ThreatX
ThreatX
Overview
The ThreatX integration connects the Praetorian Guard Platform (PGP) with your ThreatX web application and API protection (WAAP) tenant, importing ThreatX-identified risks into your attack surface so they can be triaged alongside vulnerabilities from the rest of your environment.
This integration operates in a read-only capacity. PGP queries the ThreatX API to retrieve risk data and never modifies tenants, rules, or configurations in your ThreatX environment.
Prerequisites
Before setting up the integration, ensure you have:
An active ThreatX account with Tenant Admin or Channel Admin access
A ThreatX API key generated by an account with sufficient privileges
Generating an API Key
Log in to ThreatX at
https://provision.threatx.io(or your organization's ThreatX URL)Navigate to Settings > API Keys
Click Add API Key
Copy the generated key and store it securely -- it will not be shown again
The API key inherits the permissions of the account that creates it. Use an account with at least Tenant Admin access.
Creating an Integration Instance in ThreatX
If your ThreatX deployment requires naming integration instances (e.g., for audit or tracking purposes), note the name you assigned. This will be used as a label in PGP to identify the connection.
Setup
In PGP, go to Integrations and click Add Integration
Select ThreatX
Enter the required credentials
Click Submit -- PGP will validate the credentials before saving
To connect additional ThreatX tenants, repeat these steps with a different Integration Instance Name and API key.
Field Reference
Permissions
ThreatX API keys do not have granular permission scopes. The key inherits the access level of the account that created it. Ensure the creating account has at least Tenant Admin privileges so the integration has sufficient visibility into risks.