Automates OWASP ZAP scans against REST APIs using the ZAP Python API client. Imports OpenAPI/Swagger specs for targeted scanning and generates SARIF-format reports for GitHub Security tab integration.
Scanned 6/8/2026
Install via CLI
openskills install agentskillexchange/skills---
name: "OWASP ZAP API Security Scanner"
slug: "owasp-zap-api-security-scanner"
description: "Automates OWASP ZAP scans against REST APIs using the ZAP Python API client. Imports OpenAPI/Swagger specs for targeted scanning and generates SARIF-format reports for GitHub Security tab integration."
github_stars: 14991
verification: "security_reviewed"
source: "https://github.com/zaproxy/zaproxy"
category: "Security & Verification"
framework: "Gemini"
tool_ecosystem:
github_repo: "zaproxy/zaproxy"
github_stars: 14991
---
# OWASP ZAP API Security Scanner
Automates OWASP ZAP scans against REST APIs using the ZAP Python API client. Imports OpenAPI/Swagger specs for targeted scanning and generates SARIF-format reports for GitHub Security tab integration.
## Installation
Requirements and caveats from upstream:
- 
Basic usage or getting-started notes:
- 
- Source: https://github.com/zaproxy/zaproxy
- Extracted from upstream docs: https://raw.githubusercontent.com/zaproxy/zaproxy/HEAD/README.md
## Source
- [Agent Skill Exchange](https://agentskillexchange.com/skills/owasp-zap-api-security-scanner/)
No comments yet. Be the first to comment!