Skip to main content
availability

Package: Invicti AppSec Enterprise (on-premise, on-demand)

Google Gemini

Google Gemini is Google's family of multimodal large language models, accessible via the Google AI API. The Invicti AppSec integration with Gemini enables AI-powered features — such as vulnerability remediation guidance and security analysis — by connecting to Google's Gemini models.

Purpose in Invicti AppSec

Google Gemini is used in Invicti AppSec as an LLM Provider — supplying the language model that powers AI-assisted security features.

Use CaseDescription
AI remediation guidanceGenerate fix recommendations for discovered vulnerabilities using Gemini models
Security analysisUse Gemini's language models to assist in triage and prioritization of security findings

Where it is used

PageNavigation PathPurpose
Integrations — LLM ProvidersIntegrations › LLM ProvidersAdmin activation and model configuration

Prerequisites

Before activating the integration, obtain an API key from Google AI Studio:

FieldDescriptionRequired
TokenGoogle AI API key used to authenticate requests to GeminiYes
ModelThe Gemini model to use (selected after a successful test connection)Yes

Obtain the API key (on the Google side)

  1. Go to Google AI Studio.
  2. Click Get API key in the top navigation.
  3. Click Create API key and select a Google Cloud project (or create a new one).
  4. Copy the generated API key.
note

Gemini API keys are managed through Google AI Studio. Make sure your Google account has access to the Gemini API and that it's enabled for the selected project.

Activation steps

Step 1: Navigate to Integrations

From the left sidebar, click Integrations.

Integrations sidebar

Step 2: Open the LLM Providers tab

On the Integrations page, click the LLM Providers tab.

LLM Providers tab

Step 3: Find and activate Gemini

Locate the Gemini card.

  • If it isn't yet activated, click Activate to open the settings drawer.
  • If it's already activated, click the gear icon to open the settings drawer and reconfigure.

Step 4: Fill in the required fields

In the settings drawer, enter your Google AI API key:

FieldDescriptionRequired
TokenYour Google AI API keyYes

Step 5: Test the connection

Click Test Connection. A green "Connection successful" message confirms that Invicti AppSec can reach the Gemini API with the provided key. The Model dropdown appears automatically after a successful test.

Step 6: Select a model

From the Model dropdown, select the Gemini model you want to use for AI features in Invicti AppSec (e.g., gemini-1.5-pro, gemini-2.0-flash).

Gemini settings

Step 7: Save

Click Save to complete the activation.

Summary

StepAction
1Navigate to Integrations from the sidebar
2Select the LLM Providers tab
3Find Gemini and click Activate (or the gear icon)
4Enter your Google AI API key in the Token field
5Click Test Connection — verify the success message
6Select a Model from the dropdown
7Click Save

Troubleshooting

IssueResolution
Connection failedVerify the API key is correct and hasn't been revoked. Regenerate it from Google AI Studio if needed.
Invalid API keyEnsure the key was copied in full without extra spaces. Confirm the Gemini API is enabled for the associated Google Cloud project.
No models availableConfirm your Google account and project have access to Gemini models. Some models may require specific regional availability or quota approvals.
403 ForbiddenThe Gemini API may not be enabled for your Google Cloud project. Enable it in the Google Cloud Console under APIs & Services.
Rate limit errorsYour Google AI API quota may be exhausted. Check usage limits in the Google Cloud Console and request a quota increase if needed.

Need help?

Invicti Support team is ready to provide you with technical help. Go to Help Center

Was this page useful?