Contributor
Vitika Soni

Postman Add-on for ZAP


Mentors
Rick M, thc202
Organization
OWASP Foundation
Technologies
java, api testing, Automation, jackson, POSTMan, Web Spidering
Topics
automation, java, OWASP, security tool, Postman, API Security, Web Spidering
The aim of this project is to develop an add-on for the OWASP ZAP that enables the import of Postman collections into ZAP. Currently, ZAP supports importing API definitions in OpenAPI and GraphQL formats, but lacks support for Postman collections. This add-on will allow security testers and developers to easily import Postman collections into OWASP ZAP and use its powerful security testing capabilities to identify potential vulnerabilities in their APIs. Additionally, it will include automation support and spidering functionality. This will increase the scope of testing and help ensure the security of APIs developed using Postman.