Runs OWASP ZAP active and passive scans against target URLs using the ZAP Docker API. Parses JSON reports to flag XSS, SQLi, and CSRF vulnerabilities with severity scoring.
Scanned 6/8/2026
Install via CLI
openskills install agentskillexchange/skills---
name: "OWASP ZAP Automated Scan Orchestrator"
slug: "owasp-zap-automated-scan-orchestrator"
description: "Runs OWASP ZAP active and passive scans against target URLs using the ZAP Docker API. Parses JSON reports to flag XSS, SQLi, and CSRF vulnerabilities with severity scoring."
github_stars: 14991
verification: "security_reviewed"
source: "https://github.com/zaproxy/zaproxy"
category: "Security & Verification"
framework: "OpenClaw"
tool_ecosystem:
github_repo: "zaproxy/zaproxy"
github_stars: 14991
---
# OWASP ZAP Automated Scan Orchestrator
Runs OWASP ZAP active and passive scans against target URLs using the ZAP Docker API. Parses JSON reports to flag XSS, SQLi, and CSRF vulnerabilities with severity scoring.
## Installation
Requirements and caveats from upstream:
- 
Basic usage or getting-started notes:
- 
- Source: https://github.com/zaproxy/zaproxy
- Extracted from upstream docs: https://raw.githubusercontent.com/zaproxy/zaproxy/HEAD/README.md
## Source
- [Agent Skill Exchange](https://agentskillexchange.com/skills/owasp-zap-automated-scan-orchestrator/)
No comments yet. Be the first to comment!