolreference/anchore_enterprise/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/anchore_enterprise/</guid><description>&lt;p&gt;The Anchore connector uses a user&amp;rsquo;s API token to pull data from Anchore Enterprise. Assets will be mapped and discovered based on &amp;ldquo;Applications&amp;rdquo;, which are composed of multiple Images in Anchore - see &lt;a href="https://docs.anchore.com/current/docs/sbom_management/application_groups/application_management_anchorectl/"&gt;Anchore Enterprise Documentation&lt;/a&gt; for more information.&lt;/p&gt;</description></item><item><title>AppCheck</title><link>https://docs.defectdojo.com/connectors/toolreference/appcheck/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.defectdojo.com/connectors/toolreference/appcheck/</guid><description>&lt;p&gt;The AppCheck connector imports &lt;strong&gt;DAST vulnerability findings&lt;/strong&gt; from the AppCheck NG platform. DefectDojo discovers every scan on your account and creates a Record for each &lt;strong&gt;scan&lt;/strong&gt; — there is no per-scan configuration.&lt;/p&gt;</description></item></channel></rss>