Integrations
Our SaaS technology seamlessly integrates into your security workflow.
Or click on the logos for details on our integrations.
With every commit MergeBase analyses the code developers want to add to your repositories for known-vulnerabilities and triggers checks and automatic pull request reviews. You can configure these to extend full enterprise control over these potentially catastrophic risks to your organization.
Scans commits and pull requests and sends them to your MergeBase dashboard.
Enable Mergebase and immediately start receiving commit checks and pull request reviews.
With every commit, MergeBase analyses the code developers want to add to your repositories for known vulnerabilities and gives you detailed vulnerability information for your latest commits.
Scans commits and pull requests and sends them to your MergeBase dashboard.
Enable MergeBase Bitbucket Connect app integration and immediately get scan results for your Bitbucket repositories in your MergeBase dashboard.
GitLab is an integrated source code repository and CI/CD tool for managing the software development workflow using continuous integration and continuous deployment.
Integration with GitLab includes MergeBase vulnerability scanning in the Gitlab workflow by adding the MergeBase Command Line Tool (CLT) to your Gitlab CI/CD projects.
Integration adds a custom step to your pipelines to generate scans in your custom MergeBase dashboard.
While MergeBase doesn’t provide direct platform integration to other SCM platforms, the MergeBase CLT can be used to scan code from many other source code management systems.
Sends MergeBase notifications to the SIEM tool of your choice so that alert for new vunerabilities, changes in vulnerability severity and vulnerability breaches get injected into your regular SecOps workflow. For example, in Perforce, MergeBase can be implemented as a custom tool.
Please contact us for more information on less commonly-used tools.
GitLab is an integrated source code repository and CI/CD tool for managing the software development workflow using continuous integration and continuous deployment.
Integration with GitLab includes MergeBase vulnerability scanning in the Gitlab workflow by adding the MergeBase Command Line Tool (CLT) to your Gitlab CI/CD projects.
Integration adds a custom step to your pipelines to generate scans in your custom MergeBase dashboard.
MergeBase is an SCA extension (software composition analysis) that scans your applications within Jenkins. It helps your development teams identify dangerous and insecure library versions early. Your results will be displayed in your own web-based dashboard.
Integrates a MergeBase scan into your Jenkins CI/CD pipeline.
Add the Jenkins plugin to your Jenkins projects; view the scans in your custom dashboard.
MergeBase is an SCA extension (software composition analysis) that scans your applications within your Bamboo plans. Use MergeBase to help your development teams identify dangerous and insecure library versions early. Your results will be displayed in your own web based dashboard.
Integrates MergeBase into Bamboo CI/CD pipelines.
Add the plugin, and enter your credentials. You will receive the scans in your custom dashboard.
Scan your source code with MergeBase directly from it.
Scan your source code with MergeBase directly from your Teamcity Ci/CD pipeline.
Add the Mergebase CLT to your TeamCity projects, then view the scans in your custom dashboards.
MergeBase is an SCA extension (software composition analysis) that scans your applications within your azure DevOps plans. Use MergeBase to help your development teams identify dangerous and insecure library versions early. Your results will be displayed in your own web based dashboard.
Integrates mergebase into azure devops DevOps pipeline jobs.
Add the plugin, and enter your credentials. You will receive the scans in your custom dashboard.
Bitbucket Pipelines is a tool for software development using continuous integration and continuous deployment
Integrates a MergeBase scan into your Bitbucket pipeline.
Add the pipeline, and enter your credentials. You will then receive scans in your custom MergeBase dashboard.
A Github action to scan your repositories with MergeBase. Supports Java w/ Maven, NPM, .NET, Ruby, and more.
Adds a MergeBase scan as an action to your Github development pipeline.
Add the action, and enter your credentials. You will then receive scans in your custom MergeBase dashboard.
MergeBase supports all CI/CD platforms that allow custom scripts. The MergeBase CLT can be downloaded and run programmatically to suit your use case.
The MergeBase CLT is a Java JAR which, when run, will scan your source or binary code and upload results to the dashboard. The execution can be customized with many additional arguments to suit your project’s needs.
To use the CLT in your CI/CD scripts, see the “Downloading via API” section of the MergeBase manual
Docker is a set of platform-as-a-service products that use OS-level virtualization to deliver software in packages called containers.
Scans docker containers for vulnerable binaries.
Invoke the MergeBase CLT.
IBM QRadar XDR, a modular security suite, helps security teams gain visibility to quickly detect, investigate and respond to threats.
Sends MergeBase alerts through Syslog to QRadar or other SIEM platforms.
Enable the integration by setting configuration values in the MergeBase dashboard.
Slack is a team messaging app used by companies and developers.
Sends MergeBase notifications to Slack.
Enable the integration on the MergeBase dashboard and start receiving notifications in Slack.
Splunk is a data platform that powers enterprise observability, unified security and limitless custom applications in hybrid environments.
Sends MergeBase notifications to Splunk.
Enable the integration on the MergeBase dashboard and start receiving notifications in Splunk.
Teams is a messaging app created by Microsoft for organizations and teams.
Sends MergeBase notifications to Teams.
Enable the integration on the MergeBase dashboard and start receiving notifications in Teams
MergeBase supports the RFC-5424 and LEEF standards for itnegration with virtually any SIEM tool.
Sends MergeBase notifications to the SIEM tool of your choice so that alert for new vunerabilities, changes in vulnerability severity and vulnerability breaches get injected into your regular SecOps workflow.
Enable the integration in Setings/Integrations on the MergeBase dashboard, set up receiving the messages in your SIEM tools and start receiving vulnerability notifications.
Plan, track, and manage your agile and software development projects in Jira. Customize your workflow, collaborate, and release great software.
Add Jira tickets for vulnerabilities found by MergeBase.
After enabling the Jira integration you can create tickets directly from the MergeBase dashboard.
The ThreatConnect Platform is the unifying force across security teams, fusing cyber threat intelligence, knowledge, and tradecraft across cybersecurity operations and enabling machine power to maximize operational effectiveness and efficiency.
Sync your MergeBase vulnerability information to the ThreatConnect intel platform.
Enable the integration on the MergeBase dashboard
Kenna processes and analyzes 18+ threat and exploit intelligence feeds, 12.7+ billion managed vulnerabilities, and your enterprise’s security data to give you an accurate view of your company’s risk.
Add MergeBase vulnerability results to your Kenna Dashboard.
Talk to us for more information.
Nucleus Security is an automated vulnerability management solution that accelerates vulnerability response and enhances application security.
Import your MergeBase scans to the Nucleus Reporting Platform.
Add a MergeBase connector to your Nucleus dashboard. You are then able to import your MergeBase scans into the Nucleus platform.
MergeBase provides a protected API for integration with virtually any management tool, including in house developed tools.
Provides access to the scan results in MergeBase. In addition to this you can receive notifications through the RF-5424 standard.
Enable the integration in Setings/Integrations on the MergeBase dashboard and use the API key provided there.
Dont’t see the integration you are looking for?
We might have it, or have a way to support you. Please connect with us.
Check how MergeBase works throught the development lifecycle in your company.
Book a Demo