Skip to content

Supported scanners

Supported scanners

AppGuard ingests results from the most popular open source and commercial security scanners. Push findings via API or CI/CD pipeline.

Supported scanners

  • Semgrep
  • Trivy
  • Gitleaks
  • Grype
  • Snyk
  • Checkov
  • TruffleHog
  • Nuclei
  • Bandit
  • Gosec
  • Kube-bench
  • Kubescape
  • npm audit
  • OSV-Scanner
  • Tfsec
  • SARIF

How ingestion works

  1. 01

    Push results

    Send scan results to AppGuard via a simple curl command from your CI/CD pipeline.

  2. 02

    Auto-detect scanner

    AppGuard automatically detects the scanner type from file content. No manual configuration needed.

  3. 03

    Centralize and track

    Findings appear in the dashboard with severity, metadata, and version context.

Compatible formats

SARIFJSONCSV

Scanner categories

SASTSCASecretsContainerIaCKubernetesDAST

Start ingesting today

Self-host AppGuard and connect your scanners in minutes. AGPLv3 licensed, full data ownership.

Frequently Asked Questions