[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"project-4003":3},{"id":4,"name":5,"fullName":6,"owner":5,"repo":5,"description":7,"homepage":8,"htmlUrl":9,"language":10,"languages":9,"totalLinesOfCode":9,"stars":11,"forks":12,"watchers":13,"openIssues":14,"contributorsCount":15,"subscribersCount":15,"size":15,"stars1d":16,"stars7d":17,"stars30d":18,"stars90d":15,"forks30d":15,"starsTrendScore":19,"compositeScore":20,"rankGlobal":9,"rankLanguage":9,"license":21,"archived":22,"fork":22,"defaultBranch":23,"hasWiki":24,"hasPages":22,"topics":25,"createdAt":9,"pushedAt":9,"updatedAt":34,"readmeContent":35,"aiSummary":36,"trendingCount":15,"starSnapshotCount":15,"syncStatus":37,"lastSyncTime":38,"discoverSource":39},4003,"zaproxy","zaproxy\u002Fzaproxy","The ZAP by Checkmarx Core project","https:\u002F\u002Fwww.zaproxy.org",null,"Java",15266,2569,393,818,0,10,48,163,44,45,"Apache License 2.0",false,"main",true,[26,27,28,29,30,31,32,33,5],"appsec","dast","hacktoberfest","opensource","security","security-scanner","zap","zap-development","2026-06-12 02:00:57","# [![](https:\u002F\u002Fraw.githubusercontent.com\u002Fwiki\u002Fzaproxy\u002Fzaproxy\u002Fimages\u002Fzap-by-checkmarx.png)](https:\u002F\u002Fwww.zaproxy.org)\n[![License](https:\u002F\u002Fimg.shields.io\u002Fbadge\u002Flicense-Apache%202-4EB1BA.svg)](https:\u002F\u002Fwww.apache.org\u002Flicenses\u002FLICENSE-2.0.html)\n[![GitHub release](https:\u002F\u002Fimg.shields.io\u002Fgithub\u002Frelease\u002Fzaproxy\u002Fzaproxy.svg)](https:\u002F\u002Fwww.zaproxy.org\u002Fdownload\u002F)\n[![Java CI](https:\u002F\u002Fgithub.com\u002Fzaproxy\u002Fzaproxy\u002Factions\u002Fworkflows\u002Fci.yml\u002Fbadge.svg)](https:\u002F\u002Fgithub.com\u002Fzaproxy\u002Fzaproxy\u002Factions\u002Fworkflows\u002Fci.yml)\n[![CII Best Practices](https:\u002F\u002Fbestpractices.coreinfrastructure.org\u002Fprojects\u002F24\u002Fbadge)](https:\u002F\u002Fbestpractices.coreinfrastructure.org\u002Fprojects\u002F24)\n[![Github Releases](https:\u002F\u002Fimg.shields.io\u002Fgithub\u002Fdownloads\u002Fzaproxy\u002Fzaproxy\u002Flatest\u002Ftotal.svg?maxAge=2592000)](https:\u002F\u002Fzapbot.github.io\u002Fzap-mgmt-scripts\u002Fdownloads.html)\n[![javadoc](https:\u002F\u002Fjavadoc.io\u002Fbadge2\u002Forg.zaproxy\u002Fzap\u002Fjavadoc.svg)](https:\u002F\u002Fjavadoc.io\u002Fdoc\u002Forg.zaproxy\u002Fzap)\n[![CodeQL](https:\u002F\u002Fgithub.com\u002Fzaproxy\u002Fzaproxy\u002Factions\u002Fworkflows\u002Fcodeql.yml\u002Fbadge.svg)](https:\u002F\u002Fgithub.com\u002Fzaproxy\u002Fzaproxy\u002Factions\u002Fworkflows\u002Fcodeql.yml)\n[![Quality Gate Status](https:\u002F\u002Fsonarcloud.io\u002Fapi\u002Fproject_badges\u002Fmeasure?project=zaproxy_zaproxy&metric=alert_status)](https:\u002F\u002Fsonarcloud.io\u002Fdashboard?id=zaproxy_zaproxy)\n[![Open Source Helpers](https:\u002F\u002Fwww.codetriage.com\u002Fzaproxy\u002Fzaproxy\u002Fbadges\u002Fusers.svg)](https:\u002F\u002Fwww.codetriage.com\u002Fzaproxy\u002Fzaproxy)\n[![Twitter Follow](https:\u002F\u002Fimg.shields.io\u002Ftwitter\u002Ffollow\u002Fzaproxy.svg?style=social&label=Follow&maxAge=2592000)](https:\u002F\u002Ftwitter.com\u002Fzaproxy)\n\n![Integration Tests](https:\u002F\u002Fgithub.com\u002Fzaproxy\u002Fzaproxy\u002Factions\u002Fworkflows\u002Frun-integration-tests.yml\u002Fbadge.svg)\n![Docker Live Release](https:\u002F\u002Fgithub.com\u002Fzaproxy\u002Fzaproxy\u002Factions\u002Fworkflows\u002Frelease-live-docker.yml\u002Fbadge.svg)\n\nThe Zed Attack Proxy (ZAP) by Checkmarx is the world’s most widely used web app scanner. \nFree and open source. A community based GitHub Top 1000 project that anyone can contribute to.\n\nIt can help you automatically find security vulnerabilities in your web applications while you are developing and testing your applications. \nIt's also a great tool for experienced pentesters to use for manual security testing.\n\n[![](https:\u002F\u002Fraw.githubusercontent.com\u002Fwiki\u002Fzaproxy\u002Fzaproxy\u002Fimages\u002FZAP-Download.png)](https:\u002F\u002Fwww.zaproxy.org\u002Fdownload\u002F)\n\nFor more details about ZAP see the website: [zaproxy.org](https:\u002F\u002Fwww.zaproxy.org\u002F)\n\n[![](https:\u002F\u002Fraw.githubusercontent.com\u002Fwiki\u002Fzaproxy\u002Fzaproxy\u002Fimages\u002Fzap-website.png)](https:\u002F\u002Fwww.zaproxy.org\u002F)\n","Zed Attack Proxy (ZAP) 是一个广泛使用的开源网络安全扫描工具，旨在帮助开发者和安全专家发现Web应用程序中的安全漏洞。其核心功能包括自动扫描、被动扫描以及手动测试支持，能够检测多种常见的安全问题如SQL注入、跨站脚本等。ZAP采用Java开发，具有良好的扩展性，支持通过插件添加新的功能。该工具适用于软件开发生命周期中的各个阶段，无论是开发过程中的早期安全检查还是产品发布前的全面安全审计都非常适用。此外，对于有经验的安全研究人员来说，ZAP也是一个强大的手动测试平台。",2,"2026-06-11 02:57:43","top_language"]