From e8db45aeb43ea7b83bc79341ef9db4a9edb39424 Mon Sep 17 00:00:00 2001 From: zapbot <12745184+zapbot@users.noreply.github.com> Date: Wed, 3 Dec 2025 16:33:02 +0000 Subject: [PATCH] Update site content From: zaproxy/zaproxy-website@6c820d20b4cb89d909510b41410b798d708f5a23 Signed-off-by: zapbot <12745184+zapbot@users.noreply.github.com> --- addons/index.html | 48 +++++----- .../auth-report-json/index.html | 31 +++++- .../automation-framework/job-ascan/index.html | 2 + .../addons/selenium/options/index.html | 4 +- docs/sbom/authhelper/index.html | 62 +++++------- docs/sbom/automation/index.html | 18 ++-- docs/sbom/client/index.html | 32 +++++-- docs/sbom/index.html | 8 +- docs/sbom/retire/index.html | 18 ++-- docs/sbom/scripts/index.html | 22 ++--- docs/sbom/selenium/index.html | 94 ++++++++++--------- docs/sbom/spiderajax/index.html | 54 +++++------ docs/sbom/wappalyzer/index.html | 20 ++-- docs/statistics/index.xml | 2 +- .../top-addons-last-month/index.html | 6 +- index.xml | 6 +- search/index.json | 12 +-- 17 files changed, 229 insertions(+), 210 deletions(-) diff --git a/addons/index.html b/addons/index.html index 9faf377126..864c3255bf 100644 --- a/addons/index.html +++ b/addons/index.html @@ -320,7 +320,7 @@

ZAP Marketplace

Repository - Download + Download @@ -333,7 +333,7 @@

ZAP Marketplace

spiderAjax - 23.27.0 + 23.28.0 release @@ -342,7 +342,7 @@

ZAP Marketplace

ZAP Dev Team - 2025-11-04 + 2025-12-03 @@ -456,7 +456,7 @@

ZAP Marketplace

Repository - Download + Download @@ -469,7 +469,7 @@

ZAP Marketplace

authhelper - 0.32.0 + 0.33.0 beta @@ -478,7 +478,7 @@

ZAP Marketplace

ZAP Dev Team - 2025-11-07 + 2025-12-03 @@ -524,7 +524,7 @@

ZAP Marketplace

Repository - Download + Download @@ -537,7 +537,7 @@

ZAP Marketplace

automation - 0.56.0 + 0.57.0 beta @@ -546,7 +546,7 @@

ZAP Marketplace

ZAP Dev Team - 2025-11-07 + 2025-12-03 @@ -726,7 +726,7 @@

ZAP Marketplace

Repository - Download + Download @@ -739,7 +739,7 @@

ZAP Marketplace

client - 0.18.0 + 0.19.0 alpha @@ -748,7 +748,7 @@

ZAP Marketplace

ZAP Dev Team - 2025-11-04 + 2025-12-03 @@ -3180,7 +3180,7 @@

ZAP Marketplace

Repository - Download + Download @@ -3193,7 +3193,7 @@

ZAP Marketplace

retire - 0.50.0 + 0.51.0 release @@ -3202,7 +3202,7 @@

ZAP Marketplace

Nikita Mundhada and the ZAP Dev Team - 2025-11-04 + 2025-12-03 @@ -3386,7 +3386,7 @@

ZAP Marketplace

Repository - Download + Download @@ -3399,7 +3399,7 @@

ZAP Marketplace

scripts - 45.15.0 + 45.16.0 release @@ -3408,7 +3408,7 @@

ZAP Marketplace

ZAP Dev Team - 2025-11-04 + 2025-12-03 @@ -3421,7 +3421,7 @@

ZAP Marketplace

Repository - Download + Download @@ -3434,7 +3434,7 @@

ZAP Marketplace

selenium - 15.41.0 + 15.42.0 release @@ -3443,7 +3443,7 @@

ZAP Marketplace

ZAP Dev Team - 2025-10-21 + 2025-12-03 @@ -3662,7 +3662,7 @@

ZAP Marketplace

Repository - Download + Download @@ -3675,7 +3675,7 @@

ZAP Marketplace

wappalyzer - 21.49.0 + 21.50.0 release @@ -3684,7 +3684,7 @@

ZAP Marketplace

ZAP Dev Team - 2025-11-04 + 2025-12-03 diff --git a/docs/desktop/addons/authentication-helper/auth-report-json/index.html b/docs/desktop/addons/authentication-helper/auth-report-json/index.html index 6fa4f676a7..ca7603573b 100644 --- a/docs/desktop/addons/authentication-helper/auth-report-json/index.html +++ b/docs/desktop/addons/authentication-helper/auth-report-json/index.html @@ -1905,6 +1905,14 @@

Sections Domains domains +
+ Domains Partially Out of Scope + domainspartiallyoutofscope +
+
+ Domains Out of Scope + domainsoutofscope +
Diagnostics diagnostics @@ -2058,6 +2066,25 @@

Statistics These are all of the statistics that have been recorded by ZAP.
For more details of what they mean see
https://www.zaproxy.org/docs/internal-statistics/

+

Domains

+

This section contains an array with all the domains that were accessed while performing the authentication.

+
	"domains": [
+		"https://www.example.org",
+		"https://api.example.org"
+	]
+
+

Domains Partially Out of Scope

+

This section contains an array with the domains partially out of scope, that were accessed while performing the authentication. For example, when the context includes just a subset of the target (e.g. https://www.example.org/frontend/) and other resources were also accessed (e.g. https://www.example.org/backend/).

+
	"domainsPartiallyOutOfScope": [
+		"https://www.example.org"
+	]
+
+

Domains Out of Scope

+

This section contains an array with the domains out of scope (context), that were accessed while performing the authentication.

+
	"domainsOutOfScope": [
+		"https://api.example.org"
+	]
+

Diagnostics

The Browser Based and Client Script authentication methods allow to record diagnostic data, which can be included in the Authentication Report, to help diagnose authentication problems.

Diagnostic data can also be recorded with the Authentication Tester Dialog.

@@ -2279,10 +2306,6 @@

Sample YAML Browser Profiles Browser Extensions

-

You can add, remove, enable, or disable browser extensions via the relevant buttons on this screen. Supported browsers and file extensions are:

+

You can add, remove, enable, or disable browser extensions via the relevant buttons on this screen. Supported browsers and extensions are:

Add-ons can also add new browser extensions. If you delete a browser extension via this screen then it will be added again by the add-on so either just disable it or uninstall the add-on to remove the browser extension.

diff --git a/docs/sbom/authhelper/index.html b/docs/sbom/authhelper/index.html index 5c02ceae94..70cd1275eb 100644 --- a/docs/sbom/authhelper/index.html +++ b/docs/sbom/authhelper/index.html @@ -122,9 +122,9 @@

Authentication Helper Add-on SBOM

Authentication Helper
-

This page contains a list of all the libraries involved in building version 0.32.0 of the +

This page contains a list of all the libraries involved in building version 0.33.0 of the "Authentication Helper" add-on. -

You may download the full Software Bill Of Materials (SBOM) JSON file +

You may download the full Software Bill Of Materials (SBOM) JSON file for this add-on.

@@ -203,7 +203,7 @@

Authentication Helper Add-on SBOM

- + @@ -317,25 +317,25 @@

Authentication Helper Add-on SBOM

- + - + - + - + @@ -357,6 +357,12 @@

Authentication Helper Add-on SBOM

+ + + + + + @@ -465,6 +471,12 @@

Authentication Helper Add-on SBOM

+ + + + + + @@ -659,13 +671,13 @@

Authentication Helper Add-on SBOM

- + - + @@ -963,12 +975,6 @@

Authentication Helper Add-on SBOM

- - - - - - @@ -1109,7 +1115,7 @@

Authentication Helper Add-on SBOM

- + @@ -1241,7 +1247,7 @@

Authentication Helper Add-on SBOM

- + @@ -1395,15 +1401,9 @@

Authentication Helper Add-on SBOM

- - - - - - - + @@ -1551,18 +1551,6 @@

Authentication Helper Add-on SBOM

- - - - - - - - - - - - @@ -1583,7 +1571,7 @@

Authentication Helper Add-on SBOM

- + diff --git a/docs/sbom/automation/index.html b/docs/sbom/automation/index.html index a5f6c5d212..1e20382a4e 100644 --- a/docs/sbom/automation/index.html +++ b/docs/sbom/automation/index.html @@ -122,9 +122,9 @@

Automation Framework Add-on SBOM

Automation Framework
-

This page contains a list of all the libraries involved in building version 0.56.0 of the +

This page contains a list of all the libraries involved in building version 0.57.0 of the "Automation Framework" add-on. -

You may download the full Software Bill Of Materials (SBOM) JSON file +

You may download the full Software Bill Of Materials (SBOM) JSON file for this add-on.

automation0.56.00.57.0
bcmail-jdk18on1.771.83 Bouncy Castle Licence
bcpkix-jdk18on1.771.83 Bouncy Castle Licence
bcprov-jdk18on1.771.83 Bouncy Castle Licence
bcutil-jdk18on1.771.83 Bouncy Castle Licence
Apache-2.0
byte-buddy1.18.2Apache-2.0
byte-buddy-agent 1.17.7 Apache-2.0
commons-io2.21.0Apache-2.0
commons-lang 2.6
flyway-core11.15.011.18.0 Apache-2.0
flyway-database-hsqldb11.15.011.18.0 Apache-2.0
Apache-2.0
jcl-over-slf4j2.0.17Apache-2.0
jericho-html 3.4
lombok1.18.401.18.42 MIT
network0.24.00.25.0
reload4j1.2.22Apache-2.0
reports0.42.00.43.0
MIT
slf4j-log4j122.0.17MIT
slf4j-reload4j2.0.17MIT
snakeyaml 2.4
sqlite-jdbc3.50.3.03.51.1.0 Apache-2.0
@@ -185,25 +185,25 @@

Automation Framework Add-on SBOM

- + - + - + - + @@ -311,7 +311,7 @@

Automation Framework Add-on SBOM

- + @@ -677,7 +677,7 @@

Automation Framework Add-on SBOM

- + @@ -791,7 +791,7 @@

Automation Framework Add-on SBOM

- + diff --git a/docs/sbom/client/index.html b/docs/sbom/client/index.html index c686fa2cf5..a2e51490fe 100644 --- a/docs/sbom/client/index.html +++ b/docs/sbom/client/index.html @@ -122,9 +122,9 @@

Client Side Integration Add-on SBOM

Client Side Integration
-

This page contains a list of all the libraries involved in building version 0.18.0 of the +

This page contains a list of all the libraries involved in building version 0.19.0 of the "Client Side Integration" add-on. -

You may download the full Software Bill Of Materials (SBOM) JSON file +

You may download the full Software Bill Of Materials (SBOM) JSON file for this add-on.

bcmail-jdk18on1.771.83 Bouncy Castle Licence
bcpkix-jdk18on1.771.83 Bouncy Castle Licence
bcprov-jdk18on1.771.83 Bouncy Castle Licence
bcutil-jdk18on1.771.83 Bouncy Castle Licence
commons-io2.20.02.21.0 Apache-2.0
lombok1.18.401.18.42 MIT
network0.24.00.25.0
@@ -191,31 +191,31 @@

Client Side Integration Add-on SBOM

- + - + - + - + - + @@ -237,6 +237,12 @@

Client Side Integration Add-on SBOM

+ + + + + + @@ -333,6 +339,12 @@

Client Side Integration Add-on SBOM

+ + + + + + @@ -803,7 +815,7 @@

Client Side Integration Add-on SBOM

- + @@ -923,7 +935,7 @@

Client Side Integration Add-on SBOM

- + @@ -1067,7 +1079,7 @@

Client Side Integration Add-on SBOM

- + diff --git a/docs/sbom/index.html b/docs/sbom/index.html index 4a33141134..33faba6ad4 100644 --- a/docs/sbom/index.html +++ b/docs/sbom/index.html @@ -179,7 +179,7 @@

Software Bill of Materials

Ajax Spider Add-on SBOM @@ -197,7 +197,7 @@

Software Bill of Materials

Authentication Helper Add-on SBOM @@ -224,7 +224,7 @@

Software Bill of Materials

Client Side Integration Add-on SBOM @@ -620,7 +620,7 @@

Software Bill of Materials

Selenium Add-on SBOM diff --git a/docs/sbom/retire/index.html b/docs/sbom/retire/index.html index 5b264e1ab2..e95c630cf8 100644 --- a/docs/sbom/retire/index.html +++ b/docs/sbom/retire/index.html @@ -122,9 +122,9 @@

Retire.js Add-on SBOM

Retire.js
-

This page contains a list of all the libraries involved in building version 0.50.0 of the +

This page contains a list of all the libraries involved in building version 0.51.0 of the "Retire.js" add-on. -

You may download the full Software Bill Of Materials (SBOM) JSON file +

You may download the full Software Bill Of Materials (SBOM) JSON file for this add-on.

automation0.55.00.57.0
bcmail-jdk18on1.771.83 Bouncy Castle Licence
bcpkix-jdk18on1.771.83 Bouncy Castle Licence
bcprov-jdk18on1.771.83 Bouncy Castle Licence
bcutil-jdk18on1.771.83 Bouncy Castle Licence
Apache-2.0
byte-buddy1.18.2Apache-2.0
byte-buddy-agent 1.17.7 Apache-2.0
commons-io2.21.0Apache-2.0
commons-lang 2.6
lombok1.18.401.18.42 MIT
network0.24.00.25.0
scripts45.15.045.16.0
- 200 + 198
- 257 + 255
- 185 + 187
- 178 + 179
@@ -185,25 +185,25 @@

Retire.js Add-on SBOM

- + - + - + - + @@ -311,7 +311,7 @@

Retire.js Add-on SBOM

- + @@ -677,7 +677,7 @@

Retire.js Add-on SBOM

- + @@ -791,7 +791,7 @@

Retire.js Add-on SBOM

- + diff --git a/docs/sbom/scripts/index.html b/docs/sbom/scripts/index.html index 1b7583885b..fd6f8c6d73 100644 --- a/docs/sbom/scripts/index.html +++ b/docs/sbom/scripts/index.html @@ -122,9 +122,9 @@

Script Console Add-on SBOM

Script Console
-

This page contains a list of all the libraries involved in building version 45.15.0 of the +

This page contains a list of all the libraries involved in building version 45.16.0 of the "Script Console" add-on. -

You may download the full Software Bill Of Materials (SBOM) JSON file +

You may download the full Software Bill Of Materials (SBOM) JSON file for this add-on.

bcmail-jdk18on1.771.83 Bouncy Castle Licence
bcpkix-jdk18on1.771.83 Bouncy Castle Licence
bcprov-jdk18on1.771.83 Bouncy Castle Licence
bcutil-jdk18on1.771.83 Bouncy Castle Licence
commons-io2.20.02.21.0 Apache-2.0
lombok1.18.401.18.42 MIT
network0.24.00.25.0
@@ -185,31 +185,31 @@

Script Console Add-on SBOM

- + - + - + - + - + @@ -227,7 +227,7 @@

Script Console Add-on SBOM

- + @@ -317,7 +317,7 @@

Script Console Add-on SBOM

- + @@ -683,7 +683,7 @@

Script Console Add-on SBOM

- + @@ -797,7 +797,7 @@

Script Console Add-on SBOM

- + diff --git a/docs/sbom/selenium/index.html b/docs/sbom/selenium/index.html index 47061a1d4a..1d4bc23c40 100644 --- a/docs/sbom/selenium/index.html +++ b/docs/sbom/selenium/index.html @@ -122,9 +122,9 @@

Selenium Add-on SBOM

Selenium
-

This page contains a list of all the libraries involved in building version 15.41.0 of the +

This page contains a list of all the libraries involved in building version 15.42.0 of the "Selenium" add-on. -

You may download the full Software Bill Of Materials (SBOM) JSON file +

You may download the full Software Bill Of Materials (SBOM) JSON file for this add-on.

automation0.55.00.57.0
bcmail-jdk18on1.771.83 Bouncy Castle Licence
bcpkix-jdk18on1.771.83 Bouncy Castle Licence
bcprov-jdk18on1.771.83 Bouncy Castle Licence
bcutil-jdk18on1.771.83 Bouncy Castle Licence
byte-buddy1.17.81.18.2 Apache-2.0
commons-io2.20.02.21.0 Apache-2.0
lombok1.18.401.18.42 MIT
network0.24.00.25.0
@@ -191,25 +191,25 @@

Selenium Add-on SBOM

- + - + - + - + @@ -251,7 +251,7 @@

Selenium Add-on SBOM

- + @@ -333,6 +333,12 @@

Selenium Add-on SBOM

+ + + + + + @@ -593,13 +599,13 @@

Selenium Add-on SBOM

- + - + @@ -611,31 +617,31 @@

Selenium Add-on SBOM

- + - + - + - + - + @@ -707,49 +713,49 @@

Selenium Add-on SBOM

- + - + - + - + - + - + - + - + @@ -791,7 +797,7 @@

Selenium Add-on SBOM

- + @@ -911,7 +917,7 @@

Selenium Add-on SBOM

- + @@ -1049,103 +1055,103 @@

Selenium Add-on SBOM

- + - + - + - - + + - - + + - - + + - + - + - + - + - + - + - + - + - + - + - + diff --git a/docs/sbom/spiderajax/index.html b/docs/sbom/spiderajax/index.html index 07f6a6b77a..bd8dae58e6 100644 --- a/docs/sbom/spiderajax/index.html +++ b/docs/sbom/spiderajax/index.html @@ -122,9 +122,9 @@

Ajax Spider Add-on SBOM

Ajax Spider
-

This page contains a list of all the libraries involved in building version 23.27.0 of the +

This page contains a list of all the libraries involved in building version 23.28.0 of the "Ajax Spider" add-on. -

You may download the full Software Bill Of Materials (SBOM) JSON file +

You may download the full Software Bill Of Materials (SBOM) JSON file for this add-on.

bcmail-jdk18on1.771.83 Bouncy Castle Licence
bcpkix-jdk18on1.771.83 Bouncy Castle Licence
bcprov-jdk18on1.771.83 Bouncy Castle Licence
bcutil-jdk18on1.771.83 Bouncy Castle Licence
commonlib1.38.01.39.0
Apache-2.0
commons-io2.21.0Apache-2.0
commons-lang 2.6
jackson-bom2.20.02.20.1 Apache-2.0
jackson-core2.20.02.20.1 Apache-2.0
jackson-databind2.20.02.20.1 Apache-2.0
jackson-dataformat-xml2.20.02.20.1 Apache-2.0
jackson-dataformat-yaml2.20.02.20.1 Apache-2.0
jackson-datatype-jdk82.20.02.20.1 Apache-2.0
jackson-datatype-jsr3102.20.02.20.1 Apache-2.0
junit-bom6.0.06.0.1 EPL-2.0
junit-jupiter6.0.06.0.1 EPL-2.0
junit-jupiter-api6.0.06.0.1 EPL-2.0
junit-jupiter-engine6.0.06.0.1 EPL-2.0
junit-jupiter-params6.0.06.0.1 EPL-2.0
junit-platform-commons6.0.06.0.1 EPL-2.0
junit-platform-engine6.0.06.0.1 EPL-2.0
junit-platform-launcher6.0.06.0.1 EPL-2.0
lombok1.18.401.18.42 MIT
network0.24.00.25.0
selenium-api4.37.04.38.0 Apache-2.0
selenium-chrome-driver4.37.04.38.0 Apache-2.0
selenium-chromium-driver4.37.04.38.0 Apache-2.0
selenium-devtools-v1394.37.0selenium-devtools-v1404.38.0 Apache-2.0
selenium-devtools-v1404.37.0selenium-devtools-v1414.38.0 Apache-2.0
selenium-devtools-v1414.37.0selenium-devtools-v1424.38.0 Apache-2.0
selenium-edge-driver4.37.04.38.0 Apache-2.0
selenium-firefox-driver4.37.04.38.0 Apache-2.0
selenium-http4.37.04.38.0 Apache-2.0
selenium-ie-driver4.37.04.38.0 Apache-2.0
selenium-java4.37.04.38.0 Apache-2.0
selenium-json4.37.04.38.0 Apache-2.0
selenium-manager4.37.04.38.0 Apache-2.0
selenium-os4.37.04.38.0 Apache-2.0
selenium-remote-driver4.37.04.38.0 Apache-2.0
selenium-safari-driver4.37.04.38.0 Apache-2.0
selenium-support4.37.04.38.0 Apache-2.0
@@ -197,31 +197,31 @@

Ajax Spider Add-on SBOM

- + - + - + - + - + @@ -345,6 +345,12 @@

Ajax Spider Add-on SBOM

+ + + + + + @@ -729,12 +735,6 @@

Ajax Spider Add-on SBOM

- - - - - - @@ -861,9 +861,15 @@

Ajax Spider Add-on SBOM

+ + + + + + - + @@ -995,7 +1001,7 @@

Ajax Spider Add-on SBOM

- + @@ -1125,12 +1131,6 @@

Ajax Spider Add-on SBOM

- - - - - - @@ -1263,18 +1263,6 @@

Ajax Spider Add-on SBOM

- - - - - - - - - - - - diff --git a/docs/sbom/wappalyzer/index.html b/docs/sbom/wappalyzer/index.html index 85d09f9b42..e7f72c7df8 100644 --- a/docs/sbom/wappalyzer/index.html +++ b/docs/sbom/wappalyzer/index.html @@ -122,9 +122,9 @@

Technology Detection Add-on SBOM

Technology Detection
-

This page contains a list of all the libraries involved in building version 21.49.0 of the +

This page contains a list of all the libraries involved in building version 21.50.0 of the "Technology Detection" add-on. -

You may download the full Software Bill Of Materials (SBOM) JSON file +

You may download the full Software Bill Of Materials (SBOM) JSON file for this add-on.

automation0.55.00.57.0
bcmail-jdk18on1.771.83 Bouncy Castle Licence
bcpkix-jdk18on1.771.83 Bouncy Castle Licence
bcprov-jdk18on1.771.83 Bouncy Castle Licence
bcutil-jdk18on1.771.83 Bouncy Castle Licence
Apache-2.0
commons-io2.21.0Apache-2.0
commons-lang 2.6
jcl-over-slf4j2.0.17Apache-2.0
jericho-html 3.4 Apache-2.0
log4j-slf4j2-impl2.24.2Apache-2.0
lombok1.18.401.18.42 MIT
network0.24.00.25.0
BSD-3-Clause
reload4j1.2.22Apache-2.0
rsyntaxtextarea 3.5.3 MIT
slf4j-log4j122.0.17MIT
slf4j-reload4j2.0.17MIT
snakeyaml 2.4
@@ -185,31 +185,31 @@

Technology Detection Add-on SBOM

- + - + - + - + - + @@ -317,7 +317,7 @@

Technology Detection Add-on SBOM

- + @@ -695,7 +695,7 @@

Technology Detection Add-on SBOM

- + @@ -809,7 +809,7 @@

Technology Detection Add-on SBOM

- + diff --git a/docs/statistics/index.xml b/docs/statistics/index.xml index 2777321db9..3c1da9f427 100644 --- a/docs/statistics/index.xml +++ b/docs/statistics/index.xml @@ -40,7 +40,7 @@ /docs/statistics/top-addons-last-month/Mon, 01 Jan 0001 00:00:00 +0000/docs/statistics/top-addons-last-month/ - <p>These were the most frequently installed <strong>optional</strong> add-ons last month.</p> <p>Note that this does not mean they were the most <strong>used</strong> add-ons - that is harder to quantify.</p> <table class="table market-table"> <thead align="left"> <tr> <th >Position</th> <th >Add-On</th> <th >Status</th> <th>ID</th> <th >Last Updated</th> </tr> </thead> <tr> <td > 1 </td> <td > <a href="/docs/desktop/addons/import-export/">Import/Export</a> </td> <td > beta </td> <td > exim </td> <td > 2025-09-02 </td> </tr> <tr> <td > 2 </td> <td > <a href="/docs/desktop/addons/database/">Database</a> </td> <td > alpha </td> <td > database </td> <td > 2025-03-04 </td> </tr> <tr> <td > 3 </td> <td > <a href="/docs/desktop/addons/spider/">Spider</a> </td> <td > release </td> <td > spider </td> <td > 2025-11-04 </td> </tr> <tr> <td > 4 </td> <td > <a href="/docs/desktop/addons/requester/">Requester</a> </td> <td > beta </td> <td > requester </td> <td > 2025-01-10 </td> </tr> <tr> <td > 5 </td> <td > <a href="/docs/desktop/addons/postman-support/">Postman Support</a> </td> <td > alpha </td> <td > postman </td> <td > 2025-11-10 </td> </tr> <tr> <td > 6 </td> <td > <a href="/docs/desktop/addons/authentication-helper/">Authentication Helper</a> </td> <td > beta </td> <td > authhelper </td> <td > 2025-11-07 </td> </tr> <tr> <td > 7 </td> <td > <a href="/docs/desktop/addons/passive-scanner/">Passive Scanner</a> </td> <td > alpha </td> <td > pscan </td> <td > 2025-09-10 </td> </tr> <tr> <td > 8 </td> <td > <a href="/docs/desktop/addons/passive-scan-rules-beta/">Passive scanner rules (beta)</a> </td> <td > beta </td> <td > pscanrulesBeta </td> <td > 2025-11-04 </td> </tr> <tr> <td > 9 </td> <td > <a href="/docs/desktop/addons/client-side-integration/">Client Side Integration</a> </td> <td > alpha </td> <td > client </td> <td > 2025-11-04 </td> </tr> <tr> <td > 10 </td> <td > <a href="/docs/desktop/addons/scan-policies/">Scan Policies</a> </td> <td > alpha </td> <td > scanpolicies </td> <td > 2025-11-04 </td> </tr> <tr> <td > 11 </td> <td > <a href="/docs/desktop/addons/sequence-scanner/">Sequence</a> </td> <td > beta </td> <td > sequence </td> <td > 2025-01-10 </td> </tr> <tr> <td > 12 </td> <td > <a href="/docs/desktop/addons/active-scan-rules-beta/">Active scanner rules (beta)</a> </td> <td > beta </td> <td > ascanrulesBeta </td> <td > 2025-11-04 </td> </tr> <tr> <td > 13 </td> <td > <a href="/docs/desktop/addons/passive-scan-rules-alpha/">Passive scanner rules (alpha)</a> </td> <td > alpha </td> <td > pscanrulesAlpha </td> <td > 2025-11-04 </td> </tr> <tr> <td > 14 </td> <td > <a href="/docs/desktop/addons/access-control-testing/">Access Control Testing</a> </td> <td > alpha </td> <td > accessControl </td> <td > 2024-03-25 </td> </tr> <tr> <td > 15 </td> <td > <a href="/docs/desktop/addons/plug-n-hack/">Plug-n-Hack Configuration</a> </td> <td > beta </td> <td > plugnhack </td> <td > 2022-10-27 </td> </tr> <tr> <td > 16 </td> <td > <a href="/docs/desktop/addons/grpc-support/">gRPC Support</a> </td> <td > alpha </td> <td > grpc </td> <td > 2024-07-02 </td> </tr> <tr> <td > 17 </td> <td > <a href="/docs/desktop/addons/custom-payloads/">Custom Payloads</a> </td> <td > release </td> <td > custompayloads </td> <td > 2025-09-02 </td> </tr> <tr> <td > 18 </td> <td > <a href="/docs/desktop/addons/technology-detection/">Technology Detection</a> </td> <td > release </td> <td > wappalyzer </td> <td > 2025-11-04 </td> </tr> <tr> <td > 19 </td> <td > <a href="/docs/desktop/addons/active-scan-rules-alpha/">Active scanner rules (alpha)</a> </td> <td > alpha </td> <td > ascanrulesAlpha </td> <td > 2025-11-04 </td> </tr> <tr> <td > 20 </td> <td > <a href="/docs/desktop/addons/advanced-sqlinjection-scanner/">Advanced SQLInjection Scanner</a> </td> <td > beta </td> <td > sqliplugin </td> <td > 2025-04-30 </td> </tr> </table> + <p>These were the most frequently installed <strong>optional</strong> add-ons last month.</p> <p>Note that this does not mean they were the most <strong>used</strong> add-ons - that is harder to quantify.</p> <table class="table market-table"> <thead align="left"> <tr> <th >Position</th> <th >Add-On</th> <th >Status</th> <th>ID</th> <th >Last Updated</th> </tr> </thead> <tr> <td > 1 </td> <td > <a href="/docs/desktop/addons/import-export/">Import/Export</a> </td> <td > beta </td> <td > exim </td> <td > 2025-09-02 </td> </tr> <tr> <td > 2 </td> <td > <a href="/docs/desktop/addons/database/">Database</a> </td> <td > alpha </td> <td > database </td> <td > 2025-03-04 </td> </tr> <tr> <td > 3 </td> <td > <a href="/docs/desktop/addons/spider/">Spider</a> </td> <td > release </td> <td > spider </td> <td > 2025-11-04 </td> </tr> <tr> <td > 4 </td> <td > <a href="/docs/desktop/addons/requester/">Requester</a> </td> <td > beta </td> <td > requester </td> <td > 2025-01-10 </td> </tr> <tr> <td > 5 </td> <td > <a href="/docs/desktop/addons/postman-support/">Postman Support</a> </td> <td > alpha </td> <td > postman </td> <td > 2025-11-10 </td> </tr> <tr> <td > 6 </td> <td > <a href="/docs/desktop/addons/authentication-helper/">Authentication Helper</a> </td> <td > beta </td> <td > authhelper </td> <td > 2025-12-03 </td> </tr> <tr> <td > 7 </td> <td > <a href="/docs/desktop/addons/passive-scanner/">Passive Scanner</a> </td> <td > alpha </td> <td > pscan </td> <td > 2025-09-10 </td> </tr> <tr> <td > 8 </td> <td > <a href="/docs/desktop/addons/passive-scan-rules-beta/">Passive scanner rules (beta)</a> </td> <td > beta </td> <td > pscanrulesBeta </td> <td > 2025-11-04 </td> </tr> <tr> <td > 9 </td> <td > <a href="/docs/desktop/addons/client-side-integration/">Client Side Integration</a> </td> <td > alpha </td> <td > client </td> <td > 2025-12-03 </td> </tr> <tr> <td > 10 </td> <td > <a href="/docs/desktop/addons/scan-policies/">Scan Policies</a> </td> <td > alpha </td> <td > scanpolicies </td> <td > 2025-11-04 </td> </tr> <tr> <td > 11 </td> <td > <a href="/docs/desktop/addons/sequence-scanner/">Sequence</a> </td> <td > beta </td> <td > sequence </td> <td > 2025-01-10 </td> </tr> <tr> <td > 12 </td> <td > <a href="/docs/desktop/addons/active-scan-rules-beta/">Active scanner rules (beta)</a> </td> <td > beta </td> <td > ascanrulesBeta </td> <td > 2025-11-04 </td> </tr> <tr> <td > 13 </td> <td > <a href="/docs/desktop/addons/passive-scan-rules-alpha/">Passive scanner rules (alpha)</a> </td> <td > alpha </td> <td > pscanrulesAlpha </td> <td > 2025-11-04 </td> </tr> <tr> <td > 14 </td> <td > <a href="/docs/desktop/addons/access-control-testing/">Access Control Testing</a> </td> <td > alpha </td> <td > accessControl </td> <td > 2024-03-25 </td> </tr> <tr> <td > 15 </td> <td > <a href="/docs/desktop/addons/plug-n-hack/">Plug-n-Hack Configuration</a> </td> <td > beta </td> <td > plugnhack </td> <td > 2022-10-27 </td> </tr> <tr> <td > 16 </td> <td > <a href="/docs/desktop/addons/grpc-support/">gRPC Support</a> </td> <td > alpha </td> <td > grpc </td> <td > 2024-07-02 </td> </tr> <tr> <td > 17 </td> <td > <a href="/docs/desktop/addons/custom-payloads/">Custom Payloads</a> </td> <td > release </td> <td > custompayloads </td> <td > 2025-09-02 </td> </tr> <tr> <td > 18 </td> <td > <a href="/docs/desktop/addons/technology-detection/">Technology Detection</a> </td> <td > release </td> <td > wappalyzer </td> <td > 2025-12-03 </td> </tr> <tr> <td > 19 </td> <td > <a href="/docs/desktop/addons/active-scan-rules-alpha/">Active scanner rules (alpha)</a> </td> <td > alpha </td> <td > ascanrulesAlpha </td> <td > 2025-11-04 </td> </tr> <tr> <td > 20 </td> <td > <a href="/docs/desktop/addons/advanced-sqlinjection-scanner/">Advanced SQLInjection Scanner</a> </td> <td > beta </td> <td > sqliplugin </td> <td > 2025-04-30 </td> </tr> </table> diff --git a/docs/statistics/top-addons-last-month/index.html b/docs/statistics/top-addons-last-month/index.html index 6a3e544886..96a8244657 100644 --- a/docs/statistics/top-addons-last-month/index.html +++ b/docs/statistics/top-addons-last-month/index.html @@ -274,7 +274,7 @@

Top ZAP Add-Ons Last Month

authhelper @@ -340,7 +340,7 @@

Top ZAP Add-Ons Last Month

client @@ -538,7 +538,7 @@

Top ZAP Add-Ons Last Month

wappalyzer diff --git a/index.xml b/index.xml index 432238bd95..09f4fbff85 100644 --- a/index.xml +++ b/index.xml @@ -17506,7 +17506,7 @@ This is particularly useful for comparing 2 sessions which access the same appli authhelper </td> <td > - 2025-11-07 + 2025-12-03 </td> </tr> @@ -17572,7 +17572,7 @@ This is particularly useful for comparing 2 sessions which access the same appli client </td> <td > - 2025-11-04 + 2025-12-03 </td> </tr> @@ -17770,7 +17770,7 @@ This is particularly useful for comparing 2 sessions which access the same appli wappalyzer </td> <td > - 2025-11-04 + 2025-12-03 </td> </tr> diff --git a/search/index.json b/search/index.json index 051e8a3463..aa7a3f3602 100644 --- a/search/index.json +++ b/search/index.json @@ -621,7 +621,7 @@ "keywords": ["","options","screen","selenium"], "tags": null, "summary": "\u003ch1 id=\"options-selenium-screen\"\u003eOptions Selenium screen\u003c/h1\u003e\n\u003cp\u003eThis screen allows you to setup the requirements of some of the WebDrivers.\u003c/p\u003e\n\n\u003ch2 id=\"configuration-options\"\u003eConfiguration Options \u003ca class=\"header-link\" href=\"#configuration-options\"\u003e\u003csvg class=\"fill-current o-60 hover-accent-color-light\" height=\"22px\" viewBox=\"0 0 24 24\" width=\"22px\" xmlns=\"http://www.w3.org/2000/svg\"\u003e\u003cpath d=\"M0 0h24v24H0z\" fill=\"none\"/\u003e\u003cpath d=\"M3.9 12c0-1.71 1.39-3.1 3.1-3.1h4V7H7c-2.76 0-5 2.24-5 5s2.24 5 5 5h4v-1.9H7c-1.71 0-3.1-1.39-3.1-3.1zM8 13h8v-2H8v2zm9-6h-4v1.9h4c1.71 0 3.1 1.39 3.1 3.1s-1.39 3.1-3.1 3.1h-4V17h4c2.76 0 5-2.24 5-5s-2.24-5-5-5z\" fill=\"currentColor\"/\u003e\u003c/svg\u003e\u003c/a\u003e\u003c/h2\u003e\n\n\u003ch3 id=\"webdrivers\"\u003eWebDrivers \u003ca class=\"header-link\" href=\"#webdrivers\"\u003e\u003csvg class=\"fill-current o-60 hover-accent-color-light\" height=\"22px\" viewBox=\"0 0 24 24\" width=\"22px\" xmlns=\"http://www.w3.org/2000/svg\"\u003e\u003cpath d=\"M0 0h24v24H0z\" fill=\"none\"/\u003e\u003cpath d=\"M3.9 12c0-1.71 1.39-3.1 3.1-3.1h4V7H7c-2.76 0-5 2.24-5 5s2.24 5 5 5h4v-1.9H7c-1.71 0-3.1-1.39-3.1-3.1zM8 13h8v-2H8v2zm9-6h-4v1.9h4c1.71 0 3.1 1.39 3.1 3.1s-1.39 3.1-3.1 3.1h-4V17h4c2.76 0 5-2.24 5-5s-2.24-5-5-5z\" fill=\"currentColor\"/\u003e\u003c/svg\u003e\u003c/a\u003e\u003c/h3\u003e\n\u003ctable\u003e\n \u003cthead\u003e\n \u003ctr\u003e\n \u003cth\u003eField\u003c/th\u003e\n \u003cth\u003eDetails\u003c/th\u003e\n \u003cth\u003eDefault\u003c/th\u003e\n \u003cth\u003eConfig File\u003c/th\u003e\n \u003c/tr\u003e\n \u003c/thead\u003e\n \u003ctbody\u003e\n \u003ctr\u003e\n \u003ctd\u003eChromeDriver\u003c/td\u003e\n \u003ctd\u003eThis allows you to select the location of ChromeDriver.\u003c/td\u003e\n \u003ctd\u003eThe path to the bundled WebDriver, if available.\u003c/td\u003e\n \u003ctd\u003eKey: \u003ccode\u003eselenium.chromeDriver\u003c/code\u003e Value: file system path to the ChromeDriver\u003c/td\u003e\n \u003c/tr\u003e\n \u003ctr\u003e\n \u003ctd\u003eEdgeDriver\u003c/td\u003e\n \u003ctd\u003eThis allows you to select the location of EdgeDriver.\u003c/td\u003e\n \u003ctd\u003eThe path to the bundled WebDriver, if available.\u003c/td\u003e\n \u003ctd\u003eKey: \u003ccode\u003eselenium.edgeDriver\u003c/code\u003e Value: file system path to the EdgeDriver\u003c/td\u003e\n \u003c/tr\u003e\n \u003ctr\u003e\n \u003ctd\u003egeckodriver\u003c/td\u003e\n \u003ctd\u003eThis allows you to select the location of geckodriver (Firefox driver).\u003c/td\u003e\n \u003ctd\u003eThe path to the bundled WebDriver, if available.\u003c/td\u003e\n \u003ctd\u003eKey: \u003ccode\u003eselenium.firefoxDriver\u003c/code\u003e Value: file system path to the geckodriver\u003c/td\u003e\n \u003c/tr\u003e\n \u003c/tbody\u003e\n\u003c/table\u003e\n\n\u003ch3 id=\"binaries\"\u003eBinaries \u003ca class=\"header-link\" href=\"#binaries\"\u003e\u003csvg class=\"fill-current o-60 hover-accent-color-light\" height=\"22px\" viewBox=\"0 0 24 24\" width=\"22px\" xmlns=\"http://www.w3.org/2000/svg\"\u003e\u003cpath d=\"M0 0h24v24H0z\" fill=\"none\"/\u003e\u003cpath d=\"M3.9 12c0-1.71 1.39-3.1 3.1-3.1h4V7H7c-2.76 0-5 2.24-5 5s2.24 5 5 5h4v-1.9H7c-1.71 0-3.1-1.39-3.1-3.1zM8 13h8v-2H8v2zm9-6h-4v1.9h4c1.71 0 3.1 1.39 3.1 3.1s-1.39 3.1-3.1 3.1h-4V17h4c2.76 0 5-2.24 5-5s-2.24-5-5-5z\" fill=\"currentColor\"/\u003e\u003c/svg\u003e\u003c/a\u003e\u003c/h3\u003e\n\u003ctable\u003e\n \u003cthead\u003e\n \u003ctr\u003e\n \u003cth\u003eField\u003c/th\u003e\n \u003cth\u003eDetails\u003c/th\u003e\n \u003cth\u003eDefault\u003c/th\u003e\n \u003cth\u003eConfig File\u003c/th\u003e\n \u003c/tr\u003e\n \u003c/thead\u003e\n \u003ctbody\u003e\n \u003ctr\u003e\n \u003ctd\u003eChrome\u003c/td\u003e\n \u003ctd\u003eThis allows you to select the location of Chrome binary (for example, to use a version other than the system default).\u003c/td\u003e\n \u003ctd\u003e(None)\u003c/td\u003e\n \u003ctd\u003eKey: \u003ccode\u003eselenium.chromeBinary\u003c/code\u003e Value: file system path to the Chrome binary\u003c/td\u003e\n \u003c/tr\u003e\n \u003ctr\u003e\n \u003ctd\u003eEdge\u003c/td\u003e\n \u003ctd\u003eThis allows you to select the location of Edge binary (for example, to use a version other than the system default).\u003c/td\u003e\n \u003ctd\u003e(None)\u003c/td\u003e\n \u003ctd\u003eKey: \u003ccode\u003eselenium.edgeBinary\u003c/code\u003e Value: file system path to the Edge binary\u003c/td\u003e\n \u003c/tr\u003e\n \u003ctr\u003e\n \u003ctd\u003eFirefox\u003c/td\u003e\n \u003ctd\u003eThis allows you to select the location of Firefox binary (for example, to use a version other than the system default).\u003c/td\u003e\n \u003ctd\u003e(None)\u003c/td\u003e\n \u003ctd\u003eKey: \u003ccode\u003eselenium.firefoxBinary\u003c/code\u003e Value: file system path to the Firefox binary\u003c/td\u003e\n \u003c/tr\u003e\n \u003c/tbody\u003e\n\u003c/table\u003e\n\u003cp\u003e\u003cstrong\u003eNote:\u003c/strong\u003e It\u0026rsquo;s also possible to set the above locations (binaries and WebDrivers) using Java system properties, in which case the above options will be overridden and those values shown instead.\u003c/p\u003e", - "content": "options selenium screen allows you setup requirements some webdrivers configuration field details default config file chromedriver select location path bundled webdriver available key: seleniumchromedriver value: system edgedriver seleniumedgedriver geckodriver firefox driver seleniumfirefoxdriver binaries chrome binary example use version other than none seleniumchromebinary edge seleniumedgebinary seleniumfirefoxbinary note: its also possible set above locations using java properties which case will overridden those values shown instead more about can found overview page browser arguments have additional cli specified through button adding invalid might cause fail start zap already adds eg headless profiles choose profile by temporary one created each time launched client addon creates called zapclientprofile another then not work without manual extensions add remove enable disable via relevant buttons supported browsers are: firefox: xpi chromeedge: crx addons new delete extension added either just uninstall see api " + "content": "options selenium screen allows you setup requirements some webdrivers configuration field details default config file chromedriver select location path bundled webdriver available key: seleniumchromedriver value: system edgedriver seleniumedgedriver geckodriver firefox driver seleniumfirefoxdriver binaries chrome binary example use version other than none seleniumchromebinary edge seleniumedgebinary seleniumfirefoxbinary note: its also possible set above locations using java properties which case will overridden those values shown instead more about can found overview page browser arguments have additional cli specified through button adding invalid might cause fail start zap already adds eg headless profiles choose profile by temporary one created each time launched client addon creates called zapclientprofile another then not work without manual extensions add remove enable disable via relevant buttons supported browsers are: firefox: xpi chromeedge: unpacked directory containing extension files addons new delete added either just uninstall see api " }, { "url": "/docs/desktop/addons/token-generator/options/", @@ -2621,7 +2621,7 @@ "keywords": ["","-","activescan","automation","framework","job"], "tags": null, "summary": "\u003ch1 id=\"automation-framework---activescan-job\"\u003eAutomation Framework - activeScan Job\u003c/h1\u003e\n\u003cp\u003eThis job runs the active scanner. This actively attacks your applications and should therefore only be used against applications that you have permission to test.\u003c/p\u003e\n\u003cp\u003eIt is covered in the video: \u003ca href=\"https://youtu.be/hcftgjz_Vgc\"\u003eZAP Chat 12 Automation Framework Part 6 - Delays and Active Scan\u003c/a\u003e.\u003c/p\u003e\n\u003cp\u003eBy default this job will actively scan the first context defined in the \u003ca href=\"/docs/desktop/addons/automation-framework/environment/\"\u003eenvironment\u003c/a\u003e and so none of the parameters are mandatory.\u003c/p\u003e", - "content": "automation framework activescan job runs active scanner actively attacks your applications should therefore only used against that you have permission test covered video: zap chat 12 part delays scan by default will first context defined environment none parameters mandatory supports monitor tests yaml type: target parameters: context: string: name attack default: user: optional user use authentication must env url: subtree all urls policy: policy maxruledurationinmins: int: max time minutes any individual rule allowed run unlimited maxscandurationinmins: addqueryparam: bool: set add extra query parameter requests do not one false defaultpolicy: delayinms: delay milliseconds between each request reduce strain handleanticsrftokens: then automatically handle anti csrf tokens true injectpluginidinheader: relevant id injected into xzapscanid header scanheadersallrequests: headers include scanned threadperhost: number threads per host available processor cores maxalertsperrule: maximum alerts raise policydefinition: definition 39policy39 defaultstrength: strength rules low medium high insane recommended defaultthreshold: alert threshold off alerttags: based tags does override remove listed explicitly under 34rules34 include: list regex supported exclude: exclude from strength: threshold: rules: more associated settings which defaults id: https:wwwzaproxyorgdocsalerts name: documentation purposes required actually enabled: alwaysrun: enabled even plan exits early note unless defaultthreshold policydefinition start can previous activescanpolicy file has been put policies directory zaps home information how processes see data following class made addons provide access such reporting addon case last regardless whether was started ui api key: activescandata class: activescanjobresultdata " + "content": "automation framework activescan job runs active scanner actively attacks your applications should therefore only used against that you have permission test covered video: zap chat 12 part delays scan by default will first context defined environment none parameters mandatory supports monitor tests yaml type: target parameters: context: string: name attack default: user: optional user use authentication must env url: subtree all urls policy: policy defaultstrength: strength specified defaultthreshold: alert threshold maxruledurationinmins: int: max time minutes any individual rule allowed run unlimited maxscandurationinmins: addqueryparam: bool: set add extra query parameter requests do not one false defaultpolicy: delayinms: delay milliseconds between each request reduce strain handleanticsrftokens: then automatically handle anti csrf tokens true injectpluginidinheader: relevant id injected into xzapscanid header scanheadersallrequests: headers include scanned threadperhost: number threads per host available processor cores maxalertsperrule: maximum alerts raise policydefinition: definition 39policy39 rules low medium high insane recommended off alerttags: based tags does override remove listed explicitly under 34rules34 include: list regex supported exclude: exclude from strength: threshold: rules: more associated settings which defaults id: https:wwwzaproxyorgdocsalerts name: documentation purposes required actually enabled: alwaysrun: enabled even plan exits early note unless defaultthreshold policydefinition start can previous activescanpolicy file has been put policies directory zaps home information how processes see data following class made addons provide access such reporting addon case last regardless whether was started ui api key: activescandata class: activescanjobresultdata " }, { "url": "/docs/desktop/addons/client-side-integration/internals/", @@ -5325,7 +5325,7 @@ "keywords": ["","-","authentication","json","report"], "tags": null, "summary": "\u003ch1 id=\"authentication-report---json\"\u003eAuthentication Report - JSON\u003c/h1\u003e\n\u003cp\u003eThis is a specialized report which details how authentication handling worked for the given site.\u003c/p\u003e\n\u003cp\u003eYou must specify the site you want the report for otherwise no data will be generated.\u003c/p\u003e\n\u003cp\u003eThis report is designed to be run after attempting to access at least one authenticated URL with the\nauthentication method set up correctly and with valid credentials.\u003c/p\u003e", - "content": "authentication report json specialized which details how handling worked given site you must specify want otherwise data will generated designed run after attempting access least one authenticated url method set up correctly valid credentials session verification can left autodetect detail effective that was sections section id summary automation framework environment afenv statistics domains diagnostics plan diagnosticsafplan http messages diagnosticsmessages local storage diagnosticslocalstorage screenshots diagnosticsscreenshots diagnosticssessionstorage web elements diagnosticswebelements zap log file diagnosticslogfile following items used: key passed description authsummaryauth false failed true appeared work authsummarypassword password field not identified authsummarysession authsummaryusername username authsummaryverif failure authfailureoverall all yet deemed end authfailurepasscount successful browser logins authfailuresessionmgmt identify management authfailureloggedin indication found being logged authfailureloginfailures more authfailurenosuccessfullogins authfailureverifident authfailureafplanerrors there were errors used recreate context tested have successfully detected them then been updated values has these recorded by what they mean see https:wwwzaproxyorgdocsinternalstatistics based client script methods allow record diagnostic included help diagnose problems also tester dialog contain array objects each attempt objet name user step performed during 34diagnostics34: 34created34: 3400000000t00:00:00000000z34 34authenticationmethod34: 34browserbased authentication34 34context34: 34context name34 34user34: 34user 34script34: 34script 34steps34: optionally input element thats acted upon eg filled 34url34: 34http:examplecomlogin34 34description34: 34auto fill username34 34webelement34: 34selector34: 34type34: 34css34 34value34: 34body div span input34 34formindex34: 34attributetype34: 34text34 34attributeid34: 34email34 34attributename34: 34attributevalue34: 3434 34text34: 34displayed34: 34enabled34: depending additional enabled selector type css xpath value containing respective when object include 34afplan34: 34content plan34 sent message contains requestresponse headers bodies 34messages34: 34requestheader34: 34get http:examplecomlogin http1134 34requestbody34: 34responseheader34: 34http11 200 ok34 34responsebody34: browsers 34localstorage34: 34key34: 34key34 34value34 screenshot page image base64 encoded 34screenshot34: 34sessionstorage34: present 34webelements34: 34xpath34 34htmlbodydivinput434 34id34 34name34 top level property added contents 34logfile34: 34log content34 sample 34programname34: 34zap34 34version34: 34dev build34 34generated34: 34mon 10 feb 2025 17:27:2334 34site34: 34http:localhost:909134 34summaryitems34: 34authentication work34 34passed34: 34authsummaryauth34 34username identified34 34authsummaryusername34 34password 34authsummarypassword34 34session 34authsummarysession34 34verification 34authsummaryverif34 34failurereasons34: 34authfailurenosuccessfullogins34 34no logins34 34afenv34: 34env:n contexts:n name: simplejsonbearercookien urls:n http:localhost:9091authsimplejsonbearercookien includepaths:n authentication:n method: browsern parameters:n loginpageurl: loginpagewait: 5n browserid: firefoxheadlessn steps: verification:n polln loggedinregex: oken loggedoutregex: 403 forbiddenen pollfrequency: 0n pollunits: secondsn pollurl: http:localhost:9091authsimplejsonbearercookieusern pollpostdata: 3434n sessionmanagement:n headersn authorization: 34bearer json:accesstoken34n cookie: 34tokenjson:accesstoken34n technology: structure: users:n testn credentials:n password: password123n username: testtestcomn parameters: n34 34statistics34: 34statsauthbrowserfoundfields34 34scope34: 34site34 34site:34 34https:wwwexampleorg34 34statsauthbrowserpassed34 34statsauthconfiguresessionheader34 34global34 34statsauthconfigureverification34 34statsauthdetectauthjson34 34statsauthdetectsessionaccesstoken34 34statsauthdetectsessionauthorization34 34statsauthdetectsessiontoken34 34statsauthsessionsetheader34 20 34statsauthsessiontokenaccesstoken34 34statsauthsessiontokentoken34 34statsauthsessiontokensmax34 34statsauthstateloggedin34 34statsauthsuccess34 34domains34: 34https:apiexampleorg34 " + "content": "authentication report json specialized which details how handling worked given site you must specify want otherwise data will generated designed run after attempting access least one authenticated url method set up correctly valid credentials session verification can left autodetect detail effective that was sections section id summary automation framework environment afenv statistics domains partially out scope domainspartiallyoutofscope domainsoutofscope diagnostics plan diagnosticsafplan http messages diagnosticsmessages local storage diagnosticslocalstorage screenshots diagnosticsscreenshots diagnosticssessionstorage web elements diagnosticswebelements zap log file diagnosticslogfile following items used: key passed description authsummaryauth false failed true appeared work authsummarypassword password field not identified authsummarysession authsummaryusername username authsummaryverif failure authfailureoverall all yet deemed end authfailurepasscount successful browser logins authfailuresessionmgmt identify management authfailureloggedin indication found being logged authfailureloginfailures more authfailurenosuccessfullogins authfailureverifident authfailureafplanerrors there were errors used recreate context tested have successfully detected them then been updated values has these recorded by what they mean see https:wwwzaproxyorgdocsinternalstatistics contains array accessed while performing 34domains34: 34https:wwwexampleorg34 34https:apiexampleorg34 example when includes just subset target eg https:wwwexampleorgfrontend other resources also https:wwwexampleorgbackend 34domainspartiallyoutofscope34: 34domainsoutofscope34: based client script methods allow record diagnostic included help diagnose problems tester dialog contain objects each attempt objet name user step performed during 34diagnostics34: 34created34: 3400000000t00:00:00000000z34 34authenticationmethod34: 34browserbased authentication34 34context34: 34context name34 34user34: 34user 34script34: 34script 34steps34: optionally input element thats acted upon filled 34url34: 34http:examplecomlogin34 34description34: 34auto fill username34 34webelement34: 34selector34: 34type34: 34css34 34value34: 34body div span input34 34formindex34: 34attributetype34: 34text34 34attributeid34: 34email34 34attributename34: 34attributevalue34: 3434 34text34: 34displayed34: 34enabled34: depending additional enabled selector type css xpath value containing respective object include 34afplan34: 34content plan34 sent message requestresponse headers bodies 34messages34: 34requestheader34: 34get http:examplecomlogin http1134 34requestbody34: 34responseheader34: 34http11 200 ok34 34responsebody34: browsers 34localstorage34: 34key34: 34key34 34value34 screenshot page image base64 encoded 34screenshot34: 34sessionstorage34: present 34webelements34: 34xpath34 34htmlbodydivinput434 34id34 34name34 top level property added contents 34logfile34: 34log content34 sample 34programname34: 34zap34 34version34: 34dev build34 34generated34: 34mon 10 feb 2025 17:27:2334 34site34: 34http:localhost:909134 34summaryitems34: 34authentication work34 34passed34: 34authsummaryauth34 34username identified34 34authsummaryusername34 34password 34authsummarypassword34 34session 34authsummarysession34 34verification 34authsummaryverif34 34failurereasons34: 34authfailurenosuccessfullogins34 34no logins34 34afenv34: 34env:n contexts:n name: simplejsonbearercookien urls:n http:localhost:9091authsimplejsonbearercookien includepaths:n authentication:n method: browsern parameters:n loginpageurl: loginpagewait: 5n browserid: firefoxheadlessn steps: verification:n polln loggedinregex: oken loggedoutregex: 403 forbiddenen pollfrequency: 0n pollunits: secondsn pollurl: http:localhost:9091authsimplejsonbearercookieusern pollpostdata: 3434n sessionmanagement:n headersn authorization: 34bearer json:accesstoken34n cookie: 34tokenjson:accesstoken34n technology: structure: users:n testn credentials:n password: password123n username: testtestcomn parameters: n34 34statistics34: 34statsauthbrowserfoundfields34 34scope34: 34site34 34site:34 34statsauthbrowserpassed34 34statsauthconfiguresessionheader34 34global34 34statsauthconfigureverification34 34statsauthdetectauthjson34 34statsauthdetectsessionaccesstoken34 34statsauthdetectsessionauthorization34 34statsauthdetectsessiontoken34 34statsauthsessionsetheader34 20 34statsauthsessiontokenaccesstoken34 34statsauthsessiontokentoken34 34statsauthsessiontokensmax34 34statsauthstateloggedin34 34statsauthsuccess34 " }, { "url": "/docs/alerts/10111/", @@ -8012,8 +8012,8 @@ "title": "Top ZAP Add-Ons Last Month", "keywords": ["","add-ons","last","month","top","zap"], "tags": null, - "summary": "\u003cp\u003eThese were the most frequently installed \u003cstrong\u003eoptional\u003c/strong\u003e add-ons last month.\u003c/p\u003e\n\u003cp\u003eNote that this does not mean they were the most \u003cstrong\u003eused\u003c/strong\u003e add-ons - that is harder to quantify.\u003c/p\u003e\n\u003ctable class=\"table market-table\"\u003e\n \u003cthead align=\"left\"\u003e\n \u003ctr\u003e\n \u003cth \u003ePosition\u003c/th\u003e\n \u003cth \u003eAdd-On\u003c/th\u003e\n \u003cth \u003eStatus\u003c/th\u003e\n \u003cth\u003eID\u003c/th\u003e\n \u003cth \u003eLast Updated\u003c/th\u003e\n \u003c/tr\u003e\n \u003c/thead\u003e\n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 1\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/import-export/\"\u003eImport/Export\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n exim\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-09-02\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 2\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/database/\"\u003eDatabase\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n database\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-03-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 3\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/spider/\"\u003eSpider\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n release\n \u003c/td\u003e\n \u003ctd \u003e\n spider\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 4\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/requester/\"\u003eRequester\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n requester\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-01-10\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 5\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/postman-support/\"\u003ePostman Support\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n postman\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-10\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 6\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/authentication-helper/\"\u003eAuthentication Helper\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n authhelper\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-07\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 7\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/passive-scanner/\"\u003ePassive Scanner\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n pscan\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-09-10\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 8\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/passive-scan-rules-beta/\"\u003ePassive scanner rules (beta)\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n pscanrulesBeta\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 9\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/client-side-integration/\"\u003eClient Side Integration\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n client\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 10\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/scan-policies/\"\u003eScan Policies\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n scanpolicies\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 11\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/sequence-scanner/\"\u003eSequence\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n sequence\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-01-10\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 12\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/active-scan-rules-beta/\"\u003eActive scanner rules (beta)\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n ascanrulesBeta\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 13\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/passive-scan-rules-alpha/\"\u003ePassive scanner rules (alpha)\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n pscanrulesAlpha\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 14\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/access-control-testing/\"\u003eAccess Control Testing\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n accessControl\n \u003c/td\u003e\n \u003ctd \u003e\n 2024-03-25\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 15\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/plug-n-hack/\"\u003ePlug-n-Hack Configuration\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n plugnhack\n \u003c/td\u003e\n \u003ctd \u003e\n 2022-10-27\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 16\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/grpc-support/\"\u003egRPC Support\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n grpc\n \u003c/td\u003e\n \u003ctd \u003e\n 2024-07-02\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 17\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/custom-payloads/\"\u003eCustom Payloads\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n release\n \u003c/td\u003e\n \u003ctd \u003e\n custompayloads\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-09-02\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 18\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/technology-detection/\"\u003eTechnology Detection\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n release\n \u003c/td\u003e\n \u003ctd \u003e\n wappalyzer\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 19\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/active-scan-rules-alpha/\"\u003eActive scanner rules (alpha)\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n ascanrulesAlpha\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 20\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/advanced-sqlinjection-scanner/\"\u003eAdvanced SQLInjection Scanner\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n sqliplugin\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-04-30\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n\u003c/table\u003e", - "content": "these were most frequently installed optional addons last month note that does not mean they used harder quantify position addon status id updated importexport beta exim 20250902 database alpha 20250304 spider release 20251104 requester 20250110 postman support 20251110 authentication helper authhelper 20251107 passive scanner pscan 20250910 rules pscanrulesbeta client side integration 10 scan policies scanpolicies 11 sequence 12 active ascanrulesbeta 13 pscanrulesalpha 14 access control testing accesscontrol 20240325 15 plugnhack configuration 20221027 16 grpc 20240702 17 custom payloads custompayloads 18 technology detection wappalyzer 19 ascanrulesalpha 20 advanced sqlinjection sqliplugin 20250430 " + "summary": "\u003cp\u003eThese were the most frequently installed \u003cstrong\u003eoptional\u003c/strong\u003e add-ons last month.\u003c/p\u003e\n\u003cp\u003eNote that this does not mean they were the most \u003cstrong\u003eused\u003c/strong\u003e add-ons - that is harder to quantify.\u003c/p\u003e\n\u003ctable class=\"table market-table\"\u003e\n \u003cthead align=\"left\"\u003e\n \u003ctr\u003e\n \u003cth \u003ePosition\u003c/th\u003e\n \u003cth \u003eAdd-On\u003c/th\u003e\n \u003cth \u003eStatus\u003c/th\u003e\n \u003cth\u003eID\u003c/th\u003e\n \u003cth \u003eLast Updated\u003c/th\u003e\n \u003c/tr\u003e\n \u003c/thead\u003e\n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 1\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/import-export/\"\u003eImport/Export\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n exim\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-09-02\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 2\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/database/\"\u003eDatabase\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n database\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-03-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 3\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/spider/\"\u003eSpider\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n release\n \u003c/td\u003e\n \u003ctd \u003e\n spider\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 4\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/requester/\"\u003eRequester\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n requester\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-01-10\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 5\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/postman-support/\"\u003ePostman Support\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n postman\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-10\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 6\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/authentication-helper/\"\u003eAuthentication Helper\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n authhelper\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-12-03\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 7\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/passive-scanner/\"\u003ePassive Scanner\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n pscan\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-09-10\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 8\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/passive-scan-rules-beta/\"\u003ePassive scanner rules (beta)\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n pscanrulesBeta\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 9\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/client-side-integration/\"\u003eClient Side Integration\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n client\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-12-03\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 10\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/scan-policies/\"\u003eScan Policies\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n scanpolicies\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 11\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/sequence-scanner/\"\u003eSequence\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n sequence\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-01-10\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 12\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/active-scan-rules-beta/\"\u003eActive scanner rules (beta)\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n ascanrulesBeta\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 13\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/passive-scan-rules-alpha/\"\u003ePassive scanner rules (alpha)\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n pscanrulesAlpha\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 14\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/access-control-testing/\"\u003eAccess Control Testing\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n accessControl\n \u003c/td\u003e\n \u003ctd \u003e\n 2024-03-25\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 15\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/plug-n-hack/\"\u003ePlug-n-Hack Configuration\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n plugnhack\n \u003c/td\u003e\n \u003ctd \u003e\n 2022-10-27\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 16\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/grpc-support/\"\u003egRPC Support\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n grpc\n \u003c/td\u003e\n \u003ctd \u003e\n 2024-07-02\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 17\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/custom-payloads/\"\u003eCustom Payloads\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n release\n \u003c/td\u003e\n \u003ctd \u003e\n custompayloads\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-09-02\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 18\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/technology-detection/\"\u003eTechnology Detection\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n release\n \u003c/td\u003e\n \u003ctd \u003e\n wappalyzer\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-12-03\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 19\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/active-scan-rules-alpha/\"\u003eActive scanner rules (alpha)\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n alpha\n \u003c/td\u003e\n \u003ctd \u003e\n ascanrulesAlpha\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-11-04\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n \n \u003ctr\u003e\n \u003ctd \u003e\n 20\n \u003c/td\u003e\n \u003ctd \u003e\n \n \u003ca href=\"/docs/desktop/addons/advanced-sqlinjection-scanner/\"\u003eAdvanced SQLInjection Scanner\u003c/a\u003e\n \n \u003c/td\u003e\n \u003ctd \u003e\n beta\n \u003c/td\u003e\n \u003ctd \u003e\n sqliplugin\n \u003c/td\u003e\n \u003ctd \u003e\n 2025-04-30\n \u003c/td\u003e\n \u003c/tr\u003e\n \n \n\u003c/table\u003e", + "content": "these were most frequently installed optional addons last month note that does not mean they used harder quantify position addon status id updated importexport beta exim 20250902 database alpha 20250304 spider release 20251104 requester 20250110 postman support 20251110 authentication helper authhelper 20251203 passive scanner pscan 20250910 rules pscanrulesbeta client side integration 10 scan policies scanpolicies 11 sequence 12 active ascanrulesbeta 13 pscanrulesalpha 14 access control testing accesscontrol 20240325 15 plugnhack configuration 20221027 16 grpc 20240702 17 custom payloads custompayloads 18 technology detection wappalyzer 19 ascanrulesalpha 20 advanced sqlinjection sqliplugin 20250430 " }, { "url": "/docs/alerts/40029/", @@ -8461,7 +8461,7 @@ "keywords": ["","marketplace","zap"], "tags": null, "summary": "\u003cp\u003eZAP Marketplace contains ZAP add-ons which have been written by the ZAP team and the community. The add-ons help to extend the functionalities of ZAP.\nIf you are using the latest version of ZAP then you can browse and download add-ons from within ZAP by clicking on this button in the toolbar:\u003c/p\u003e", - "content": "zap marketplace contains addons which have been written by team community help extend functionalities you using latest version then can browse download from within clicking button toolbar: also import that downloaded manually via file load addon menu option desktop would like publish your own follow how guide name id status author last updated access control testing adds set tools web applications accesscontrol 10 alpha dev 20240325 active scanner rules release ascanrules 75 20251104 ascanrulesalpha 53 beta ascanrulesbeta 63 advanced sqlinjection injection bundle sqli derived sqlmap sqliplugin 16 andrea pompili yhawke 20250430 ajax spider allows sites make heavy use javascript crawljax spiderajax 23270 alert filters automate changing risk levels alertfilters 25 all one notes simple extension view pane allinonenotes david vassallo 20211007 attack surface detector analyzes application source code generate endpoints used penetration attacksurfacedetector 114 secure decisions matthew deletto 20190307 authentication helper helps identify up handling authhelper 0320 20251107 statistics records logged inout contexts scope authstats automation framework 0560 beanshell console provides browser render html responses browserview 20230313 bug tracker bugtracker 20220923 call graph user selected resources callgraph colm o39flaherty home handles calls services callhome 0190 20251125 client side integration exposes information firefox chrome extensions 0180 collection: pentester pack collection ideal pentesters packpentester 010 20220512 scan just containing packscanrules 001 20220513 common library other commonlib 1380 20251021 scripts useful communityscripts 19 20240701 core language files translations corelang 15 20220214 custom payloads ability add edit remove ie scanners custompayloads 0150 20250902 database engines related infrastructure 080 20250304 development 0100 20250515 diff displays dialog showing differences between requests uses diffutils diffmatchpatch 17 20250109 directory list v10 names forced fuzzer directorylistv1 v23 lists directorylistv23 lc lower case directorylistv23lc dom xss rule domxss 22 aabha biyani 20250710 encoder encodedecodehash support scripted processors 170 20250620 eval villain when launched evalvillain 040 dennis goodlett 20241125 fileupload detect upload them find vulnerabilities 121 ksasan preetkaran20gmailcom 20231023 browsing directories owasp dirbuster tool bruteforce 20251110 fuzzai 003 marios gyftos yiannis pavlosoglou 20251106 fuzzdb offensive backdoors manual may flagged antivirus fuzzdboffensive 20240111 fuzz 13160 getting started short gettingstarted graalvm engine scripting graaljs 0110 graphql inspect 0280 20250326 groovy 320 20240411 grpc decode protobuf messages 020 20240702 arabic helparsa crowdin 20250821 bosnian helpbsba chinese simplified helpzhcn english 21 filipino helpfilph french helpfrfr 11 indonesian helpidid japanese helpjajp malay helpmsmy portuguese brazilian helpptbr 12 russian helpruru spanish helpeses turkish helptrtr highlighter highlight strings request response tabs hud heads display 20240507 image location privacy passive imagelocationscanner jay ball veggiespam 20250918 importexport export functionality exim thatsn0tmysite invoke external passing context such urls parameters json shows nicely formatted jsonview juha kiveks 20230907 jwt 103 20230102 kotlin 110 stackhawk engineering levoai build openapi specs traffic 030 20240710 linux webdrivers webdriverlinux 168 20251203 macos webdrivermacos map local mapping content chosen maplocal keindel andrey maksimov 20231005 neonmarker colors history table items based tags 180 kingthorin 20250214 network networking capabilities 0240 oast exploit outofband 0230 online menus onlinemenu 14 imports spiders definitions 47 plus joanna bona nathalie bouchahine artur grzesica mohammad kamar markus kiss michal materniak marcin spiewak sda se open industry solutions parameter digger hidden unlinked finding cache poisoning paramdigger arkaprabha chakraborty 20240715 scanning pscan 050 20250910 pscanrules 69 pscanrulesalpha pscanrulesbeta plugnhack configuration supports mozilla standard: https:developermozillaorgenusdocsplugnhack 13 20221027 postman collections python templates included jython quick start tab quickly test target quickstart 52 reflect finds reflected 0011 caleb kinney 20210219 regular expression tester expressions regextester replacer easy way replace 20 20250110 report generation official reports 0420 requester send 780 surikato retest presenceabsence previously generated alerts retirejs vulnerable outdated packages retire 0500 nikita mundhada reveal show fields enable disabled revisit site any time past session ruby jruby saml 20221028 policies standard scanpolicies 060 script jsr 223 languages 45150 selenium webdriver provider includes htmlunit 15410 sequence gives possibility defining scanned serversent events sse communication 20240521 soap scans wsdl 28 alberto albertov91 43 software manager data xml directly server srm 202590 black duck inc 20250926 automatically uris 0170 svn svndigger technology detection various fingerprints identifiers wappalyzer 21490 tips tricks token analysis analyze pseudo random tokens those csrf protection tokengen treetools tree carl sampson value generator define field values submitting app added modified enableddisabled deleted formhandler 670 viewstate aspjsf decoder editor calum hutton websockets websocket 34 windows webdriverwindows 169 zest graphical security zaps macro steroids 48100 20251029 " + "content": "zap marketplace contains addons which have been written by team community help extend functionalities you using latest version then can browse download from within clicking button toolbar: also import that downloaded manually via file load addon menu option desktop would like publish your own follow how guide name id status author last updated access control testing adds set tools web applications accesscontrol 10 alpha dev 20240325 active scanner rules release ascanrules 75 20251104 ascanrulesalpha 53 beta ascanrulesbeta 63 advanced sqlinjection injection bundle sqli derived sqlmap sqliplugin 16 andrea pompili yhawke 20250430 ajax spider allows sites make heavy use javascript crawljax spiderajax 23280 20251203 alert filters automate changing risk levels alertfilters 25 all one notes simple extension view pane allinonenotes david vassallo 20211007 attack surface detector analyzes application source code generate endpoints used penetration attacksurfacedetector 114 secure decisions matthew deletto 20190307 authentication helper helps identify up handling authhelper 0330 statistics records logged inout contexts scope authstats automation framework 0570 beanshell console provides browser render html responses browserview 20230313 bug tracker bugtracker 20220923 call graph user selected resources callgraph colm o39flaherty home handles calls services callhome 0190 20251125 client side integration exposes information firefox chrome extensions collection: pentester pack collection ideal pentesters packpentester 010 20220512 scan just containing packscanrules 001 20220513 common library other commonlib 1380 20251021 scripts useful communityscripts 19 20240701 core language files translations corelang 15 20220214 custom payloads ability add edit remove ie scanners custompayloads 0150 20250902 database engines related infrastructure 080 20250304 development 0100 20250515 diff displays dialog showing differences between requests uses diffutils diffmatchpatch 17 20250109 directory list v10 names forced fuzzer directorylistv1 v23 lists directorylistv23 lc lower case directorylistv23lc dom xss rule domxss 22 aabha biyani 20250710 encoder encodedecodehash support scripted processors 170 20250620 eval villain when launched evalvillain 040 dennis goodlett 20241125 fileupload detect upload them find vulnerabilities 121 ksasan preetkaran20gmailcom 20231023 browsing directories owasp dirbuster tool bruteforce 20251110 fuzzai 003 marios gyftos yiannis pavlosoglou 20251106 fuzzdb offensive backdoors manual may flagged antivirus fuzzdboffensive 20240111 fuzz 13160 getting started short gettingstarted graalvm engine scripting graaljs 0110 graphql inspect 0280 20250326 groovy 320 20240411 grpc decode protobuf messages 020 20240702 arabic helparsa crowdin 20250821 bosnian helpbsba chinese simplified helpzhcn english 21 filipino helpfilph french helpfrfr 11 indonesian helpidid japanese helpjajp malay helpmsmy portuguese brazilian helpptbr 12 russian helpruru spanish helpeses turkish helptrtr highlighter highlight strings request response tabs hud heads display 20240507 image location privacy passive imagelocationscanner jay ball veggiespam 20250918 importexport export functionality exim thatsn0tmysite invoke external passing context such urls parameters json shows nicely formatted jsonview juha kiveks 20230907 jwt 103 20230102 kotlin 110 stackhawk engineering levoai build openapi specs traffic 030 20240710 linux webdrivers webdriverlinux 168 macos webdrivermacos map local mapping content chosen maplocal keindel andrey maksimov 20231005 neonmarker colors history table items based tags 180 kingthorin 20250214 network networking capabilities 0240 oast exploit outofband 0230 online menus onlinemenu 14 imports spiders definitions 47 plus joanna bona nathalie bouchahine artur grzesica mohammad kamar markus kiss michal materniak marcin spiewak sda se open industry solutions parameter digger hidden unlinked finding cache poisoning paramdigger arkaprabha chakraborty 20240715 scanning pscan 050 20250910 pscanrules 69 pscanrulesalpha pscanrulesbeta plugnhack configuration supports mozilla standard: https:developermozillaorgenusdocsplugnhack 13 20221027 postman collections python templates included jython quick start tab quickly test target quickstart 52 reflect finds reflected 0011 caleb kinney 20210219 regular expression tester expressions regextester replacer easy way replace 20 20250110 report generation official reports 0420 20251107 requester send 780 surikato retest presenceabsence previously generated alerts retirejs vulnerable outdated packages retire 0510 nikita mundhada reveal show fields enable disabled revisit site any time past session ruby jruby saml 20221028 policies standard scanpolicies 060 script jsr 223 languages 45160 selenium webdriver provider includes htmlunit 15420 sequence gives possibility defining scanned serversent events sse communication 20240521 soap scans wsdl 28 alberto albertov91 43 software manager data xml directly server srm 202590 black duck inc 20250926 automatically uris 0170 svn svndigger technology detection various fingerprints identifiers wappalyzer 21500 tips tricks token analysis analyze pseudo random tokens those csrf protection tokengen treetools tree carl sampson value generator define field values submitting app added modified enableddisabled deleted formhandler 670 viewstate aspjsf decoder editor calum hutton websockets websocket 34 windows webdriverwindows 169 zest graphical security zaps macro steroids 48100 20251029 " }, { "url": "/docs/zap-ownership/",
automation0.55.00.57.0
bcmail-jdk18on1.771.83 Bouncy Castle Licence
bcpkix-jdk18on1.771.83 Bouncy Castle Licence
bcprov-jdk18on1.771.83 Bouncy Castle Licence
bcutil-jdk18on1.771.83 Bouncy Castle Licence
commons-io2.20.02.21.0 Apache-2.0
lombok1.18.401.18.42 MIT
network0.24.00.25.0
- 2025-11-07 + 2025-12-03
- 2025-11-04 + 2025-12-03
- 2025-11-04 + 2025-12-03