Performs static analysis of OpenAPI (Swagger) definitions. Runs 300+ security checks based on the security best practices of the OpenAPI Specification. Used during API design, development, and testing, or with pull request reviews and CI/CD pipelines.
02
API Contract Conformance Scan
Conducts dynamic testing of the actual API implementation. Applicable in penetration testing, CI/CD pipelines, and test procedures. Checks the API for compliance with the OpenAPI contract and identifies vulnerabilities during testing and runtime.
03
API Protection
Implements a micro-firewall to protect live API endpoints from malicious attacks. Uses a positive security model based on OpenAPI contract data conformance to protect APIs, block malicious attacks, and differentiate API attacks from legitimate traffic.
04
API Capture
Automates the generation of OpenAPI contracts and API security testing configurations from Postman collections and API traffic.
05
Threat Prevention and Anomaly Detection
Detects OWASP API Security Top 10 issues such as data leakage, overflows, mass assignment, broken authentication, and security misconfigurations. Identifies vulnerabilities triggered by wrong verbs, paths, content-types, data formats, and data outside of API constraints.
Your plan caps how many capabilities are shown — upgrade to see the full list