Bitbucket & Azure Repos
Connect Bitbucket Cloud and Azure Repos for automated pull request reviews.
Bitbucket Cloud
- Create an app password: Personal settings → App passwords with repositories read/write and pull requests read/write.
- In ScanDrix: Settings → Integrations → Bitbucket and paste the workspace + app password.
- Register the webhook (see Webhook Setup) for
pullrequest:createdandpullrequest:updated.
Reviews post as pull request comments with the ScanDrix merge check attached.
Azure Repos
- Create a Personal Access Token (PAT) with Code (read & write) and Pull Request Threads (read & write) scopes.
- In ScanDrix: Settings → Integrations → Azure Repos — enter organization, project, and the PAT.
- Register the service hook for Pull request created and Pull request updated (Azure DevOps → Service hooks → Webhooks), pointing at the ScanDrix webhook URL with the provided secret.
Azure service hooks deliver JSON payloads with a custom X-VSS-Auth header; ScanDrix validates the shared secret, so treat it like any webhook credential and rotate it from the dashboard if leaked.
Forgejo
Forgejo uses a personal or project access token plus a push/MR webhook. Add it under Settings → Integrations → Forgejo with instance URL, token, and webhook secret.
Common behavior across providers
- Review posting — inline comments, severity labels, and a summary; identical rule engine and
scandrix.ymlsupport everywhere. - Blocking — provider-native merge checks/required reviewers are updated from ScanDrix findings.
- Scopes are minimal — each integration grants comment/read permissions only; code write access is never requested.