zap
SkillSecurityLets your agent run web security scans that crawl sites and report vulnerabilities.
Available today. Use it from your connected AI after setup.
No other account needed.
Add ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.
Then ask your AI: use the zap skill
About this skill
🛡⚔️AI-Powered Penetration Testing Framework with automated vulnerability scanning, multi-agent system, and compliance reporting🛡⚔️
What this skill tells your AI
The instructions your AI receives, as published by shadd0wtaka/zen-ai-pentest in skills/tool-zap/SKILL.md and read by ahel’s review.
OWASP ZAP Integration - Web Application Security Scanner for Zen-AI-Pentest
Category: scanning — Web Vulnerability Scanning
Overview
OWASP ZAP Integration - Web Application Security Scanner for Zen-AI-Pentest
This module provides a comprehensive OWASP ZAP wrapper with:
- REST API Wrapper für ZAP
- Authentifizierte Scans (Form, JWT, OAuth2, API Key, Session Cookie)
- Context Management
- Session Handling
- Spider/Crawling (Standard & AJAX)
- Active Scan (Vulnerability Detection)
- OpenAPI Scan (API Endpoints)
- GraphQL Scan
- Alert Management (High/Medium/Low/Informational)
- CWE/WASC Mapping
- Evidence Collection
- Report Generation (HTML, JSON, SARIF)
- Docker Support (Headless Mode)
- Automation Framework Integration
Au
Usage in Zen-Ai-Pentest
# Auto-registered in tool_registry under "scanning"
result = await tool_orchestrator.execute("zap_integration", target="example.com")
CLI Equivalent
zap --help
Agent Integration
- CLI:
deep-recon --tool zap_integration --target example.com - Agent persona: auto-selected from category
scanning - MCP:
zen-agents_agent_run agent_type=scanning tool=zap_integration - API:
POST /tools/executewith{"tool_name": "zap_integration", "target": "example.com"}
Signals
- GitHub stars
- 469
- Forks
- 81
- Last commit
- Sep 2026
Advanced
- Item type
- skill
- Key
tool-zap- Source
- github.com/shadd0wtaka/zen-ai-pentest