CI/CD
SECURITY ON EVERY COMMIT, NOT EVERY QUARTER.
Push findings from any pipeline straight into DefectDojo over the REST API.
DefectDojo parses results from every stage of your CI/CD pipeline into one data model, so scans triggered by a build are just as comparable as ones run by hand. Wire in one pipeline job or five; the findings land in the same deduplicated queue. Ingest results straight from the pipeline, so every build leaves a test record behind.
All IntegrationsEvery CI/CD parser
Every CI/CD Tool We Parse
If your pipeline job writes a report, DefectDojo reads it. Browse the full CI/CD catalog below; every parser normalizes into the same finding model.
GitLab SAST
CI/CD
View integrationGitLab Dependency Scanning
CI/CD
View integrationGitLab Secret Detection
CI/CD
View integrationGitLab Container Scanning
CI/CD
View integrationGitLab DAST
CI/CD
View integrationGitHub Vulnerability
CI/CD
View integration
SARIF
CI/CD
View integrationGeneric Findings Import
CI/CD
View integration