Skip to main content
availability

Package: Invicti AppSec Core (on-demand), Invicti AppSec Enterprise (on-premise, on-demand)

Trello Integration

Trello is a visual project management tool that organizes tasks and workflows using boards, lists, and cards. The Invicti AppSec integration with Trello allows security teams to create Trello cards directly from discovered vulnerabilities, enabling lightweight tracking of security remediation tasks within Trello boards.

Purpose in Invicti AppSec

Trello is used in Invicti AppSec as an Issue Manager — a tool for creating and tracking vulnerability remediation tasks in Trello boards.

Use CaseDescription
Card creation from vulnerabilitiesCreate Trello cards directly from vulnerability findings in Invicti AppSec
Remediation trackingTrack security issue remediation using Trello's Kanban-style boards
Team collaborationAssign Trello cards to team members responsible for fixing security vulnerabilities

Where It Is Used

PageNavigation PathPurpose
Integrations — Issue ManagersIntegrations › Issue ManagersAdmin activation and global configuration
Project SettingsProject › Settings › Issue ManagersLink Trello to a specific project for ticket creation
Vulnerability ListProject › VulnerabilitiesManually create a Trello card for a specific vulnerability
Team Lead IntegrationsTeam Lead view › Integrations › Issue ManagersTeam leads activate instances delegated by admins

Prerequisites

Before activating the integration, gather the following credentials from your Trello account:

FieldDescriptionRequired
API KeyYour Trello Power-Up API key, generated from the Trello developer portalYes
TokenA Trello user token that grants access to your boards and workspacesYes
URLYour Trello API base URL (typically https://api.trello.com)Yes

Obtain Credentials (on the Trello Side)

API Key:

  1. Log in to Trello and go to the Trello Developer Portal at https://trello.com/power-ups/admin.
  2. Create a new Power-Up (or use an existing one) and navigate to its API Key section.
  3. Copy the API Key displayed on the page.

Token:

  1. On the same Power-Up API Key page, click the Token link next to the API key.
  2. Trello will ask you to authorize the Power-Up and generate a token.
  3. Copy the generated token — store it securely as it grants access to your Trello workspace.

URL:

  1. The Trello API base URL is https://api.trello.com.
  2. Use this URL unless your organization uses a custom Trello deployment.
info

Use a dedicated Trello account or Power-Up for Invicti AppSec to avoid disruptions if personal credentials change.

Activation Steps

Step 1: Navigate to Integrations

From the left sidebar, click Integrations.

Step 2: Open the Issue Managers Tab

On the Integrations page, click the Issue Managers tab.

Issue Manager tab

Step 3: Find and Activate Trello

Locate the Trello card.

  • If it is not yet activated, click Activate to open the settings drawer.
  • If it is already activated, click the gear icon to reconfigure.

Step 4: Fill In the Required Fields

In the settings drawer, enter the required credentials:

FieldDescriptionRequired
API KeyYour Trello Power-Up API keyYes
TokenYour Trello user access tokenYes
URLTrello API base URL (https://api.trello.com)Yes

Step 5: Test the Connection

Click Test Connection. A green "Connection successful" message confirms that Invicti AppSec can connect to Trello with the provided credentials.

Trello settings

Step 6: Save

Click Save to complete the activation.

Summary

StepAction
1Navigate to Integrations from the sidebar
2Select the Issue Managers tab
3Find Trello and click Activate (or the gear icon)
4Enter API Key, Token, and URL
5Click Test Connection — verify the success message
6Click Save

Troubleshooting

IssueResolution
Connection failedVerify that the API Key, Token, and URL are correct and that api.trello.com is reachable from the Invicti AppSec network.
401 UnauthorizedThe Token is invalid or expired. Regenerate the token from the Trello Power-Up admin page and retry.
403 ForbiddenThe token does not have sufficient permissions. Ensure the token was authorized with read/write access to the target workspace and boards.
URL invalidConfirm the URL is https://api.trello.com or the correct custom endpoint for your deployment.
Board not availableEnsure the Trello account associated with the API Key and Token has access to the boards you intend to use.

Need help?

Invicti Support team is ready to provide you with technical help. Go to Help Center

Was this page useful?