Skip to main content

Integrating Invicti Standard with Bitbucket

This document is for:
Invicti Standard

Bitbucket is a web-based hosting service for code management. It provides development teams with a place to plan projects, collaborate on code, test, and deploy. When you add a repository to Bitbucket Cloud, the issue tracker helps you track your project's feature requests, bug reports, and other project management tasks.

This topic explains how to configure Invicti Standard to send a detected vulnerability to Bitbucket, enabling seamless integration with your code repository and development workflow for efficient vulnerability management.

Prerequisites

Before starting to integrate Bitbucket, please be sure that issue tracker is activated from the menu Repository > Select a repository > Repository settings > Issue Tracker.

Bitbucket Fields

The following table lists and describes the Bitbucket fields available in the Send to Actions configuration:

Button/Section/FieldDescription
AddSelect to add an integration.
DeleteSelect to delete the integration and clear all fields.
Configure Send ToSelect to configure the integration using the Settings Wizard instead of doing it manually.
Create Sample IssueOnce all relevant fields have been configured, click to create a sample issue.
ActionThis section contains general fields about the Send To Action.
Display NameThis is the name of the configuration that will be shown on menus.
MandatoryThis section contains fields that must be completed.
RepositoryThis is the repository name, which includes the issue.
UsernameThis is the username in your Bitbucket account.
PasswordThis is the password that is used for the Bitbucket login.
VulnerabilityThis section contains fields with vulnerability details.
Body TemplateThis is the template file to be used while rendering issue contents.
Title FormatThis is the string to be used whole formatting the vulnerability title.
OptionalThis section contains optional fields.
KindThis is the type of issue: Bug, Enhancement, Proposal, Task
PriorityThis is the priority of the issue: Trivial, Minor, Major, Critical, Blocker

How to Integrate Invicti Standard with Bitbucket

Follow these steps to configure Bitbucket integration for automated vulnerability tracking:

  1. Open Invicti Standard

  2. From the Home tab on the ribbon, select Options > Send To Actions

  3. From the Add drop-down, select Bitbucket

  4. In the Mandatory section, complete the connection details:

    • Repository
    • Username
    • Password
  5. In the Vulnerability section, complete Body Template and Title Format

Template Location

Body templates are stored in %userprofile%\Documents\Invicti\Resources\Send To Templates. If you use your own custom templates, store them in this location.

  1. In the Optional settings you can specify:

    • Kind
    • Priority
  2. Select Create Sample Issue to confirm that Invicti Standard can connect to the configured system and create a sample issue

    • In the Send To Action dialog, select the Issue number link to open the issue in the default browser
  3. Select Apply or OK to save the integration

How to Delete the Bitbucket Integration

To remove the Bitbucket integration:

  1. Open Invicti Standard
  2. From the Home tab on the ribbon, select Options > Send to Actions
  3. Select Bitbucket
  4. Select Delete

How to Export Reported Vulnerabilities to Projects in Bitbucket

After configuring the Bitbucket integration, follow these steps to export specific vulnerabilities:

Prerequisites

Please ensure that you have first configured Bitbucket integration. See How to Integrate Invicti Standard with Bitbucket.

  1. Open Invicti Standard
  2. From the ribbon, select the File tab. Local Scans are displayed. Double-click the relevant scan to display its results
  3. In the Issues panel, right-click on the vulnerability you want to export to Bitbucket and select Send to Bitbucket. (Alternatively, click the Send to Bitbucket button in the Vulnerability tab in the ribbon menu.)
  4. Select the Bitbucket Send to Action is executed for the selected vulnerability link to see the created issue in Bitbucket

Need help?

Invicti Support team is ready to provide you with technical help. Go to Help Center

Was this page useful?