Skip to content

Integrations ​

IntegrationWhat it doesRuns onNeeds
GitHub AppCheck and comment on every pull request; private repositories in the dashboarddagsec serverOne-click install
GitHub ActionCheck and comment on every pull requestYour GitHub runnerAPI key, workflow file
GitLab CIJob and comment on every merge requestYour GitLab runnerAPI key, three lines of YAML
Command lineScan any checkout, write SBOMsAnywhere Linux x86-64API key
Claude Code pluginBlocks risky installs, lets Claude check packagesYour machineAPI key
CursorBlocks risky installsYour machineAPI key, hook file
Gemini CLIBlocks risky installsYour machineAPI key, settings file
MCP serverPackage checks for any MCP clientYour machineAPI key

GitHub App or GitHub Action? ​

Both give the same check and comment. Choose the App when you want nothing to maintain; choose the Action when your code must never leave your own infrastructure.

GitHub AppGitHub Action
SetupInstall once, pick repositoriesSecret and workflow file per repository
Where code is scanneddagsec server, deleted after the scanYour runner
Private repositories in the dashboardYes, the ones you grant (paid plans)No
Checks whether leaked credentials still workYesYes (turn off with --no-verify)
Counts againstCI runsCI runs

Don't use both on the same repository, or each pull request is scanned twice.