What this is for
Settings → Integrations is the catalog of third-party connections for your organization. Each integration is a card on a searchable hub; clicking View integration opens a two-step dialog — Overview (what the connector does) and Connect (credentials and Test & Connect). Available today:- GitHub — AI-dependency discovery for Discovery.
- Azure AI Foundry and Amazon Bedrock — cloud agent inventory for Agents and Topology.
- Microsoft Entra ID — identity hydration and expanded ASI03 findings on agents (no separate agent list).
The integrations hub
Search and filters
Card states

Settings → Integrations hub
Integration dialog
Every View integration opens the same dialog shell:?open=<slug> on the integrations route selects the card automatically (azure-foundry, aws-bedrock, entra-id, github).

Integration dialog — Overview step (Azure AI Foundry)
GitHub
Connection state
Limits
- One GitHub PAT per organization.
- Used for Discovery only — no per-repo routing.
How to configure (GitHub)
Open the GitHub card
Create a PAT
repo and read:org.Test & Connect
Verify in Discovery
Azure AI Foundry
Connection state
Limits
- One Azure subscription per organization in v1.
- Data-plane role required at AI Services account scope (see permissions below).
How to configure (Azure AI Foundry)

Azure AI Foundry — Connect step
Register a Service Principal
Create a client secret
Grant subscription Reader
Grant account-scoped data-plane access
401 on agent APIs.Connect in Guardway
Verify agents
Required Azure permissions
Microsoft Entra ID
Connection state
Required Microsoft Graph permissions
Limits
- One tenant (same as Foundry SP).
- Identity sync chains after Foundry Resync — no separate Entra Resync button yet.
How to configure (Microsoft Entra ID)

Microsoft Entra ID — Connect step
Connect Azure AI Foundry first
Grant Graph admin consent
Test Microsoft Graph access
Resync Foundry
Amazon Bedrock
Connection state
Limits
- One AWS account + region per organization in v1.
- No MCP servers on Bedrock agents (MCP column stays empty).
- Guardrails referenced by agents appear as metadata only.
Required AWS IAM permissions
AmazonBedrockReadOnly plus sts:GetCallerIdentity (or ReadOnlyAccess).
How to configure (Amazon Bedrock)

Amazon Bedrock — Connect step
Create an IAM user
guardway-cloud-agent-discovery).Attach policies
AmazonBedrockReadOnly and inline sts:GetCallerIdentity on *.Create access key
Connect in Guardway
Verify agents
Coming soon
Hub cards marked Soon: Okta, Slack, Jira, GitLab. Email support@guardway.ai to prioritize one.Related
- Agents — inventory and findings.
- Dashboard → Agents — org-wide agent metrics.
- Topology — gateway → provider → model → agent graph.
- Discovery — GitHub-powered repository scans.