Skip to content
#

graphql-security

Here are 17 public repositories matching this topic...

A lightweight, multi-threaded web application reconnaissance and security testing tool. Features include crawling, JavaScript analysis, secret detection, GraphQL probing, JWT analysis, security header checks, and XSS fuzzing, with JSON and HTML reporting. For authorized security testing only (MIT License)

  • Updated Oct 14, 2025
  • Python

Burp Suite extension for passive GraphQL reconnaissance. Catalogs operations from proxy traffic, tracks variable shapes with sample values, stores original requests per signature, and sends to Intruder with auto-marked payload positions. Supports status triage, export/import for session persistence, and batched mutation detection.

  • Updated Mar 16, 2026
  • Java

Improve this page

Add a description, image, and links to the graphql-security topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the graphql-security topic, visit your repo's landing page and select "manage topics."

Learn more