The Integrations page (Profile Menu → Integrations) lets you connect S4E to external services for alerting, DNS asset discovery, and threat intelligence enrichment.
Note
The Integrations page is only accessible to organization Admins on an Enterprise or Premier plan.
Overview
Integrations are organized into three categories:
| Category | Purpose |
|---|---|
| Alert | Send security alerts and notifications to messaging platforms |
| DNS Integration | Import and sync domain assets from DNS providers |
| Threat Intelligence | Enrich findings with data from threat intelligence platforms |
Each integration is shown as a card with a description and an Action button. When connected, a Connected chip appears on the card.
Alert Integrations
SMS
Delivers alerts as SMS messages to your verified phone number.
Requirements: Your phone number must be verified in your profile before connecting.
To connect:
- On the SMS card, click Action → Connect.
- The integration connects automatically using your verified phone number.
After connecting:
- Action → Alert Settings -- Configure which events trigger an SMS alert.
- Action → Send Test Data -- Send a test message to verify the integration.
- Action → Disable -- Disconnect.
Discord
Sends alert notifications to a Discord channel via an incoming webhook.
To connect:
- In your Discord server, create an Incoming Webhook for the target channel and copy the webhook URL.
- On the Discord card, click Action → Connect.
- Paste the webhook URL into the field and click Save.
After connecting:
- Action → Alert Settings -- Configure which events send a Discord notification.
- Action → Send Test Data -- Post a test message to your channel.
- Action → Disable -- Disconnect.
Slack
Sends alert notifications to a Slack channel via an incoming webhook.
To connect:
- In your Slack workspace, create an Incoming Webhook for the target channel and copy the webhook URL.
- On the Slack card, click Action → Connect.
- Paste the webhook URL into the field and click Save.
After connecting:
- Action → Alert Settings -- Configure which events send a Slack notification.
- Action → Send Test Data -- Post a test message to your channel.
- Action → Disable -- Disconnect.
DNS Integrations
DNS integrations import domains from your DNS provider directly into S4E as assets. You can choose automatic sync so that new domains added to your provider appear in S4E automatically.
DigitalOcean
Imports domains managed in your DigitalOcean account.
To connect:
- In your DigitalOcean account, generate a Personal Access Token.
- On the DigitalOcean card, click Action → Connect.
- Enter your Personal Access Token.
- Check Add New Domains Automatically to enable auto-sync, or leave it unchecked for manual-only import.
- Click Save.
After connecting:
- Action → List Domains -- View the domains imported from your DigitalOcean account.
- Action → Update -- Update the token or change the auto-sync setting.
- Action → Disable -- Disconnect.
Cloudflare
Imports domains managed in your Cloudflare account.
To connect:
- In your Cloudflare account, create an API Token.
- On the Cloudflare card, click Action → Connect.
- Enter your API Token.
- Check Add New Domains Automatically to enable auto-sync, or leave it unchecked for manual-only import.
- Click Save.
After connecting:
- Action → List Domains -- View the domains imported from your Cloudflare account.
- Action → Update -- Update the token or change the auto-sync setting.
- Action → Disable -- Disconnect.
Threat Intelligence Integrations
Threat intelligence integrations enrich your findings with data from external threat intelligence platforms. These integrations require contacting the S4E sales team to activate.
| Provider | Description |
|---|---|
| Brandefense | Advanced threat detection and brand monitoring with threat intelligence feeds. |
| IntelX.io | Comprehensive threat intelligence data including leaked credentials and exposed data. |
| ProudSec | Security monitoring enriched with advanced threat detection and analysis. |
To connect:
- On the provider card, click Action → Connect.
- A Let's Talk dialog appears -- use it to contact the S4E team and request activation.
After connecting:
- Action → Threat Intelligence -- Navigate to the Threat Intelligence page filtered by this provider to view enriched data.
What's Next?
- Users & Roles -- Manage who can access integrations.
- Actions -- Automate responses to findings using actions.