Skip to main content

Connect GitHub

Use this guide to let Cracken read GitHub repositories, work items, and security alerts.

Prerequisites

  • Permission to create a GitHub personal access token
  • Access to every organization and repository you want Cracken to read
  • GitHub Advanced Security enabled for security-alert data
  • A Cracken realm where you can configure data integrations

Prepare the token

Create a fine-grained personal access token and select the required organizations and repositories. Grant read access to:

  • Metadata
  • Issues
  • Pull requests
  • Code scanning alerts
  • Secret scanning alerts
  • Dependabot alerts

Organization policy can require an owner to approve the token before it can read organization resources. If you use a classic token instead, grant repo and security_events only where your GitHub policy permits it.

Connect GitHub

  1. Open Integration Center → Data Integrations.
  2. On the GitHub card, click Install.
  3. Enter the token in Access Token.
  4. Click Test Connection, then Save & Connect.

Cracken can list accessible repositories, issues, pull requests, code-scanning alerts, secret-scanning alerts, and Dependabot alerts.

Sources

Next steps

  • Data Integrations — Review how connected security data flows into Cracken.
  • Cybergraph — See how Cracken uses imported application data.