Skip to content
Platform

Integrations

Findings flow into the tools you already run.

Araghatta fits the stack you already run. Findings flow out to your SIEM (including OCSF for Amazon Security Lake), ticketing and ChatOps; single sign-on and SCIM provisioning are live. We label status honestly — nothing here is vapourware.

IntegrationCategoryStatusNotes
SlackChatOpsLiveReal-time alerts + in-app config
JiraTicketingLiveAuto-create per-risk tickets & per-sensor epics
SSO — OIDC (Okta · Entra ID · Google · Auth0)IdentityLiveSingle sign-on; JIT provisioning + group→role mapping
SCIM 2.0 directory syncIdentityLiveAutomated user lifecycle + offboarding-risk
Splunk · Sentinel · QRadar · Elastic · ChronicleSIEM / SOARLiveHEC · CEF · JSON — typed connectors, not just a webhook
OCSF — Amazon Security LakeSIEM / SOARLiveOCSF Detection Findings (class 2004)
SIEM webhook (generic)SIEM / SOARLiveSigned JSON to any HTTP collector, SSRF-guarded
AIBOM & evidence export (JSON / CSV)ExportLiveAI Bill of Materials + signed compliance evidence
REST API — /api/v1PlatformLiveVersioned /api/v1 + scoped service-account keys over risks, findings, sensors & cloud posture
SAML 2.0IdentityRoadmapOIDC single sign-on is live today and covers the major IdPs
ServiceNowTicketingRoadmapNative connector; outbound webhook + Jira cover ITSM today
Certified two-way EDR / ITSMResponseRoadmapCertified bidirectional connectors; outbound export (SIEM/OCSF, Slack, Jira, webhook) ships today

Deployment channels

The single-binary sensor deploys through your existing endpoint management — Jamf, Microsoft Intune, Kandji, SCCM, or Ansible — as a background service, with a one-command uninstall. See the FAQ for footprint, OS support and removal.

Need a connector that isn’t here yet? The generic SIEM webhook and the AIBOM export cover most pipelines today, and the versioned REST API (/api/v1, with scoped service-account keys) covers the rest. Tell us what you need.