Repositories out of scope

Last updated: Mar 25, 2026


Fluid Attacks advises you import repositories using Open Authorization (OAuth), which involves authorizing the connection between the platform and your accounts on code repository hosting providers.

The four providers supported by the platform are GitLab, GitHub, Bitbucket, and Azure. After enabling OAuth, repositories that are not yet associated with any group within your organization are displayed in the Out of Scope section of your organization.

Assign repos to groups on the Fluid Attacks platform

Organization members with the Organization Manager role can decide which repositories to add to the platform for security testing by assigning them to specific groups.

Repositories can be added individually or in bulk. For detailed instructions, refer to "Import repositories fast and safely with OAuth".