Integrations

Route anomalous Certificate Transparency events into Splunk, Slack, Microsoft Teams, and your SIEM — via webhooks on the platform roadmap.

Operated by Cavalry Scout Pty Ltd (Australia).Privacy·Contact·Documentation

How events flow

CT log ingestion → Good Roots evaluation → anomaly detected → HTTPS webhook → your SIEM / chat / SOAR

Webhook delivery is planned. Today you can use the public CAA API, domain preview, MCP tools, and the monitoring console after yousign in.

HTTPS webhooks

Planned

Push anomalous issuance events to any HTTPS endpoint your team controls.

JSON payloads suitable for automation platforms, SOAR playbooks, or custom receivers. Delivery and retry behaviour will be documented when webhooks ship.

Splunk

Planned

Forward alerts into Splunk for correlation with existing security data.

Designed around HTTP Event Collector (HEC) or comparable ingest patterns. Configuration examples will ship with the webhook release — no live Splunk app in this phase.

Slack

Planned

Notify channels when anomalous certificates are detected.

Incoming webhook or workflow-style notifications for DevSecOps chatops. Planned for Startup tier and above.

Microsoft Teams

Planned

Route high-signal CT events into Teams channels.

Connector or webhook delivery comparable to Slack — on the same integration roadmap.

Generic SIEM

Planned

Elasticsearch, Microsoft Sentinel, QRadar, and other analytics platforms.

Export or forward normalized events for correlation. We do not claim a certified connector for every SIEM in this phase — webhook + document ingest is the path.

Platform access today

MCP tools

Available

Query CT data and log metadata from compatible AI assistants via our MCP server.

Public HTTP API

Partial

CAA analysis and domain preview endpoints are available today; authenticated tenant APIs expand with the app.

Webhook pricing is planned at 0.1 credits per successful delivery (seepricing).Tell us what you useand we will prioritise your integration path.