Bitbucket & Azure Repos

Connect Bitbucket Cloud and Azure Repos for automated pull request reviews.

Bitbucket Cloud

  1. Create an app password: Personal settings → App passwords with repositories read/write and pull requests read/write.
  2. In ScanDrix: Settings → Integrations → Bitbucket and paste the workspace + app password.
  3. Register the webhook (see Webhook Setup) for pullrequest:created and pullrequest:updated.

Reviews post as pull request comments with the ScanDrix merge check attached.

Azure Repos

  1. Create a Personal Access Token (PAT) with Code (read & write) and Pull Request Threads (read & write) scopes.
  2. In ScanDrix: Settings → Integrations → Azure Repos — enter organization, project, and the PAT.
  3. Register the service hook for Pull request created and Pull request updated (Azure DevOps → Service hooks → Webhooks), pointing at the ScanDrix webhook URL with the provided secret.

Azure service hooks deliver JSON payloads with a custom X-VSS-Auth header; ScanDrix validates the shared secret, so treat it like any webhook credential and rotate it from the dashboard if leaked.

Forgejo

Forgejo uses a personal or project access token plus a push/MR webhook. Add it under Settings → Integrations → Forgejo with instance URL, token, and webhook secret.

Common behavior across providers

  • Review posting — inline comments, severity labels, and a summary; identical rule engine and scandrix.yml support everywhere.
  • Blocking — provider-native merge checks/required reviewers are updated from ScanDrix findings.
  • Scopes are minimal — each integration grants comment/read permissions only; code write access is never requested.

Troubleshooting