SafeToOpen Browser Security
Ticketing & SIEM Integration Guides
Connect Browser Security incidents to ServiceNow, Jira, your SIEM or SOAR, and close the loop.
Overview and Setup
Concepts, choosing push, pull or email-to-ticket, and step-by-step console setup. Start here.
ServiceNow Integration Guide
Scripted REST receiver, incident mapping, close-the-loop Business Rule and a polling alternative.
Jira Integration Guide
Jira Automation incoming webhook or a signature-verifying relay, plus close-the-loop rules.
Webhook and API Reference
Payloads, headers, signature verification code, polling, schema variants and error codes.
Which guide do I need?#
- Administrators — Read the Overview first: it explains events, workspaces and the three integration routes, and shows the console screens.
- ServiceNow or Jira owners — Go straight to the ServiceNow or Jira guide; each is self-contained and ends with a test plan.
- Engineers building a receiver, relay or collector — Use the Reference: payload fields, signature verification in Python, Node and PowerShell, polling, OCSF/ECS/CEF, STIX/TAXII and error codes.
Before you start#
You need an Owner or Co-administrator login to https://plus.safetoopen.com/business-console#/integrations, where tokens and webhooks are created. Tokens and webhook secrets are shown once; keep them in your secret store.
Machine-readable documentation of every endpoint is published at https://plus.safetoopen.com/api/integrations/openapi.