lisberndt-zap
Integrates with OWASP ZAP to provide comprehensive web application security testing through active vulnerability scanning, passive analysis, traditional spidering, and AJAX crawling with configurable scan policies, session management, and evidence collection for automated penetration testing workflows.
- Score
- 55.5152 signals
- Evidence
- 5 stars · 2 forks
- Last commit
- as last read from GitHub; most reads are from 2 Sep 2026 or later
- Listed
Install
No one-command install. Set it up from its source.
Alternatives · MCPs
- pentest-ai1,641 stars · 315 forks98.363
- portswigger-burp-suite1,124 stars · 185 forks97.940
- mordavid-bloodhound375 stars · 56 forks96.103
What it is
MCP server OWASP ZAP, catalogued on PulseMCP. Integrates with OWASP ZAP to provide comprehensive web application security testing through active vulnerability scanning, passive analysis, traditional spidering, and AJAX crawling with configurable scan policies, session management, and evidence collection for automated penetration testing workflows.
When to use it
Integrates with OWASP ZAP to provide comprehensive web application security testing through active vulnerability scanning, passive analysis, traditional spidering, and AJAX crawling with configurable scan policies, session management, and evidence collection for automated penetration testing workflows.
Notes
Listed from the PulseMCP registry. The registry does not state a license. Check it before production use.