Zed Attack Proxy
zap · v2.17.0 • deprecated
Free and open source web app scanner
brew install --cask zap Trust Score 7/10
Review
Mar 10, 2026Zed Attack Proxy (ZAP) is a free and open-source web application security scanner that automates vulnerability detection, integrates with CI/CD pipelines, and offers active scanning features. It benefits developers and security teams by identifying security flaws early in the development process.
ZAP automatically detects security vulnerabilities in web applications.
Maturity: The project is mature with active development and a large community, though it has a high number of open issues.
Community: No significant community discussion found, with limited engagement on HN.
Pros
- + Open-source and free to use.
- + Integrates well with CI/CD pipelines.
- + Active development with recent updates.
Cons
- - No automatic updates feature.
- - High number of open issues.
Community Mentions
Similar apps
View all alternatives →mitmproxy
mitmproxy
Intercept, modify, replay, save HTTP/S traffic
ngrok
ngrok
Reverse proxy, secure introspectable tunnels to localhost