Integrations¶
Open Settings → Integrations to connect, configure, or disconnect providers for the active organization.
Slack¶
Slack sends selected Alkonos events to selected channels.
Connect Slack¶
Find Slack and select Connect.
Choose the Slack workspace.
Approve the requested permissions.
Return to Alkonos and select Configure.
Under Add a channel, choose a channel and one or more event types.
Select Add channel.
A route subscribes one channel to selected events. Add more routes when different channels need different event sets.
Available Slack events include:
Vulnerability found.
Vulnerability status changed.
Credential request.
Report ready or failed.
Asset group added.
Asset discovered.
Public channels are joined automatically when Alkonos first posts. For a private channel, invite the Alkonos bot manually before expecting delivery.
Disconnecting Slack removes the installation credentials and configured channel routes.
GitHub¶
GitHub connects repositories through the Alkonos GitHub App for code indexing, branch scans, pull-request scans, and repository activity.
Connect GitHub¶
Find GitHub and select Connect.
Choose your personal account or GitHub organization.
Grant access to all repositories or selected repositories.
Complete the GitHub App installation and return to Alkonos.
The installation makes repositories available to Alkonos; it does not add every repository to your asset inventory automatically.
Add a GitHub repository to a group¶
Open an asset group.
Select Add assets → Repository.
Choose the GitHub installation.
Search for and select the repository.
Submit the form.
Alkonos creates the repository asset and indexes branches, open pull requests, issues, language statistics, and contributors asynchronously.
If a repository is missing, update the GitHub App installation’s repository access on GitHub, then retry the search.
Scan GitHub code¶
Open the repository, select a branch, and choose Scan branch for a SAST run.
Open Pull requests and choose Scan on an indexed open PR for a focused review.
Use Open on GitHub to inspect the source repository directly.
The GitHub App requires read access to code and metadata. PR review and autofix features may require write access to pull requests or repository contents when enabled.
Other providers¶
The integration catalog may also expose Microsoft Teams, Linear, Jira, PagerDuty, Bitbucket, and Forgejo. The configuration drawer shows the destinations and automation supported by each installed provider.