O
OWASP ZAP
Open source Open SourceFree open-source web application security scanner maintained by OWASP.
About OWASP ZAP
OWASP ZAP (Zed Attack Proxy) is a free, open-source dynamic application security testing (DAST) tool maintained by the OWASP Foundation, used to find security vulnerabilities in web applications by actively probing a running app for issues like SQL injection and XSS. As a free, community-maintained alternative to commercial DAST scanners, it's widely used by security teams and in CI/CD pipelines for automated security testing.
🏢
Find Agencies That Specialise in OWASP ZAP
Get matched with vetted software agencies that use OWASP ZAP and can deliver your project.