Integrations That Keep Evidence Current
Have a deadline? Tell us what you need to ship and by when. We will map the fastest path to a reviewer-ready export.
Connectors are most useful when they produce reviewer-ready exports.
How Integrations Work
01
Connect With Read-Only Permissions
Connect with read-only permissions where supported.
02
Capture Evidence With Source Details
Evidence is captured with timestamps and source details.
03
Control the Cadence
You control the collection cadence.
04
Map and Export
Captured artifacts can be mapped to controls and exported.
Produces
- Evidence objects with source details
- Freshness status and cadence tracking
- Evidence bundle exports (plan-based)
Permissions and Scope Are Explicit
Scoped Credentials
Least privilege access where supported.
Read-Only by Default
Prefer read-only scopes. Write actions are opt-in and logged.
Export and Access Logging
Evidence capture, exports, and Trust Center sharing are logged.
Find the Integrations You Need
Do not see yours? Request a Connector. We aim to confirm feasibility within two business days.
Start here
Okta
Proof: MFA enforcement, admin access, and audit events.
Native automatedEvidence captureevery 15 minutesabout 5 min
Amazon Web Services (AWS)
Proof: IAM configuration, account logging, and security guardrails.
Native automatedEvidence captureevery 1 hourabout 5 min
Microsoft Entra ID (Azure AD) and Microsoft 365
Proof: Identity configuration, MFA coverage, and admin governance.
Native automatedEvidence captureevery 15 minutesabout 5 min
Google Cloud Platform (GCP)
Proof: IAM configuration, project access, and logging coverage.
Native automatedEvidence captureevery 1 hourabout 5 min
ServiceNow (ITSM)
Proof: Remediation workflows and review trail for controls.
Native automatedEvidence captureevery 30 minutesabout 5 min
Jira Cloud
Proof: Owned remediation workflows and evidence of closure.
Native automatedEvidence captureevery 30 minutesabout 5 min
56 connectors
Core Security Platforms
Identity, cloud, endpoint, vulnerability, logging, and ticketing connectors used to keep evidence continuously current.
23 connectors
Amazon Web Services (AWS)
Native automatedEvidence captureContinuous checks
Verifies: AWS CloudTrail is enabled in all regions, AWS CloudTrail is enabled and healthy, AWS CloudTrail log file validation is enabled
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Azure Monitor Logs (Pull)
Native automatedEvidence captureContinuous checks
Verifies: Centralized logging is receiving events within last 24 hours, Centralized logging has received events within last 24 hours, Azure Monitor Logs pull ingestion has events within last 7 days
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 15 minutes
Security note: Collector token; scoped to required sources.
View details
Bitbucket Cloud
Native automatedEvidence capture
Collects: Repositories
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
CrowdStrike Falcon
Native automatedEvidence captureContinuous checks
Verifies: Endpoint security is installed on at least 95% of corporate endpoints
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 15 minutes
Security note: Read-only API; scoped credentials.
View details
Datadog (Audit Trail and Logs)
Native automatedEvidence captureContinuous checks
Verifies: Centralized logging is receiving events within last 24 hours, Centralized logging has received events within last 24 hours, Datadog audit log ingestion has events within last 7 days
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 15 minutes
Security note: Collector token; scoped to required sources.
View details
GitLab
Native automatedEvidence captureContinuous checks
Verifies: Dependabot alerts are triaged within SLA (30 days)
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Google Cloud Platform (GCP)
Native automatedEvidence captureContinuous checks
Verifies: GCP audit logs enabled, GCP Storage Public Access Prevention enforced
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Google Workspace (Directory)
Native automatedEvidence captureContinuous checks
Verifies: Multi factor authentication is enabled for all active human users, Multi factor authentication is enabled for all admin users, At least 1 break-glass account exists and is monitored
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 30 minutes
Security note: Read-only API; scoped credentials.
View details
Jira Cloud
Native automatedEvidence captureContinuous checks
Verifies: High findings create tickets, Incidents are tracked with deterministic timelines
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 30 minutes
Security note: Read-only API; scoped credentials.
View details
JumpCloud
Native automatedEvidence captureContinuous checks
Verifies: Multi factor authentication is enabled for all active human users, Password policy has minimum length >= 12, At least 1 break-glass account exists and is monitored
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Kandji
Native automatedEvidence captureContinuous checks
Verifies: Disk encryption is enabled on all endpoints
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 30 minutes
Security note: Read-only API; scoped credentials.
View details
Microsoft Azure (ARM)
Native automatedEvidence captureContinuous checks
Verifies: Azure Activity Log export configured, Azure Storage public access prevention enforced
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Microsoft Entra ID (Azure AD) and Microsoft 365
Native automatedEvidence captureContinuous checks
Verifies: Multi factor authentication is enabled for all active human users, Multi factor authentication is enabled for all admin users, At least 1 break-glass account exists and is monitored
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 15 minutes
Security note: Read-only API; scoped credentials.
View details
Okta
Native automatedEvidence captureContinuous checks
Verifies: Multi factor authentication is enabled for all active human users, Multi factor authentication is enabled for all admin users, At least 1 break-glass account exists and is monitored
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 15 minutes
Security note: Read-only API; scoped credentials.
View details
PagerDuty
Native automatedEvidence captureContinuous checks
Verifies: Incidents are tracked with deterministic timelines
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
PingOne
Native automatedEvidence captureContinuous checks
Verifies: Multi factor authentication is enabled for all active human users, Multi factor authentication is enabled for all admin users, At least 1 break-glass account exists and is monitored
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 30 minutes
Security note: Read-only API; scoped credentials.
View details
Qualys VMDR
Native automatedEvidence captureContinuous checks
Verifies: Vulnerability scans run within last 7 days
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 6 hours
Security note: Read-only API; scoped credentials.
View details
ServiceNow (ITSM)
Native automatedEvidence captureContinuous checks
Verifies: High findings create tickets, Incidents are tracked with deterministic timelines
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 30 minutes
Security note: Read-only API; scoped credentials.
View details
Slack Audit Logs (Enterprise Grid)
Native automatedEvidence captureContinuous checks
Verifies: Centralized logging is receiving events within last 24 hours, Centralized logging has received events within last 24 hours, Slack audit log ingestion has events within last 7 days
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 15 minutes
Security note: Collector token; scoped to required sources.
View details
Splunk HEC Compatible Receiver
Native automatedEvidence captureContinuous checks
Verifies: Centralized logging is receiving events within last 24 hours, Centralized logging has received events within last 24 hours, Splunk HEC receiver is receiving logs within last 60 minutes
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: continuous
Security note: Collector token; scoped to required sources.
View details
Syslog over TLS Receiver
Native automatedEvidence captureContinuous checks
Verifies: Centralized logging is receiving events within last 24 hours, Centralized logging has received events within last 24 hours, Syslog/TLS receiver is receiving logs within last 60 minutes
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: continuous
Security note: Collector token; scoped to required sources.
View details
Tenable.io
Native automatedEvidence captureContinuous checks
Verifies: Vulnerability scans run within last 7 days
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 6 hours
Security note: Read-only API; scoped credentials.
View details
Trello
Native automatedEvidence capture
Collects: User accounts, Tickets and workflows, Incident
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
People, Training & Collaboration
HR and collaboration connectors that help prove training completion, account governance, and communications posture.
10 connectors
DocuSign
Native automatedEvidence capture
Collects: Evidence and settings relevant to your controls
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
KnowBe4 Security Awareness Training
Native automatedEvidence captureContinuous checks
Verifies: Security training completed within last 12 months
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: daily
Security note: Read-only API; scoped credentials.
View details
RingCentral
Native automatedEvidence capture
Collects: Evidence and settings relevant to your controls
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Rippling
Native automatedEvidence capture
Collects: User accounts, Employment Event
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: daily
Security note: Read-only API; scoped credentials.
View details
TriNet
Native automatedEvidence capture
Collects: User accounts, Employment Event
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: daily
Security note: Read-only API; scoped credentials.
View details
Twilio
Native automatedEvidence capture
Collects: Evidence and settings relevant to your controls
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Vonage
Native automatedEvidence capture
Collects: Evidence and settings relevant to your controls
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Webex
Native automatedEvidence capture
Collects: Evidence and settings relevant to your controls
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Workday (RaaS)
Native automatedEvidence capture
Collects: User accounts, Employment Event
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: daily
Security note: Read-only API; scoped credentials.
View details
Zoom
Native automatedEvidence capture
Collects: Evidence and settings relevant to your controls
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Industry Systems
Line-of-business platforms Aurora can connect to for inventory, workflow evidence, and operational context.
19 connectors
Adyen
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Applied Epic
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
BigCommerce
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
CDK Fortellis / APIs
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
EZLynx
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Five9
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Genesys Cloud
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
HawkSoft
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
ICE Encompass (LOS)
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Microsoft Purview (Retention/eDiscovery)
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
QQCatalyst
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Reynolds & Reynolds (RCI ecosystem)
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Shopify
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Square
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Stripe
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Tekion Partner Cloud APIs
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Vertafore AMS360 (WSAPI)
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Wealthbox CRM
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
WooCommerce
Native automatedEvidence captureContinuous checks
Verifies: Admin users are approved explicitly, Terminated users are removed or deprovisioned, Single sign on is enforced for the application
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Other
Additional production-ready connectors.
4 connectors
Cloudflare
Native automatedEvidence captureContinuous checks
Verifies: Single sign on is enforced for the application, Audit logging is enabled for the application, Admin users are approved explicitly
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Evidence Dropbox (S3)
Native automatedEvidence capture
Collects: Artifact, Import Job
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: daily
Security note: Read-only API; scoped credentials.
View details
Snyk
Native automatedEvidence capture
Collects: Repositories, Findings, Artifact
Produces: Evidence artifacts. Supports evidence bundle exports.
Cadence: scheduled
Security note: Read-only API; scoped credentials.
View details
Wiz
Native automatedEvidence captureContinuous checks
Verifies: Vulnerability scans run within last 7 days
Produces: Evidence artifacts, check results, control mapping. Supports coverage verdict exports.
Cadence: every 1 hour
Security note: Read-only API; scoped credentials.
View details
Readiness states from generated classification
Native automated: 88
Export ingest: 11
Partner required: 35
Needs research: 4
Alias / consolidated: 5
Manual: 0
Tier 0/1 entries: 73 total (65 connector-backed).
Know what is automated before the auditor asks.
Export a coverage verdict that marks automated checks versus manual evidence requirements.
Need a connector we don't list?
Tell us which control(s) you need to prove and your deadline. If a connector isn't possible, we'll recommend the next-best export path.
Integration Questions
Can we start without integrations?
Can we start without integrations?
Yes. Manual uploads are supported. Add connectors later without redoing mapping.
Do integrations run automatically?
Do integrations run automatically?
In eligible plans, connectors can run on a cadence you control.
Can we export what an integration captured?
Can we export what an integration captured?
Yes. Captured evidence can be included in evidence bundles and reviewer-ready exports.
Not Sure What Integrations You Need?
Tell us what reviewers asked for. We’ll map which sources matter and what you can export now.
No obligation. We respond within one business day. We will show a sample reviewer-ready export.