Skip to content

Add ZeroDAST — open-source CI DAST framework#125

Open
AlphaSudo wants to merge 1 commit intodevsecops:masterfrom
AlphaSudo:add-zerodast
Open

Add ZeroDAST — open-source CI DAST framework#125
AlphaSudo wants to merge 1 commit intodevsecops:masterfrom
AlphaSudo:add-zerodast

Conversation

@AlphaSudo
Copy link
Copy Markdown

ZeroDAST is an open-source CI DAST framework that wraps OWASP ZAP with auth adapters, container hardening, and intelligent reporting.

Key differentiators from vanilla ZAP:

  • Four auth adapter styles (custom headers, nested tokens, admin separation)
  • Trusted/untrusted CI workflow split with container hardening
  • Delta-scoped PR scanning (~3 min) and nightly full scans (~5 min)
  • Diff-aware baseline comparison and remediation guides

Proven on NocoDB, Strapi, Directus, Medusa, FastAPI, Petclinic, and Django targets. Apache 2.0.

https://github.com/AlphaSudo/zerodast

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant