Search integrations
All
Scanners and testing tools
Cloud and infrastructure
Inventory and identity
Ticketing and development
Monitoring and threat intelligence
AI, automation and messaging
Scanners and testing tools
Bring in findings from the scanners and testing tools your teams already run.
Tenable Security Center and Nessus Imports scan results, launches targeted rescans and manages scans, freeze windows and policies.
Qualys VMDR Imports network and agent findings and keeps their status up to date.
OpenVAS and Greenbone Imports findings from open-source network scans on a schedule.
Burp Suite Imports web application findings and launches scans from oolak.
OWASP ZAP Adds dynamic web application testing results to the same list.
Nuclei Brings in fast, template-based checks across web assets and IP addresses.
Trivy Adds container image, Kubernetes and software bill of materials findings.
SQLMap Confirms SQL injection findings with proof.
MobSF Adds findings from Android and iOS application testing.
Semgrep Links code-level findings to the repositories they come from.
TruffleHog Finds leaked passwords and keys in code, logs and files.
Bandit Adds security findings from Python code.
GoSec Adds security findings from Go code.
GitHub Dependabot Brings in alerts about vulnerable third-party libraries.
File and CSV import Accepts Nessus, XML, JSON and CSV reports for networks without a direct connection.
Cloud and infrastructure
Discover servers, containers and cloud resources wherever they run.
Amazon Web Services Discovers EC2 instances, security groups and networks, and imports Inspector and Security Hub findings.
Microsoft Azure virtual machines Discovers virtual machines, network cards and security boundaries.
Microsoft Azure applications Tracks App Services, enterprise applications and app registrations.
Microsoft Azure platform services Checks the security posture of SQL, Key Vault, storage accounts and AKS.
Google Cloud Discovers Compute Engine instances, firewalls and subnets, and imports Security Command Center findings.
VMware vSphere and ESXi Discovers every virtual machine and matches it with scanned IP addresses.
Microsoft Hyper-V Lists Hyper-V virtual machines and the hosts they run on.
Kubernetes Discovers clusters, nodes and workloads and maps their vulnerabilities.
Red Hat OpenShift Tracks vulnerabilities across OpenShift projects.
Docker and OCI registries Reads images and their contents from your container registries.
Inventory and identity
Keep your asset list, IP plan and directories in step with what is really running.
NetBox Keeps virtual machines, devices and IP addresses in sync in both directions.
Microsoft Active Directory Lists computers and privileged accounts from your domain.
Microsoft Entra ID Brings in cloud identities, devices and their compliance status.
LDAP directories Signs users in and maps their groups to roles and teams.
SAML 2.0 and OpenID Connect Signs users in through your single sign-on provider.
EfficientIP SOLIDserver Keeps DNS, DHCP and IP address plans in step.
Bitwarden Supplies credentials for authenticated scans without storing them in oolak.
Red Hat Satellite Matches patch status with open findings.
ManageEngine Brings in endpoint inventory and service desk tickets.
Ticketing and development
Open and update tickets where your teams already work.
DefectDojo Syncs findings, engagements and risk acceptances in both directions.
Jira Opens tickets, keeps their status in sync and closes them when a fix is confirmed.
ServiceNow Opens security incidents and change requests and keeps them in sync.
OpenText Service Manager Manages service desk tickets through their whole life cycle.
Trello Turns findings into cards on a team board.
GitHub Opens issues and syncs security advisories for your repositories.
GitLab Imports pipeline security reports and syncs issue boards.
Jenkins Triggers pipelines from workflows, for example to rebuild a patched image.
Monitoring and threat intelligence
Share evidence with your SIEM and enrich findings with outside intelligence.
Splunk and syslog Sends every audit event as a standard syslog line, with secrets masked.
Microsoft Defender Brings in Defender for Cloud alerts and Defender EASM discoveries.
Darktrace Matches unusual network activity with known weaknesses on the same host.
Trend Micro Adds host agent data and threat intelligence to triage.
Trend Vision One Matches detections with exposed systems.
Shodan Shows which of your public IP addresses are visible on the internet.
Have I Been Pwned Warns when e-mail accounts on your domains appear in a data breach.
0rce threat intelligence Adds indicators and threat intelligence to findings.
Grafana Shows trends, fix times and SLA status on dashboards.
Uptime Kuma Shows which services are up next to their open vulnerabilities.
S3-compatible storage Stores reports and evidence in your own object storage.
AI, automation and messaging
Connect AI assistants, automation tools and the chat apps your teams use.
Claude and MCP assistants Lets AI assistants answer questions about your findings with your permissions.
Local AI models and REST API Connects local or private models and any agent through a documented API.
n8n Connects oolak events to your own automation flows.
Cloudflare Reads DNS zones and checks which services sit behind the WAF.
Cloudflare Zero Trust Checks device posture and access logs for remote users.
Tailscale Reaches isolated networks for scanning without opening firewall ports.
Slack Sends alerts and digests, and lets people approve requests from a message.
Microsoft Teams Sends alerts and digests, and lets people approve requests from a card.
E-mail Sends alerts, digests and invitations through your own mail server.
Webhooks Starts workflows from any system and sends events anywhere.
Also supported
These sources connect in the same way, through the same settings and data feeds.
Rapid7 InsightVM CrowdStrike Falcon Spotlight AWS Inspector AWS Security Hub Google Security Command Center Grype Censys subfinder, dnsx and httpx Amazon Route 53 Tenable Attack Surface Management runZero Lansweeper Monday.com