43
I Use This!
Very High Activity
Analyzed 1 day ago. based on code collected 2 days ago.

Project Summary

The Zed Attack Proxy (ZAP) is one of the world’s most popular free security tools and is actively maintained by hundreds of international volunteers. It can help you automatically find security vulnerabilities in your web applications while you are developing and testing your applications. Its also a great tool for experienced pentesters to use for manual security testing.

Tags

dast extension hacking opensource scanner security testing vulnerability web zap

Apache License 2.0
Permitted

Commercial Use

Modify

Distribute

Place Warranty

Sub-License

Private Use

Use Patent Claims

Forbidden

Hold Liable

Use Trademarks

Required

Include Copyright

State Changes

Include License

Include Notice

These details are provided for information only. No information here is legal advice and should not be used as such.

Project Security

Vulnerabilities per Version ( last 10 releases )

Project Vulnerability Report

Security Confidence Index

Poor security track-record
Favorable security track-record

Vulnerability Exposure Index

Many reported vulnerabilities
Few reported vulnerabilities

Did You Know...

  • ...
    65% of companies leverage OSS to speed application development in 2016
  • ...
    you can embed statistics from Open Hub on your site
  • ...
    nearly 1 in 3 companies have no process for identifying, tracking, or remediating known open source vulnerabilities
  • ...
    compare projects before you chose one to use
About Project Security

Languages

Java
52%
HTML
32%
XML
9%
13 Other
7%

30 Day Summary

May 29 2025 — Jun 28 2025

12 Month Summary

Jun 28 2024 — Jun 28 2025
  • 2289 Commits
    Up + 235 (11%) from previous 12 months
  • 40 Contributors
    Down -12 (23%) from previous 12 months

Ratings

9 users rate this project:
4.875
   
4.9/5.0
Click to add your rating
  
Review this Project!