
SCM Integration
Black Duck's SCM integrations enable deep, automated access to your code repositories—allowing Polaris and Black Duck SCA/Coverity engines to initiate scans on commit, pull request, or branch events. This builds a foundation for shift-left security and proactive supply-chain governance.
Broad Platform Support
Supports leading SCM systems: GitHub (cloud & enterprise), GitLab (SaaS & self-hosted), Azure DevOps (cloud), and Bitbucket (cloud & self-hosted).
Direct communication with SCM providers enables automatic discovery of repositories and branches—eliminating manual onboarding.
Automated Project Onboarding and Scanning
Create new projects in Polaris automatically from your SCM repo—mapping default branches and scheduling SAST/SCA scans triggered by commits or pull requests
Schedule recurring scans or run on-demand via UI for immediate risk insights.
Admin Dashboard and Easy Configuration
System administrators can manage, edit, and maintain SCM integrations from a centralized admin interface, including permissions and access token management.
Both cloud-hosted and self-hosted setup options supported with minimal config—Docker-based deployment available for hybrid setups.

