Integrations
Fits into the workflow your engineering team already has.
Runtimekindle connects to your CI pipelines, container registries, ticketing systems, and SIEM tools — no new workflow required. Runtime alerts go where your engineers already look.
CI/CD
Pipeline integrations
GitHub Actions
SBOM generation + cosign signing step. Provenance uploaded to Rekor on every push. Under 20 lines of YAML.
View docsGitLab CI
Pipeline step for SBOM generation and supply chain attestation. Works with GitLab OIDC tokens for keyless signing.
View docsHelm
One-command DaemonSet deployment. helm install runtimekindle runtimekindle/agent. Configurable via values.yaml.
Terraform
Terraform provider for Runtimekindle policy management. Define detection rules and alert routing as code.
View docsContainer Registries
Registry integrations
AWS ECR
Webhook-triggered scanning on push. Images with critical CVEs blocked by K8s admission policy before deployment.
View docsGoogle Artifact Registry
Pub/Sub integration for push-triggered container scanning. Compatible with Binary Authorization policy enforcement.
View docsDocker Hub
Webhook scanning for Docker Hub repositories. Layer attribution and CVE reports delivered to your dashboard on every push.
View docsAzure Container Registry
Event Grid webhook integration. Container scanning results enriched with layer attribution and runtime reachability data.
View docsAlerting & Ticketing
Alerts where your team looks
Slack
Runtime alerts to any channel. Configurable severity thresholds. Alert messages include pod name, CVE details, and remediation link.
View docsPagerDuty
Critical runtime events trigger PagerDuty incidents with full context. Severity mapping from Runtimekindle alert level to PagerDuty urgency.
View docsJira
Auto-create Jira tickets for reachable CVEs with all triage context pre-filled. Assign to the team that owns the affected service.
View docsGitHub Issues
Create GitHub Issues for actionable CVEs in the repository that owns the affected service. Reachability context included.
View docsObservability & SIEM
SIEM and observability integrations
Datadog
Runtime events forwarded to Datadog as custom metrics and log events. Works alongside Datadog Agent without conflict.
View docsSplunk
Forward runtime detection events to Splunk via HEC. Pre-built Splunk dashboard for CVE triage and runtime anomaly investigation.
View docsElastic SIEM
ECS-compatible event output. Runtime security events flow into your Elastic SIEM alongside your existing infrastructure logs.
View docsOpenTelemetry
OTLP export for runtime security spans. Correlate security events with distributed traces from your existing observability pipeline.
View docsDon't see your tool? We build integrations on request.
Talk to Yael about your specific stack. Integration requests are prioritized based on user demand.