Onboard Bitbucket Data Center
Connect Bitbucket Data Center to Cortex Cloud Application Security.
Onboard Bitbucket Data Center
Prerequisites
Before you begin:
Cortex Cloud user permissions: Ensure you have View/Edit permissions for Data Sources and Integrations. Use the AppSec Admin or Instance Administrator role.
Bitbucket authorization (PAT): Complete Reference A: Create a Bitbucket Data Center PAT. OAuth is not supported.
Scopes and permissions: The PAT requires Administrator permissions for both Projects and Repositories.
Expiration and rotation: Configure automatic expiration. Complete Reference B: Rotate Bitbucket Data Center tokens before the PAT expires.
Onboarding port: Allow port
443for outbound HTTPS communication to Cortex Cloud. A Transporter uses port443for its WSS tunnel.Egress path: Create an egress path for outbound data transmission from Cortex Cloud to third-party services. For details, refer to Egress configurations
Onboarding steps
Navigate to Settings → Data Sources & Integrations → + Add New.
Search for Bitbucket Data Center. Select Add or Add Another Instance.
Enter your domain on Configure Domain. Select Next.
Optional: Select your Broker VM and Transporter applet.
Select Next.
On Create a Personal Access Token, paste your PAT. Select Next.
On Select Repositories, choose the repositories to connect:
Permit all existing repositories.
Permit all existing and future repositories.
Select Choose from repository list and choose repositories.
Select Save, then select Close.
Verify integration
On Data Sources & Integrations, search for Bitbucket Data Center.
Select the result.
Confirm that your instance status is Connected.
Next steps
View repository assets and mitigate detected issues.
For subscribed webhook events, refer to Reference C: Bitbucket Data Center events.
Manage the integration
Instance-level actions
Navigate to Settings → Data Sources & Integrations and search for Bitbucket Data Center.
Select the matching result.
Locate your instance from the displayed list, right-click it, then select an option:
Edit instance: Opens the onboarding wizard, where you can change the instance configuration.
Delete instance: Deletes the instance and previous scan data.
Copy entire row: Copies all row values to the clipboard.
Repository-level actions
Right-click a connected repository to Set Scanned Branches, run a manual scan through Scan Repository, modify the Scan Configuration, or Remove Repository entirely. You can toggle specific scanners and manage PR behavior in Scan Configuration.
Locate your instance. See Verify integration above.
Select the instance. A list of connected repositories appears.
Right-click a repository, select the required action, then click Save.
Last updated
Was this helpful?
