Integrations / Snyk
Snyk
Snyk security platform for organizations, projects, targets, issues, dependencies, packages, and vulnerability evidence.
What Telara does
Capability matrix
Before you connect
Prerequisites
Vendor setup
Get the credential
Permissions Telara requests
- org.readOAuth 2.0
- org.project.readOAuth 2.0
- org.project.snapshot.readOAuth 2.0
- org.project.createOAuth 2.0
- org.project.editOAuth 2.0
- org.project.deleteOAuth 2.0
- org.project.statusOAuth 2.0
- org.project.testOAuth 2.0
- org.project.ignore.createOAuth 2.0
- org.project.ignore.editOAuth 2.0
- org.project.ignore.deleteOAuth 2.0
- org.project.tag.editOAuth 2.0
- org.project.attributes.editOAuth 2.0
- org.collection.createOAuth 2.0
- org.collection.editOAuth 2.0
- org.collection.deleteOAuth 2.0
- org.package.testOAuth 2.0
In Telara
Connect in Telara
Snyk App OAuth credentials.
In Telara, open Settings → Integrations, choose this connector, and click Connect. Telara sends you to the vendor to approve access, then returns you here. You do not create an OAuth app or paste a client secret.
Snyk API or service account token.
In Telara, open Settings → Integrations, choose this connector, and paste the key into the fields Telara shows.
- API token
Knowledge
What gets indexed
| Resource | Coverage |
|---|---|
| Organization | Partial — not every record the vendor holds is synced |
| Target | Partial — not every record the vendor holds is synced |
| Vulnerability | Partial — not every record the vendor holds is synced |
| Projects | Partial — not every record the vendor holds is synced |
Sync
Freshness & sync
| Resource | Lag | Deletions |
|---|---|---|
| Organization | Up to 1 hour | Removed records disappear on the next full sync |
| Target | Up to 1 hour | Removed records disappear on the next full sync |
| Vulnerability | Up to 1 hour | Removed records disappear on the next full sync |
| Projects | Up to 1 hour | Removed records disappear on the next full sync |
Data handling
Permissions & data handling
The scopes above are the permissions this connector requests. They come from the catalog, not from a hand-written page.
Excluded from semantic search: Organization, Target, Vulnerability, Projects.
After connect
Verify it worked
After you save, Telara runs a read-only check against the account. The integration shows as connected when that check succeeds.
Honesty

