At a glance
- Availability: Experimental (how to enable).
- Authentication: API key.
- Connection: The key comes from
SNYK_TOKEN. - Provider documentation: Authentication reference.
Credentials
Set these per environment. See Connect an integration.Setup
- Sign up for Snyk: Create a free account at https://app.snyk.io and import at least one repository so projects and issues exist to query.
- Get your API token: Go to Account Settings (https://app.snyk.io/account) and copy your personal API token, or create a service account token for shared use. Free plans include API access via the personal token.
- Set the environment variable: Add the token to your .env as SNYK_TOKEN=…
- Verify access: Run List Organizations, then List Projects with one of the returned org IDs.
Provider notes
- Authentication uses ‘Authorization: token <SNYK_TOKEN>’ - the prefix is ‘token’, not ‘Bearer’
- Every REST API request requires a date-based ?version= query parameter; tools default to 2024-10-15
- If your account is in a regional environment (e.g. US-02 at api.us.snyk.io), API hosts differ - these tools target the default https://api.snyk.io
- Responses follow the JSON:API format: items are under data[] with attributes, pagination under links
Tools
Verify the connection
Call a read tool such assnyk__list_orgs with arguments for your account. Confirm that the result comes from the intended account or workspace before enabling write tools.