Merge branch 'main' into ENG-3016
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Available"
|
||||
openapi: "GET /api/v1/app-connections/bitbucket/available"
|
||||
---
|
||||
@@ -0,0 +1,8 @@
|
||||
---
|
||||
title: "Create"
|
||||
openapi: "POST /api/v1/app-connections/bitbucket"
|
||||
---
|
||||
|
||||
<Note>
|
||||
Check out the configuration docs for [Bitbucket Connections](/integrations/app-connections/bitbucket) to learn how to obtain the required credentials.
|
||||
</Note>
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Delete"
|
||||
openapi: "DELETE /api/v1/app-connections/bitbucket/{connectionId}"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Get by ID"
|
||||
openapi: "GET /api/v1/app-connections/bitbucket/{connectionId}"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Get by Name"
|
||||
openapi: "GET /api/v1/app-connections/bitbucket/connection-name/{connectionName}"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "List"
|
||||
openapi: "GET /api/v1/app-connections/bitbucket"
|
||||
---
|
||||
@@ -0,0 +1,8 @@
|
||||
---
|
||||
title: "Update"
|
||||
openapi: "PATCH /api/v1/app-connections/bitbucket/{connectionId}"
|
||||
---
|
||||
|
||||
<Note>
|
||||
Check out the configuration docs for [Bitbucket Connections](/integrations/app-connections/bitbucket) to learn how to obtain the required credentials.
|
||||
</Note>
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Create"
|
||||
openapi: "POST /api/v2/secret-scanning/data-sources/bitbucket"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Delete"
|
||||
openapi: "DELETE /api/v2/secret-scanning/data-sources/bitbucket/{dataSourceId}"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Get by ID"
|
||||
openapi: "GET /api/v2/secret-scanning/data-sources/bitbucket/{dataSourceId}"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Get by Name"
|
||||
openapi: "GET /api/v2/secret-scanning/data-sources/bitbucket/data-source-name/{dataSourceName}"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "List Resources"
|
||||
openapi: "GET /api/v2/secret-scanning/data-sources/bitbucket/{dataSourceId}/resources"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "List Scans"
|
||||
openapi: "GET /api/v2/secret-scanning/data-sources/bitbucket/{dataSourceId}/scans"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "List"
|
||||
openapi: "GET /api/v2/secret-scanning/data-sources/bitbucket"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Scan Resource"
|
||||
openapi: "POST /api/v2/secret-scanning/data-sources/bitbucket/{dataSourceId}/resources/{resourceId}/scan"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Scan"
|
||||
openapi: "POST /api/v2/secret-scanning/data-sources/bitbucket/{dataSourceId}/scan"
|
||||
---
|
||||
@@ -0,0 +1,4 @@
|
||||
---
|
||||
title: "Update"
|
||||
openapi: "PATCH /api/v2/secret-scanning/data-sources/bitbucket/{dataSourceId}"
|
||||
---
|
||||
@@ -210,6 +210,7 @@
|
||||
"group": "Secret Scanning",
|
||||
"pages": [
|
||||
"documentation/platform/secret-scanning/overview",
|
||||
"documentation/platform/secret-scanning/bitbucket",
|
||||
"documentation/platform/secret-scanning/github"
|
||||
]
|
||||
}
|
||||
@@ -469,6 +470,7 @@
|
||||
"integrations/app-connections/azure-client-secrets",
|
||||
"integrations/app-connections/azure-devops",
|
||||
"integrations/app-connections/azure-key-vault",
|
||||
"integrations/app-connections/bitbucket",
|
||||
"integrations/app-connections/camunda",
|
||||
"integrations/app-connections/cloudflare",
|
||||
"integrations/app-connections/databricks",
|
||||
@@ -1135,6 +1137,21 @@
|
||||
"pages": [
|
||||
"api-reference/endpoints/secret-scanning/data-sources/list",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/options",
|
||||
{
|
||||
"group": "Bitbucket",
|
||||
"pages": [
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/list",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/get-by-id",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/get-by-name",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/list-resources",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/list-scans",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/create",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/update",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/delete",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/scan",
|
||||
"api-reference/endpoints/secret-scanning/data-sources/bitbucket/scan-resource"
|
||||
]
|
||||
},
|
||||
{
|
||||
"group": "GitHub",
|
||||
"pages": [
|
||||
@@ -1284,6 +1301,18 @@
|
||||
"api-reference/endpoints/app-connections/azure-key-vault/delete"
|
||||
]
|
||||
},
|
||||
{
|
||||
"group": "Bitbucket",
|
||||
"pages": [
|
||||
"api-reference/endpoints/app-connections/bitbucket/list",
|
||||
"api-reference/endpoints/app-connections/bitbucket/available",
|
||||
"api-reference/endpoints/app-connections/bitbucket/get-by-id",
|
||||
"api-reference/endpoints/app-connections/bitbucket/get-by-name",
|
||||
"api-reference/endpoints/app-connections/bitbucket/create",
|
||||
"api-reference/endpoints/app-connections/bitbucket/update",
|
||||
"api-reference/endpoints/app-connections/bitbucket/delete"
|
||||
]
|
||||
},
|
||||
{
|
||||
"group": "Camunda",
|
||||
"pages": [
|
||||
|
||||
@@ -0,0 +1,100 @@
|
||||
---
|
||||
title: "Bitbucket Secret Scanning"
|
||||
sidebarTitle: "Bitbucket"
|
||||
description: "Learn how to configure secret scanning for Bitbucket."
|
||||
---
|
||||
|
||||
## Prerequisites
|
||||
|
||||
- Create a [Bitbucket Connection](/integrations/app-connections/bitbucket) with Secret Scanning permissions
|
||||
|
||||
## Create a Bitbucket Data Source in Infisical
|
||||
|
||||
<Tabs>
|
||||
<Tab title="Infisical UI">
|
||||
1. Navigate to your Secret Scanning Project's Dashboard and click the **Add Data Source** button.
|
||||

|
||||
|
||||
2. Select the **Bitbucket** option.
|
||||
|
||||

|
||||
|
||||
3. Configure which workspace and repositories you would like to scan. Then click **Next**.
|
||||

|
||||
|
||||
- **Bitbucket Connection** - the connection that has access to the repositories you want to scan.
|
||||
- **Workspace** - the Bitbucket workspace to scan secrets in.
|
||||
- **Scan Repositories** - select which repositories you would like to scan.
|
||||
- **All Repositories** - Infisical will scan all repositories associated with your connection.
|
||||
- **Select Repositories** - Infisical will scan the selected repositories.
|
||||
- **Auto-Scan Enabled** - whether Infisical should automatically perform a scan when a push is made to configured repositories.
|
||||
|
||||
4. Give your data source a name and description (optional). Then click **Next**.
|
||||

|
||||
|
||||
- **Name** - the name of the data source. Must be slug-friendly.
|
||||
- **Description** (optional) - a description of this data source.
|
||||
|
||||
5. Review your data source, then click **Create Data Source**.
|
||||

|
||||
|
||||
6. Your **Bitbucket Data Source** is now available and will begin a full scan if **Auto-Scan** is enabled.
|
||||

|
||||
|
||||
7. You can view repositories and scan results by clicking on your data source.
|
||||

|
||||
|
||||
8. In addition, you can review any findings from the **Findings Page**.
|
||||

|
||||
</Tab>
|
||||
<Tab title="API">
|
||||
To create a Bitbucket Data Source, make an API request to the [Create Bitbucket Data Source](/api-reference/endpoints/secret-scanning/data-sources/bitbucket/create) API endpoint.
|
||||
|
||||
### Sample request
|
||||
|
||||
```bash Request
|
||||
curl --request POST \
|
||||
--url https://us.infisical.com/api/v2/secret-scanning/data-sources/bitbucket \
|
||||
--header 'Content-Type: application/json' \
|
||||
--data '{
|
||||
"name": "my-bitbucket-source",
|
||||
"projectId": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
|
||||
"description": "my bitbucket data source",
|
||||
"connectionId": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
|
||||
"isAutoScanEnabled": true,
|
||||
"config": {
|
||||
"workspaceSlug": "my-workspace",
|
||||
"includeRepos": ["*"]
|
||||
}
|
||||
}'
|
||||
```
|
||||
|
||||
### Sample response
|
||||
|
||||
```bash Response
|
||||
{
|
||||
"dataSource": {
|
||||
"id": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
|
||||
"externalId": "1234567890",
|
||||
"name": "my-bitbucket-source",
|
||||
"description": "my bitbucket data source",
|
||||
"isAutoScanEnabled": true,
|
||||
"projectId": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
|
||||
"createdAt": "2023-11-07T05:31:56Z",
|
||||
"updatedAt": "2023-11-07T05:31:56Z",
|
||||
"type": "bitbucket",
|
||||
"connectionId": "3c90c3cc-0d44-4b50-8888-8dd25736052a",
|
||||
"connection": {
|
||||
"app": "bitbucket",
|
||||
"name": "my-bitbucket-app",
|
||||
"id": "3c90c3cc-0d44-4b50-8888-8dd25736052a"
|
||||
},
|
||||
"config": {
|
||||
"workspaceSlug": "my-workspace",
|
||||
"includeRepos": ["*"]
|
||||
}
|
||||
}
|
||||
}
|
||||
```
|
||||
</Tab>
|
||||
</Tabs>
|
||||
|
After Width: | Height: | Size: 225 KiB |
|
After Width: | Height: | Size: 218 KiB |
|
After Width: | Height: | Size: 218 KiB |
|
After Width: | Height: | Size: 570 KiB |
|
After Width: | Height: | Size: 260 KiB |
|
After Width: | Height: | Size: 123 KiB |
|
After Width: | Height: | Size: 649 KiB |
|
After Width: | Height: | Size: 58 KiB |
|
After Width: | Height: | Size: 146 KiB |
|
After Width: | Height: | Size: 102 KiB |
|
After Width: | Height: | Size: 91 KiB |
|
After Width: | Height: | Size: 948 KiB |
|
After Width: | Height: | Size: 1.0 MiB |
|
After Width: | Height: | Size: 1.1 MiB |
@@ -92,7 +92,7 @@ Infisical supports the use of [Service Accounts](https://developer.1password.com
|
||||
"method": "api-token",
|
||||
"credentials": {
|
||||
"instanceUrl": "https://1pass.example.com",
|
||||
"apiToken": "[PRIVATE TOKEN]"
|
||||
"apiToken": "<YOUR-API-TOKEN>"
|
||||
}
|
||||
}'
|
||||
```
|
||||
|
||||
@@ -0,0 +1,133 @@
|
||||
---
|
||||
title: "Bitbucket Connection"
|
||||
description: "Learn how to configure a Bitbucket Connection for Infisical."
|
||||
---
|
||||
|
||||
Infisical supports the use of [API Tokens](https://support.atlassian.com/bitbucket-cloud/docs/api-tokens/) to connect with Bitbucket.
|
||||
|
||||
<Tip>
|
||||
Infisical recommends creating a dedicated Bitbucket account with access restricted to only the resources your use case requires.
|
||||
</Tip>
|
||||
|
||||
## Create Bitbucket Access Token
|
||||
|
||||
<Steps>
|
||||
<Step title="Create API Token">
|
||||
Go to [Account API Tokens](https://id.atlassian.com/manage-profile/security/api-tokens) and click **Create API token with scopes**.
|
||||
|
||||

|
||||
</Step>
|
||||
<Step title="Set Name and Expiry">
|
||||
Set the name and expiration date of the token, then click **Next**.
|
||||
|
||||

|
||||
|
||||
<Note>
|
||||
Keep in mind that you'll need to manually replace the token after it expires.
|
||||
</Note>
|
||||
</Step>
|
||||
<Step title="Select Bitbucket">
|
||||
Select **Bitbucket** and then click **Next**.
|
||||
|
||||

|
||||
</Step>
|
||||
<Step title="Configure Permissions">
|
||||
Configure permissions according to your app's use case:
|
||||
|
||||
<Tabs>
|
||||
<Tab title="Secret Scanning">
|
||||
```
|
||||
read:workspace:bitbucket
|
||||
read:user:bitbucket
|
||||
read:webhook:bitbucket
|
||||
write:webhook:bitbucket
|
||||
delete:webhook:bitbucket
|
||||
read:repository:bitbucket
|
||||
```
|
||||
|
||||

|
||||
</Tab>
|
||||
</Tabs>
|
||||
|
||||
Click **Next**.
|
||||
|
||||
</Step>
|
||||
<Step title="Copy Token">
|
||||
Save the API Token for later steps.
|
||||
|
||||

|
||||
</Step>
|
||||
</Steps>
|
||||
|
||||
## Create Bitbucket Connection in Infisical
|
||||
|
||||
<Tabs>
|
||||
<Tab title="Infisical UI">
|
||||
<Steps>
|
||||
<Step title="Navigate to App Connections">
|
||||
In your Infisical dashboard, go to **Organization Settings** and select the [**App Connections**](https://app.infisical.com/organization/app-connections) tab.
|
||||
|
||||

|
||||
</Step>
|
||||
<Step title="Select Bitbucket Connection">
|
||||
Click the **Add new connection** button and select **Bitbucket** from the list of available connections.
|
||||
</Step>
|
||||
<Step title="Fill out the Bitbucket Connection Modal">
|
||||
Complete the Bitbucket Connection form by entering:
|
||||
- A descriptive name for the connection
|
||||
- An optional description for future reference
|
||||
- Your Bitbucket email
|
||||
- The API Token from earlier steps
|
||||
|
||||

|
||||
</Step>
|
||||
<Step title="Connection Created">
|
||||
After clicking Create, your **Bitbucket Connection** is established and ready to use with your Infisical projects.
|
||||
|
||||

|
||||
</Step>
|
||||
</Steps>
|
||||
</Tab>
|
||||
<Tab title="API">
|
||||
To create a Bitbucket Connection, make an API request to the [Create Bitbucket Connection](/api-reference/endpoints/app-connections/bitbucket/create) API endpoint.
|
||||
|
||||
### Sample request
|
||||
|
||||
```bash Request
|
||||
curl --request POST \
|
||||
--url https://app.infisical.com/api/v1/app-connections/bitbucket \
|
||||
--header 'Content-Type: application/json' \
|
||||
--data '{
|
||||
"name": "my-bitbucket-connection",
|
||||
"method": "api-token",
|
||||
"credentials": {
|
||||
"email": "[email protected]",
|
||||
"apiToken": "<YOUR-API-TOKEN>"
|
||||
}
|
||||
}'
|
||||
```
|
||||
|
||||
### Sample response
|
||||
|
||||
```bash Response
|
||||
{
|
||||
"appConnection": {
|
||||
"id": "e5d18aca-86f7-4026-a95e-efb8aeb0d8e6",
|
||||
"name": "my-bitbucket-connection",
|
||||
"description": null,
|
||||
"version": 1,
|
||||
"orgId": "6f03caa1-a5de-43ce-b127-95a145d3464c",
|
||||
"createdAt": "2025-04-23T19:46:34.831Z",
|
||||
"updatedAt": "2025-04-23T19:46:34.831Z",
|
||||
"isPlatformManagedCredentials": false,
|
||||
"credentialsHash": "7c2d371dec195f82a6a0d5b41c970a229cfcaf88e894a5b6395e2dbd0280661f",
|
||||
"app": "bitbucket",
|
||||
"method": "api-token",
|
||||
"credentials": {
|
||||
"email": "[email protected]"
|
||||
}
|
||||
}
|
||||
}
|
||||
```
|
||||
</Tab>
|
||||
</Tabs>
|
||||
@@ -35,7 +35,7 @@ Missing an integration? [Throw in a request](https://github.com/Infisical/infisi
|
||||
| [Azure Key Vault](/integrations/cloud/azure-key-vault) | Cloud | Available |
|
||||
| [GCP Secret Manager](/integrations/cloud/gcp-secret-manager) | Cloud | Available |
|
||||
| [Windmill](/integrations/cloud/windmill) | Cloud | Available |
|
||||
| [BitBucket](/integrations/cicd/bitbucket) | CI/CD | Available |
|
||||
| [Bitbucket](/integrations/cicd/bitbucket) | CI/CD | Available |
|
||||
| [Codefresh](/integrations/cicd/codefresh) | CI/CD | Available |
|
||||
| [GitHub Actions](/integrations/cicd/githubactions) | CI/CD | Available |
|
||||
| [GitLab](/integrations/cicd/gitlab) | CI/CD | Available |
|
||||
|
||||
@@ -669,11 +669,11 @@ To help you sync secrets from Infisical to services such as Github and Gitlab, I
|
||||
|
||||
<Accordion title="Bitbucket">
|
||||
<ParamField query="CLIENT_ID_BITBUCKET" type="string" default="none" optional>
|
||||
OAuth2 client ID for BitBucket integration
|
||||
OAuth2 client ID for Bitbucket integration
|
||||
</ParamField>
|
||||
|
||||
<ParamField query="CLIENT_SECRET_BITBUCKET" type="string" default="none" optional>
|
||||
OAuth2 client secret for BitBucket integration
|
||||
OAuth2 client secret for Bitbucket integration
|
||||
</ParamField>
|
||||
</Accordion>
|
||||
|
||||
|
||||