42
I Use This!
Very High Activity
Analyzed about 21 hours ago. based on code collected 1 day ago.

Project Summary

The Zed Attack Proxy (ZAP) is one of the world’s most popular free security tools and is actively maintained by hundreds of international volunteers. It can help you automatically find security vulnerabilities in your web applications while you are developing and testing your applications. Its also a great tool for experienced pentesters to use for manual security testing.

Tags

dast extension hacking opensource scanner security testing vulnerability web zap

Apache License 2.0
Permitted

Commercial Use

Modify

Distribute

Place Warranty

Sub-License

Private Use

Use Patent Claims

Forbidden

Hold Liable

Use Trademarks

Required

Include Copyright

State Changes

Include License

Include Notice

These details are provided for information only. No information here is legal advice and should not be used as such.

Project Security

Vulnerabilities per Version ( last 10 releases )

Project Vulnerability Report

Security Confidence Index

Poor security track-record
Favorable security track-record

Vulnerability Exposure Index

Many reported vulnerabilities
Few reported vulnerabilities

Did You Know...

  • ...
    nearly 1 in 3 companies have no process for identifying, tracking, or remediating known open source vulnerabilities
  • ...
    you can embed statistics from Open Hub on your site
  • ...
    55% of companies leverage OSS for production infrastructure
  • ...
    anyone with an Open Hub account can update a project's tags
About Project Security

Languages

Java
52%
HTML
32%
XML
9%
13 Other
7%

30 Day Summary

Jul 17 2025 — Aug 16 2025

12 Month Summary

Aug 16 2024 — Aug 16 2025
  • 2284 Commits
    Up + 306 (15%) from previous 12 months
  • 41 Contributors
    Down -9 (18%) from previous 12 months

Ratings

9 users rate this project:
4.875
   
4.9/5.0
Click to add your rating
  
Review this Project!