Tool integration

Arnica Integration Guide

Pipelineless developer-centric AppSec platform covering SAST, SCA, secrets, and IaC

Get a Free API Key

Integrate Arnica with Vulnetix. Use the Arnica API to export SAST and SCA findings from your repositories, then upload to Vulnetix for consolidated vulnerability management.

SaaS platformJSONSARIF

Run Arnica in CI

Scan on every push and upload the results to Vulnetix:

- name: Export Arnica findings
  env:
    ARNICA_TOKEN: ${{ secrets.ARNICA_TOKEN }}
    ARNICA_ORG: ${{ secrets.ARNICA_ORG_ID }}
  run: |
    curl -s "https://api.arnica.io/v1/findings?orgId=$ARNICA_ORG&severity=critical,high"       -H "Authorization: Bearer $ARNICA_TOKEN" | jq '.findings' > arnica-findings.json

- name: Upload to Vulnetix
  run: vulnetix upload --file arnica-findings.json

Centralise Arnica results in Vulnetix

Upload Arnica JSON, SARIF output to the Vulnetix platform to deduplicate findings, prioritise them with EPSS, CISA KEV and Coalition ESS exploit intelligence, and track remediation across every scanner in a single queue.

Arnica documentation ↗

Wire Arnica into your CI/CD pipeline →