Create a Collection
Create a new private or organization request collection
Manage Requests
Add, update, or remove requests inside a collection
Test a Request
Verify your HTTP request configurations before running a scan
Configure Authentication
Setup credentials (cookies, bearer tokens, headers) for a collection
Choose Scan Categories
Enable or disable vulnerability, structural, and logical test types
Create a Directive
Design custom payloads and injection filters
Create a Validator
Define custom response matchers and issue reports
Enable Custom Checks
Apply custom Directives and Validators to your collections
Run a Scan
Perform pre-flight health checks and launch active scans
Stop a Scan
Terminate active scans and retain partial results
Review Scan Results
Inspect findings categorized by host, endpoint, and parameter
Compare Scan Variants
Diff fuzzed requests/responses against baseline transactions
Inspect Discovered Parameters
Trace all entry points fuzzed by the scan engine
Export HAR File
Download and analyze full HTTP scan session archives
Share a Collection
Move collections between personal and shared organization scopes
Managing Organizations
Add team members and assign ADMIN or MEMBER permissions
Generate an API Key
Automate scans and integrate with CI/CD pipelines