Slack
Webhook-based channel with Block Kit cards.
Route findings to your chat. File tickets in your tracker. Hook into your pipelines. 12 notification channels and 9 ticketing systems, out of the box.
Route scan, monitoring, and cloud alerts to any mix of channels. Per-integration severity routing and team-wide defaults.
Webhook-based channel with Block Kit cards.
Adaptive cards via incoming webhook.
Embeds for security and monitoring events.
SMTP delivery, per-user and per-team.
BYOK SMS via Twilio or Vonage.
Bot API with HTML formatting.
Mobile/desktop push, priority mapping.
Self-hosted or ntfy.sh topic publishing.
Cards v2 via webhook.
Trigger and auto-resolve incidents.
Create and auto-close alerts.
Events API for dashboards.
Auto-create tickets on new findings, or file them on-demand from the findings table. Severity thresholds are configurable per integration.
Auto or manual ticket creation.
Auto or manual ticket creation.
Auto or manual ticket creation.
Auto or manual ticket creation.
Auto or manual ticket creation.
Auto or manual ticket creation.
Auto or manual ticket creation.
Auto or manual ticket creation.
Auto or manual ticket creation.
Plug Metric Tower into the observability stack you already run.
Scrape endpoint exposes 27+ custom metrics covering HTTP, scans, sidecars, auth, billing, and notifications. IP-restricted.
Four auto-provisioned dashboards: Operations, Scanner Performance, Monitoring Health, and Infrastructure. Ships with Docker monitoring profile.
Self-hosted GlitchTip receives PHP and JavaScript error events. Compatible with Sentry SDKs, so you can swap it for Sentry SaaS.
Available on every plan. Links to existing accounts via a secure pending-link flow.
Every user can enroll TOTP codes and FIDO2 security keys. Admins can enforce MFA team-wide.
SAML and generic OIDC are on the roadmap for Enterprise. Contact sales for early access.
Full scan lifecycle plus monitoring, exports, and activity log -- all authenticated via Sanctum tokens.
Subscribe to scan, finding, and monitoring events. Signed payloads, retry-safe delivery.
Artisan command designed for CI/CD pipelines. Failing builds on severity thresholds is trivial.
Generic webhooks plus the REST API cover most gaps. Enterprise teams can work with us on custom integrations.