Step 1
Create workspace and first admin
Use guided onboarding to register your organization and establish the first trusted admin account.
- Complete organization profile and workspace slug.
- Verify admin email and enforce your password policy requirements.
- Sign in and confirm dashboard access for the primary admin.
Step 2
Create integration API keys
Issue separate keys per integration so you can rotate or revoke without disrupting all pipelines.
- Create one API key per CI pipeline, scanner, or cloud integration.
- Set expiration windows that align with your secret rotation policy.
- Store raw keys in your secret manager, never in source control.
Step 3
Set ownership and operating defaults
Define who reviews findings and how escalation decisions are made before data starts arriving.
- Assign at least one admin and one analyst owner.
- Set target response times for critical and high severity findings.
- Share a first-week rollout checklist with engineering and security leads.