CONNECT APP
Build with Security Reporter
Infrastructure & Cloud
- API key
MCP
Give your agent Security Reporter tools
Every Security Reporter action is exposed as an MCP tool on Pipedream's remote server. Point a client at it with your end user's ID and Connect resolves that user's Security Reporter account for each tool call — you store no tokens.
// accessToken: mint a short-lived token with the Connect SDK — see the MCP guide
const transport = new StreamableHTTPClientTransport(
new URL("https://remote.mcp.pipedream.net/v3"),
{
requestInit: {
headers: {
Authorization: `Bearer ${accessToken}`,
"x-pd-project-id": "{project_id}",
"x-pd-environment": "production",
"x-pd-external-user-id": "{external_user_id}", // any stable ID for this user in your system
"x-pd-app-slug": "security_reporter",
},
},
},
)
const mcp = new Client({ name: "my-agent", version: "1.0.0" })
await mcp.connect(transport)
const { tools } = await mcp.listTools()
// e.g. run Create Security Assessment:
const result = await mcp.callTool({
name: "security_reporter-create-assessment",
arguments: {
clientId: "Client ID",
assessmentTemplateId: "Assessment Template ID",
},
})# access_token: mint a short-lived token with the Connect SDK — see the MCP guide
headers = {
"Authorization": f"Bearer {access_token}",
"x-pd-project-id": "{project_id}",
"x-pd-environment": "production",
"x-pd-external-user-id": "{external_user_id}", # any stable ID for this user in your system
"x-pd-app-slug": "security_reporter",
}
async with streamablehttp_client("https://remote.mcp.pipedream.net/v3", headers=headers) as (read, write, _):
async with ClientSession(read, write) as session:
await session.initialize()
tools = await session.list_tools()
# e.g. run Create Security Assessment:
result = await session.call_tool("security_reporter-create-assessment", {
"clientId": "Client ID",
"assessmentTemplateId": "Assessment Template ID",
})API PROXY
Call the Security Reporter API directly
For an endpoint with no pre-built tool, the Connect proxy forwards your request to the Security Reporter API with the connected user's credentials attached. You store no tokens and write no refresh logic.
const resp = await pd.proxy.get({
externalUserId: "{external_user_id}", // any stable ID for this user in your system
accountId: "apn_xxxxxxx",
url: "https://api.example.com/v1/me",
})
// Any allowed Security Reporter endpoint works here. Pipedream attaches the
// connected account's credentials to the outgoing request.# The path segment is the target URL, URL-safe base64 encoded:
# https://api.example.com/v1/me
curl "https://api.pipedream.com/v1/connect/{project_id}/proxy/aHR0cHM6Ly9hcGkuZXhhbXBsZS5jb20vdjEvbWU?external_user_id={external_user_id}&account_id=apn_xxxxxxx" \
-H "Authorization: Bearer {access_token}" \
-H "x-pd-environment: production"SDK
Run Security Reporter actions from your backend
Connect a user's Security Reporter account once, then run Create Security Assessment on their behalf from your own code — TypeScript, Python, or plain HTTP.
import { PipedreamClient } from "@pipedream/sdk"
const pd = new PipedreamClient({
projectId: process.env.PIPEDREAM_PROJECT_ID!,
clientId: process.env.PIPEDREAM_CLIENT_ID!,
clientSecret: process.env.PIPEDREAM_CLIENT_SECRET!,
projectEnvironment: "production",
})
const result = await pd.actions.run({
id: "security_reporter-create-assessment",
externalUserId: "{external_user_id}", // any stable ID for this user in your system
configuredProps: {
security_reporter: { authProvisionId: "apn_xxxxxxx" },
clientId: "Client ID",
assessmentTemplateId: "Assessment Template ID",
},
})from pipedream import Pipedream
pd = Pipedream(
client_id="{oauth_client_id}",
client_secret="{oauth_client_secret}",
project_id="{project_id}",
project_environment="production",
)
result = pd.actions.run(
id="security_reporter-create-assessment",
external_user_id="{external_user_id}", # any stable ID for this user in your system
configured_props={
"security_reporter": {"authProvisionId": "apn_xxxxxxx"},
"clientId": "Client ID",
"assessmentTemplateId": "Assessment Template ID",
},
)curl -X POST https://api.pipedream.com/v1/connect/{project_id}/actions/run \
-H "Content-Type: application/json" \
-H "X-PD-Environment: production" \
-H "Authorization: Bearer {access_token}" \
-d '{
"external_user_id": "{external_user_id}",
"id": "security_reporter-create-assessment",
"configured_props": {
"security_reporter": { "authProvisionId": "apn_xxxxxxx" },
"clientId": "Client ID",
"assessmentTemplateId": "Assessment Template ID"
}
}'TOOLS
Security Reporter actions
On-demand operations your product or agent can configure and run on behalf of a connected user.
-
Create Security Assessment
actionCreates a new security assessment. See the documentationWritev0.0.2 -
Create Security Finding
actionCreates a new security finding. See the documentationWritev0.1.1 -
List Assessment ID Options
actionRetrieves available options for the Assessment ID field.Read-onlyv0.0.1 -
List Assessment Template ID Options
actionRetrieves available options for the Assessment Template ID field.Read-onlyv0.0.1 -
List Client ID Options
actionRetrieves available options for the Client ID field.Read-onlyv0.0.1 -
List Finding ID Options
actionRetrieves available options for the Finding ID field.Read-onlyv0.0.1 -
List Language ID Options
actionRetrieves available options for the Language ID field.Read-onlyv0.0.1 -
List Theme ID Options
actionRetrieves available options for the Theme ID field.Read-onlyv0.0.1 -
Update Security Finding
actionUpdates an existing security finding. See the documentationWritev0.1.1
EVENTS
Security Reporter triggers
Event sources your backend can deploy for users and receive through a webhook.
REFERENCE
App details
Reference metadata for the Security Reporter connector in the Pipedream registry.
- App slug
- security_reporter
- Authentication
- API key
- Categories
- Infrastructure & Cloud
- Actions
- 9
- Triggers
- 3
- API proxy
- Available