Connect GitHub
Use this guide to let Cracken read GitHub repositories, work items, and security alerts.
Prerequisites
- Permission to create a GitHub personal access token
- Access to every organization and repository you want Cracken to read
- GitHub Advanced Security enabled for security-alert data
- A Cracken realm where you can configure data integrations
Prepare the token
Create a fine-grained personal access token and select the required organizations and repositories. Grant read access to:
- Metadata
- Issues
- Pull requests
- Code scanning alerts
- Secret scanning alerts
- Dependabot alerts
Organization policy can require an owner to approve the token before it can read organization
resources. If you use a classic token instead, grant repo and security_events only where your
GitHub policy permits it.
Connect GitHub
- Open Integration Center → Data Integrations.
- On the GitHub card, click Install.
- Enter the token in Access Token.
- Click Test Connection, then Save & Connect.
Cracken can list accessible repositories, issues, pull requests, code-scanning alerts, secret-scanning alerts, and Dependabot alerts.
Sources
Next steps
- Data Integrations — Review how connected security data flows into Cracken.
- Cybergraph — See how Cracken uses imported application data.