All integrations
SECURITY INTEGRATION

Nova AI Ops + GitHub Advanced Security.

CodeQL alert ingest, secret-scan results, Dependabot rollups.

What you get

Once connected, GitHub Advanced Security telemetry flows into Nova's observability stack: signals join the service map, alerts route through Nova's correlation engine, and incidents tie back to the underlying GitHub Advanced Security resources for root-cause analysis.

How to connect

Two paths depending on your setup:

OAuth (recommended). Click connect in the Nova admin UI, sign in with your GitHub Advanced Security account, scope down to read-only, done. Token rotation is handled automatically.

API key. For GitHub Advanced Security accounts that don't support OAuth or for service-account workflows. Generate the key in GitHub Advanced Security, paste it into Nova's integrations settings, and Nova validates the connection.

What we ingest

Read-only by default: events, metrics, logs, audit data. We do not modify your GitHub Advanced Security configuration without explicit approval through Nova's policy envelope. Write actions (when enabled) go through the agent fleet with a full audit trail.