Incident.io

Intro

Configure Incident.io to work with Aikido and create tickets based on new vulnerabilities found. Linking your Incident.io team to Aikido ensures new vulnerabilities get notified when they are found. Meaning all the benefits of Incident.io can be used on the alerting system from Aikido.

How to set up Incident.io

1

Create an API Key in incident.io

  1. Go to settings and choose 'API keys' from the left sidebar. Click [+ add new]

  2. Add a name (e.g. Aikido Api Key). Note: select permissions option Create incidents

  1. Save the API key for later use (copy and paste it somewhere safe)

2

Create a new severity in incident.io

  1. Navigate to 'Severities' in the left sidebar and click [+ Add severity]

  2. Add name, description and press save

3

Adjust the default type

  1. Finally we want to navigate to 'Types' in the left sidebar and click the pencil to edit on the default type

  2. If not set, add a description

  3. Scroll all the way down to 'Skip channel creation' and toggle it on

  1. When toggled on you get the option to add a contition, click that [+ Add condition]

  2. Click on 'Severity' twice

  3. Look for the Severity we just created and select it

  1. Click [Done] and finally press [Save] on the bottom of the page

4

Final setup in Aikido

Now when connecting in Aikido, make sure to select the newly created severity from step 2.

Optionally, send a test incident to confirm the integration was successful. You should now be receiving newly discovered vulnerabilities posted to you #incidents channel in slack.

Last updated

Was this helpful?