> For the complete documentation index, see [llms.txt](https://developer.harness.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://developer.harness.io/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration.md).

# Scanner Configuration

{% content-ref url="/pages/ZEEHgvTgsgtAUlrXQ25j" %}
[API DAST step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/traceable-step-configuration.md)
{% endcontent-ref %}

{% content-ref url="/pages/BxRz2CchFdr0fwhQXa3Z" %}
[Anchore Enterprise step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/anchore-enterprise-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/TWLcTHb5UYN92AV2EgsM" %}
[Aqua Security step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/aquasec-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/0z1KaI40fMHTj067clr7" %}
[Aqua Trivy](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/trivy.md)
{% endcontent-ref %}

{% content-ref url="/pages/GhtX3q1SEKCOWQEaRhch" %}
[AWS ECR step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/aws-ecr-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/thcwYyj7mHkYuwhi8ltg" %}
[AWS Security Hub step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/aws-security-hub-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/ykFw6GVDYMahb0gQCc1l" %}
[Bandit step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/bandit-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/whYfAim6izcj4Op134hl" %}
[Black Duck step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/black-duck-hub-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/BevcZaC0bJqwzRmGCoij" %}
[Brakeman step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/brakeman-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/eg6hrWBxIvhbZSp78rlf" %}
[Burp Suite step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/burp-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/Mhe2qZbrqId4Dj9veyEJ" %}
[Checkmarx](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/checkmarx.md)
{% endcontent-ref %}

{% content-ref url="/pages/xXVychQp2UPUUxOfpLkC" %}
[Checkov IaC scanning](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/checkov-iac-scan.md)
{% endcontent-ref %}

{% content-ref url="/pages/BM8de1tzHL1ybrEnhWT5" %}
[Clair step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/clair-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/PONikiqy5rIaTjYkp4Jd" %}
[CodeQL step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/codeql-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/SFqHDlG0k5jN5EGiSuGZ" %}
[Coverity step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/coverity-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/vnD0ZQiNaL8GnikJ6szS" %}
[Data Theorem step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/data-theorem-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/2XX3YNkrdZ0V49qcEpBT" %}
[Docker Content Trust (DCT) step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/docker-content-trust-dct-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/bMib8xojIFFCbZJSAhpi" %}
[Fortify Static Code Analyzer step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/fortify-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/Sut7L6ii2zOyRJILruOh" %}
[Fortify on Demand step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/fortify-on-demand-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/g53f3QTIEJWfJD4rStCt" %}
[Fossa step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/fossa-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/B7ItQSBCOOfmcftdDg8g" %}
[Gitleaks step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/gitleaks-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/l5cRFqG2yRpkUj6H3KpK" %}
[GitHub Advanced Security step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/github-advanced-security.md)
{% endcontent-ref %}

{% content-ref url="/pages/Th8cQzOApXhAwtWp5YdA" %}
[Grype](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/grype.md)
{% endcontent-ref %}

{% content-ref url="/pages/IgWXQEmTLgEOJmb6hn9X" %}
[HCL AppScan step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/hql-appscan-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/Vsj1jsSJrJMIncH6HK1U" %}
[Mend step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/mend-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/PHSWvAfbAbH4JYNEiiB8" %}
[Metasploit Framework step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/metasploit-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/FCfAymx0wB7nbv4P8FQW" %}
[ModelScan Step Configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/modelscan.md)
{% endcontent-ref %}

{% content-ref url="/pages/ysX0Zrpru8rZOMojyvhP" %}
[Nessus step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/nessus-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/wQGS222zUJTi6rf3Uz32" %}
[Nexus step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/nexus-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/X4pBkpb1rErBODi21IIJ" %}
[Nikto step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/nikto-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/ehy8NmF14CeZ6kkCE5KP" %}
[Nmap (Network Mapper) step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/nmap-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/wIUA6KUQVtGEk6rpKbD8" %}
[OpenVAS step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/openvas-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/gZRcCqrH5jPPcGndj7D7" %}
[Open Source Vulnerabilities (OSV) step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/osv-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/0GehL0n9lB7ycqfwHH3z" %}
[OWASP Dependency-Check step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/owasp-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/1G8Lev4lJDMusu4UJB0k" %}
[Prisma Cloud (formerly Twistlock) step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/prisma-cloud-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/dofmdNRnSxbZoX6Bw1jc" %}
[Prowler step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/prowler-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/5cvJB51uaKikzt3qDz6M" %}
[Qualys Web Application Scanning (WAS) step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/qualys-web-app-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/GDiirdd3ogJqTZBo4qNh" %}
[Reapsaw step configuration step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/reapsaw-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/jm631LmaJyJ1l2hbUTQt" %}
[ScoutSuite step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/scoutsuite-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/P30yjiE5TnDsxDDT7kIS" %}
[Semgrep](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/semgrep.md)
{% endcontent-ref %}

{% content-ref url="/pages/AVqeu0tqjA69KvRIYBIK" %}
[Snyk](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/snyk.md)
{% endcontent-ref %}

{% content-ref url="/pages/uEuBqzZbaQmSPx3olLSW" %}
[SonarQube step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/sonarqube-sonar-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/FN3H3kNFvH7s4obNM0GL" %}
[Sysdig step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/sysdig-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/IK7M0Gap2c36OEsUsJtI" %}
[Tenable step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/tenable-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/Zv59wrKvw3geUKSKfxTA" %}
[Veracode step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/veracode-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/B4AP1TUlaroXvrjxgYba" %}
[Wiz](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/wiz.md)
{% endcontent-ref %}

{% content-ref url="/pages/RhhROkglpo9s4BBMqTaV" %}
[Jfrog Xray step configuration](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/xray-scanner-reference.md)
{% endcontent-ref %}

{% content-ref url="/pages/Ruf2XnJDAUo4sOLKEkzB" %}
[Zed Attack Proxy (ZAP)](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/zap.md)
{% endcontent-ref %}

{% content-ref url="/pages/UdeWAbiZdzOnf1SsbDGa" %}
[STO step settings](/security-testing-orchestration/3.0/use-sto/sto-scanner-configuration/security-step-settings-reference.md)
{% endcontent-ref %}
