Kiket docs
Integrations

GitHub webhook ingestion

Ingest GitHub pull request, review, CI, deployment, and issue events into Kiket evidence.

GitHub is Kiket's flagship evidence connector for production change and engineering dogfood.

Register an event source

POST /platform/event-sources
Authorization: Bearer …
Content-Type: application/json

{
  "workspaceId": "…",
  "sourceKey": "github-prod",
  "sourceSystem": "github",
  "displayName": "GitHub production repository",
  "ingestionMode": "webhook",
  "configuration": {
    "webhookSecret": "…"
  }
}

Webhook URL

POST /api/v1/integrations/github/webhook

Required headers:

  • X-GitHub-Event
  • X-GitHub-Delivery
  • X-Hub-Signature-256 (when secret configured)
  • X-Kiket-Organization-Id
  • X-Kiket-Event-Source-Key

Supported events

GitHub eventNormalized output
pull_request (merged)repository.pull_request_merged
pull_request_review (approved)approval.recorded
check_run (completed)evidence.observed
deployment / deployment_status (success)deployment.completed
issuescase.updated + github_issue evidence
issue_commentevidence.observed + issue_comment evidence

Link cases by embedding case: <uuid> in issue/PR bodies.

Flagship demo

Pair with the production change process template and @kiket/github-adapter. A merged PR without approval evidence should produce an explainable approval_missing finding within one scanner run.

On this page