LogoLogo
⌘Ctrlk
Sign UpGet a DemoContact Us
  • Home
  • API Reference
  • Release Notes
  • Roadmap
  • University
LogoLogo
  • Overview
    • Overview
    • Get Started
    • Key Concepts
    • What`s Supported
    • Set up Scans
    • Harness Security Scanners
    • Scanner Configuration
      • API DAST step configuration
      • Anchore Enterprise step configuration
      • Aqua Security step configuration
      • Aqua Trivy
      • AWS ECR step configuration
      • AWS Security Hub step configuration
      • Bandit step configuration
      • Black Duck step configuration
      • Brakeman step configuration
      • Burp Suite step configuration
      • Checkmarx
      • Checkov IaC scanning
      • Clair step configuration
      • Cortex Cloud step configuration
      • CodeQL step configuration
      • Coverity step configuration
      • Data Theorem step configuration
      • Docker Content Trust (DCT) step configuration
      • Fortify Static Code Analyzer step configuration
      • Fortify on Demand step configuration
      • Fossa step configuration
      • Gitleaks step configuration
      • GitHub Advanced Security step configuration
      • Grype
      • HCL AppScan step configuration
      • Mend step configuration
      • Metasploit Framework step configuration
      • ModelScan Step Configuration
      • Nessus step configuration
      • Nexus step configuration
      • Nikto step configuration
      • Nmap (Network Mapper) step configuration
      • OpenVAS step configuration
      • Open Source Vulnerabilities (OSV) step configuration
      • OWASP Dependency-Check step configuration
      • Prisma Cloud (formerly Twistlock) step configuration
      • Prowler step configuration
      • Qualys Web Application Scanning (WAS) step configuration
      • Reapsaw step configuration step configuration
      • ScoutSuite step configuration
      • Semgrep
      • Snyk
      • SonarQube step configuration
      • Sysdig step configuration
      • Tenable step configuration
      • Veracode step configuration
      • Wiz
      • Jfrog Xray step configuration
      • Zed Attack Proxy (ZAP)
      • STO step settings
    • Custom Scanning and Ingestion
    • Security Issues
    • Risk and Priortization
    • Enforce Policies for Governance
    • AppSec Chatbot
    • Severity Override
    • Remediate Issues
    • Create Jira Tickets
    • Exempt Issues
    • Set Notifications
    • Dashboards and Reports
    • Access Control - RBAC
    • FAQs
    • STO use cases
Powered by GitBook
For the complete documentation index, see llms.txt. This page is also available as Markdown.
  1. Documentation
  2. Application Security Testing
  3. Security Testing Orchestration
  4. 2.0
  5. Use STO
  6. Scanner Configuration

Shared

Additional ConfigAdvanced SettingsCustom ScanDind Bg Step SetupDind Bg StepLegacyMore InformationProxy SettingsRoot Access Requirements No DindRoot Access RequirementsStep PaletteSto Supported BinariesSto Supported CategoriesSto Supported Ingestion FormatsSto Supported MethodsSto Supported ScannersSupported InfrastructuresUse Scanner Provided SeverityWithout Dind Supported ScannersWiz Policy Failure Results

Last updated 8 days ago

Was this helpful?

LogoLogo

Resources

  • Sign up
  • Community
  • API Reference
  • YouTube
  • Release Notes
  • Roadmap
  • Feature Requests
  • Feature Availability
  • University
  • Instructor-Led Training
  • Partners

Legal

  • Terms of Use
  • Privacy Policy
  • Accessibility
  • Do not sell or share my personal information
linkedinfacebookinstagramx-twitteryoutube

Copyright © 2026 Harness Inc.

Was this helpful?