
burpcommander
Ruby command-line interface to Burp Suite's REST API

Ruby command-line interface to Burp Suite's REST API

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

Node.js SDK for capturing and replaying API calls made to/from your service

Collaborative application security testing between humans and agents via CLI and MCP

API Scraper Agent for Web API's

A lightweight CLI tool for systematically detecting and exploiting race conditions in web applications, APIs, and modern services.

Terminal API client for HTTP, GraphQL and gRPC. Plain .http files you can diff and version, with workflows, mocks, profiling, tracing, OpenAPI…

The AI toolkit for building reliable browser automations

Wireshark for MCP. A transparent proxy that shows every real tool call between your AI client and your MCP servers, live in your terminal.

Open-source MITM proxy to intercept, inspect, and mock network traffic.

Web2 bug bounty Agent Skill — evidence-based, no AI slop. Covers 18 vulnerability classes across HackerOne, Bugcrowd, Intigriti, and YesWeHack.

HTTP Proxy Analysis for reverse engineering protocol communication

A powerful directory brute-force tool that's tailored for recursive/multiplex operations, API discovery and enumeration, JS file scraping, and lists…

REST API automation for Burp Suite Community Edition. Drop-in Java extension exposing send/repeat/history endpoints over a local HTTP API.

Alexa skill example for Faraday API

A headless , scriptable, command-line based MITM proxy designed for network traffic interception, analysis, and modification on Windows systems.

ExtendedMacro - BurpSuite plugin providing extended macro functionality

REST/JSON API to the Burp Suite security tool.