Runs OWASP ZAP active security scans via the ZAP API daemon with custom scan policies. Generates SARIF reports compatible with GitHub Advanced Security code scanning alerts.
Scanned 6/8/2026
Install via CLI
openskills install agentskillexchange/skills---
name: "OWASP ZAP Active Scanner Agent"
slug: "owasp-zap-active-scanner-agent"
description: "Runs OWASP ZAP active security scans via the ZAP API daemon with custom scan policies. Generates SARIF reports compatible with GitHub Advanced Security code scanning alerts."
github_stars: 14991
verification: "security_reviewed"
source: "https://github.com/zaproxy/zaproxy"
author: "zaproxy"
category: "Security & Verification"
framework: "Codex"
tool_ecosystem:
github_repo: "zaproxy/zaproxy"
github_stars: 14991
---
# OWASP ZAP Active Scanner Agent
Runs OWASP ZAP active security scans via the ZAP API daemon with custom scan policies. Generates SARIF reports compatible with GitHub Advanced Security code scanning alerts.
## Installation
Requirements and caveats from upstream:
- 
Basic usage or getting-started notes:
- 
- Source: https://github.com/zaproxy/zaproxy
- Extracted from upstream docs: https://raw.githubusercontent.com/zaproxy/zaproxy/HEAD/README.md
## Documentation
- https://www.zaproxy.org/docs/
## Source
- [Agent Skill Exchange](https://agentskillexchange.com/skills/owasp-zap-active-scanner-agent/)
No comments yet. Be the first to comment!