Integrations

AppScan 360° supports the following plugins and integrations:
Note: As of 1.6.0 release, these plugins/tools are not CFIUS compliant and are not considered in support for the FIPS-compliant download of AppScan 360°. Contact HCL Federal Support (+1-855-855-5016) for additional information.
Plugin/Integration/Action Supported plugin version Supported AppScan 360° version Description
Integrated Development Environments (IDE)
HCL AppScan Extension For Visual Studio 2022 2.4 and newer 1.3.0 and newer Execute SAST scans on AppScan 360° and pull scans and fix groups data within the IDE.
Visual Studio Code 1.3.0 and newer 1.6.0 and newer Pull scan data from AppScan 360° within the IDE.
HCL AppScan JetBrains Plugin, including IntelliJ Idea, PyCharm, WebStorm, PhpStorm, Rider, CLion, GoLand, RubyMine 2.9 and newer 1.3.0 and newer Pull scans and fix groups data from AppScan 360° within the IDE.
AndroidStudio 2.11 and newer 1.6.0 and newer Pull scans and fix groups data from AppScan 360° within the IDE.
Cursor AI 1.3.0 and newer 1.6.0 and newer Pull scan data from AppScan 360° within the IDE.
Continuous integration/continuous delivery (CI/CD)
HCL AppScan Jenkins Plugin
  • SAST: 1.1.0
  • SAST and DAST: 1.4.0
  • SAST: 1.0.0 and newer
  • DAST: 1.3.0 and newer
Execute SAST and DAST scans using AppScan 360°.
HCL AppScan Azure DevOps Plugin
  • SAST: 2.1.0
  • SAST and DAST: 2.4.0
  • SAST: 1.0.0 and newer
  • DAST: 1.3.0 and newer
Execute SAST and DAST Scans using AppScan 360°.
HCL AppScan SAST GitHub Action 1.0.6 1.3.0 and newer Integrate SAST scanning into GitHub workflows.
HCL AppScan CodeSweep GitHub Action 2.1 and newer 1.3.0 and newer Scans modified code in pull requests alerting you to vulnerabilities before the code reaches your main branch.
HCL AppScan Maven Plugin 1.0.13 and newer 1.3.0 and newer Integrates SAST scans of your Java projects into the Maven build.
HCL AppScan Gradle Plugin 1.0.10 and newer 1.3.0 and newer Integrates SAST scans of your Java projects into the Gradle build.
Defect tracking systems
AppScan Issue Management Gateway Service, including Azure DevOps, Jira, and RTC 1.2 and newer 1.3.0 and newer Synchronize issues between AppScan 360° and issue management systems.
Jira Cloud 1.2.0 and newer 1.6.0 and newer Pull SAST and DAST issues from AppScan 360° into Jira Cloud.
Vulnerability management
HCL AppScan ServiceNow Integration 1.3.0 and newer 1.3.0 and newer Pull SAST and DAST issues from AppScan 360° to their respective SNOW instance.
AppScan client tools
Note: AppScan Go! and Static Analyzer Command Line Utility are bundled with the download package; they are not separately downloadable.
AppScan Standard 10.0.0 2.0.0 and newer Penetration-testing component of the HCL AppScan application security testing suite, used to test web applications and APIs.
AppScan Activity Recorder 2.0.0 1.3.0 and newer Record traffic and actions to be used in AppScan 360° DAST scans.
AppScan Traffic Recorder N/A 2.0.0 and newer DAST proxy enables you to record traffic to use as Explore data.
Note: As of version 1.6.0 of AppScan 360°, the HCL AppScan Traffic Recorder is an automatic download via HCL AppScan on Cloud which is not CFIUS compliant.
AppScan Cloud CLI 1.2.0 and newer 1.6.0 and newer Configure and initiate DAST scans on AppScan 360°
Build your own integration
AppScan Swagger N/A 2.0.0 and newer Suite of tools for working with the REST API
AppScan SDK 1.1.5 2.0.0 and newer SDK for interacting with HCL AppScan on Cloud and HCL AppScan Enterprise ADAC Jobs
Other
Centraleyezer N/A 2.0.0 Manage HCL AppScan on Cloud DAST and SAST vulnerability data in Centraleyezer to identify, prioritize, track, and remediate security issues.