Armory
Source
Browse
MCPs

lisberndt-zap

Integrates with OWASP ZAP to provide comprehensive web application security testing through active vulnerability scanning, passive analysis, traditional spidering, and AJAX crawling with configurable scan policies, session management, and evidence collection for automated penetration testing workflows.

Score
55.5152 signals
Evidence
5 stars · 2 forks
Last commit
as last read from GitHub; most reads are from 2 Sep 2026 or later
Listed

Install

No one-command install. Set it up from its source.

Alternatives · MCPs

  1. pentest-ai1,641 stars · 315 forks98.363
  2. portswigger-burp-suite1,124 stars · 185 forks97.940
  3. mordavid-bloodhound375 stars · 56 forks96.103

What it is

MCP server OWASP ZAP, catalogued on PulseMCP. Integrates with OWASP ZAP to provide comprehensive web application security testing through active vulnerability scanning, passive analysis, traditional spidering, and AJAX crawling with configurable scan policies, session management, and evidence collection for automated penetration testing workflows.

When to use it

Integrates with OWASP ZAP to provide comprehensive web application security testing through active vulnerability scanning, passive analysis, traditional spidering, and AJAX crawling with configurable scan policies, session management, and evidence collection for automated penetration testing workflows.

Notes

Listed from the PulseMCP registry. The registry does not state a license. Check it before production use.