Add a Target
Link a GitHub repository to a project so LaunchSafe can scan it. Live URLs are not open for testing yet.
A project is one application. What you scan is the repositories linked to it.
Connect GitHub
Install the GitHub App
Under Integrations, connect GitHub. GitHub asks you to install the LaunchSafe GitHub App on your account or organization, and then to confirm it is you. You must own the account, or be an owner of the GitHub organization.
Choose repositories
On GitHub, choose which repositories the App can read.
LaunchSafe asks for read access first. Write access is requested separately, only when you approve a fix pull request. See GitHub.
Link a repository to a project
Open a project and choose Link repository. Pick from the repositories your connection can read. A repository belongs to one project at a time. The project's page shows whether LaunchSafe can still read each repository.
Code hosts
| Host | Today |
|---|---|
| GitHub | Connect, link and scan |
| GitLab, including self-managed | Connect and link. Scans cannot fetch the code yet |
| Bitbucket | Connect and link. Scans cannot fetch the code yet |
ZIP upload is not available.
Live URLs
A project can hold a live URL (a target), and you can prove you control its domain first. Testing a live URL is not open yet, so adding one does not start any testing. See domain verification.