{"id":"3d2df7c0-3dde-4a2c-8024-3d1d6db9832d","shortId":"fA3vns","kind":"skill","title":"OWASP ZAP Automated Pen Testing Agent","tagline":"Runs automated penetration tests using OWASP ZAP API with spider crawling, active scanning, and AJAX-aware testing. Generates SARIF and HTML reports with CWE-mapped findings for security review workflows.","description":"# OWASP ZAP Automated Pen Testing Agent\n\nRuns automated penetration tests using OWASP ZAP API with spider crawling, active scanning, and AJAX-aware testing. Generates SARIF and HTML reports with CWE-mapped findings for security review workflows.\n\n## Installation\n\nRequirements and caveats from upstream:\n- ![Docker Live Release](https://github.com/zaproxy/zaproxy/actions/workflows/release-live-docker.yml/badge.svg)\n\nBasic usage or getting-started notes:\n- ![Integration Tests](https://github.com/zaproxy/zaproxy/actions/workflows/run-integration-tests.yml/badge.svg)\n\n- Source: https://github.com/zaproxy/zaproxy\n- Extracted from upstream docs: https://raw.githubusercontent.com/zaproxy/zaproxy/HEAD/README.md\n\n## Source\n\n- [Agent Skill Exchange](https://agentskillexchange.com/skills/owasp-zap-automated-pen-testing-agent/)","tags":["owasp","zap","automated","pen","testing","agent","skills","agentskillexchange","agent-skills","ai-agents","ai-tools","awesome-list"],"capabilities":["skill","source-agentskillexchange","skill-owasp-zap-automated-pen-testing-agent","topic-agent-skills","topic-ai-agents","topic-ai-tools","topic-awesome-list","topic-claude-code","topic-codex","topic-cursor","topic-llm","topic-mcp","topic-npx-skills","topic-openclaw","topic-skills-catalog"],"categories":["skills"],"synonyms":[],"warnings":[],"endpointUrl":"https://skills.sh/agentskillexchange/skills/owasp-zap-automated-pen-testing-agent","protocol":"skill","transport":"skills-sh","auth":{"type":"none","details":{"cli":"npx skills add agentskillexchange/skills","source_repo":"https://github.com/agentskillexchange/skills","install_from":"skills.sh"}},"qualityScore":"0.454","qualityRationale":"deterministic score 0.45 from registry signals: · indexed on github topic:agent-skills · 8 github stars · SKILL.md body (826 chars)","verified":false,"liveness":"unknown","lastLivenessCheck":null,"agentReviews":{"count":0,"score_avg":null,"cost_usd_avg":null,"success_rate":null,"latency_p50_ms":null,"narrative_summary":null,"summary_updated_at":null},"enrichmentModel":"deterministic:skill-github:v1","enrichmentVersion":1,"enrichedAt":"2026-05-18T19:11:37.637Z","embedding":null,"createdAt":"2026-05-18T13:18:12.242Z","updatedAt":"2026-05-18T19:11:37.637Z","lastSeenAt":"2026-05-18T19:11:37.637Z","tsv":"'/skills/owasp-zap-automated-pen-testing-agent/)':118 '/zaproxy/zaproxy':104 '/zaproxy/zaproxy/actions/workflows/release-live-docker.yml/badge.svg)':88 '/zaproxy/zaproxy/actions/workflows/run-integration-tests.yml/badge.svg)':100 '/zaproxy/zaproxy/head/readme.md':111 'activ':18,56 'agent':6,44,113 'agentskillexchange.com':117 'agentskillexchange.com/skills/owasp-zap-automated-pen-testing-agent/)':116 'ajax':22,60 'ajax-awar':21,59 'api':14,52 'autom':3,8,41,46 'awar':23,61 'basic':89 'caveat':80 'crawl':17,55 'cwe':32,70 'cwe-map':31,69 'doc':108 'docker':83 'exchang':115 'extract':105 'find':34,72 'generat':25,63 'get':93 'getting-start':92 'github.com':87,99,103 'github.com/zaproxy/zaproxy':102 'github.com/zaproxy/zaproxy/actions/workflows/release-live-docker.yml/badge.svg)':86 'github.com/zaproxy/zaproxy/actions/workflows/run-integration-tests.yml/badge.svg)':98 'html':28,66 'instal':77 'integr':96 'live':84 'map':33,71 'note':95 'owasp':1,12,39,50 'pen':4,42 'penetr':9,47 'raw.githubusercontent.com':110 'raw.githubusercontent.com/zaproxy/zaproxy/head/readme.md':109 'releas':85 'report':29,67 'requir':78 'review':37,75 'run':7,45 'sarif':26,64 'scan':19,57 'secur':36,74 'skill':114 'skill-owasp-zap-automated-pen-testing-agent' 'sourc':101,112 'source-agentskillexchange' 'spider':16,54 'start':94 'test':5,10,24,43,48,62,97 'topic-agent-skills' 'topic-ai-agents' 'topic-ai-tools' 'topic-awesome-list' 'topic-claude-code' 'topic-codex' 'topic-cursor' 'topic-llm' 'topic-mcp' 'topic-npx-skills' 'topic-openclaw' 'topic-skills-catalog' 'upstream':82,107 'usag':90 'use':11,49 'workflow':38,76 'zap':2,13,40,51","prices":[{"id":"19cae3db-f8c5-4ee3-8ea9-9e95ee52d70f","listingId":"3d2df7c0-3dde-4a2c-8024-3d1d6db9832d","amountUsd":"0","unit":"free","nativeCurrency":null,"nativeAmount":null,"chain":null,"payTo":null,"paymentMethod":"skill-free","isPrimary":true,"details":{"org":"agentskillexchange","category":"skills","install_from":"skills.sh"},"createdAt":"2026-05-18T13:18:12.242Z"}],"sources":[{"listingId":"3d2df7c0-3dde-4a2c-8024-3d1d6db9832d","source":"github","sourceId":"agentskillexchange/skills/owasp-zap-automated-pen-testing-agent","sourceUrl":"https://github.com/agentskillexchange/skills/tree/main/skills/owasp-zap-automated-pen-testing-agent","isPrimary":false,"firstSeenAt":"2026-05-18T13:18:12.242Z","lastSeenAt":"2026-05-18T19:11:37.637Z"}],"details":{"listingId":"3d2df7c0-3dde-4a2c-8024-3d1d6db9832d","quickStartSnippet":null,"exampleRequest":null,"exampleResponse":null,"schema":null,"openapiUrl":null,"agentsTxtUrl":null,"citations":[],"useCases":[],"bestFor":[],"notFor":[],"kindDetails":{"org":"agentskillexchange","slug":"owasp-zap-automated-pen-testing-agent","github":{"repo":"agentskillexchange/skills","stars":8,"topics":["agent-skills","ai-agents","ai-tools","awesome-list","claude-code","codex","cursor","llm","mcp","npx-skills","openclaw","skills-catalog"],"license":"mit","html_url":"https://github.com/agentskillexchange/skills","pushed_at":"2026-05-18T19:02:17Z","description":"The open catalog of AI agent skills — 2,000+ security-scanned skills for Claude Code, Cursor, Codex, and more.","skill_md_sha":"76bed521aa7c4adeced68cb60df6cac486d40da8","skill_md_path":"skills/owasp-zap-automated-pen-testing-agent/SKILL.md","default_branch":"main","skill_tree_url":"https://github.com/agentskillexchange/skills/tree/main/skills/owasp-zap-automated-pen-testing-agent"},"layout":"multi","source":"github","category":"skills","frontmatter":{"name":"OWASP ZAP Automated Pen Testing Agent","description":"Runs automated penetration tests using OWASP ZAP API with spider crawling, active scanning, and AJAX-aware testing. Generates SARIF and HTML reports with CWE-mapped findings for security review workflows."},"skills_sh_url":"https://skills.sh/agentskillexchange/skills/owasp-zap-automated-pen-testing-agent"},"updatedAt":"2026-05-18T19:11:37.637Z"}}