1
0 Comments

APIs are the #1 attack surface, that's why we build APIPosture

APIs are the #1 attack surface

"For a long time, even before AI came into play, I had a problem with visualization of all endpoints and their authorization rules. I mean, I had Swagger, and OpenAPI, but I needed to come into each endpoint, one by one, to remember whether I set a particular endpoint to be protected or not. So I built a tool that does exactly this, and I made it open-source. It only takes 1 line to install and 1 line to run.

And since it was super easy to install and scan in, like, a minute, I continued on it and added a Pro version (OWASP and Secrets scanning) and an Enterprise version (compliance reports with SOC2 or ISO27001).

The best thing, it still installs and scans in under 2 minutes, supporting over 10 frameworks spanned over 6 programming languages. All scans are done locally 100% and will remain like that in the future.

Another reason why I built APIPosture is that some AI models claim to do security scanning, but they still require you to upload your entire codebase (!) and cost like $20,000 in tokens." -- Blago Culjak / coding founder

So we recently tested an alpha PRO version in a small group of developers, incorporated their feedback, and have now launched it on producthunt.

Like to know more? Check our documentation
— Free community edition available

If you have any questions or feedback, we are more than happy to receive and answer. Just drop a line in the comments.

posted toAvatar for product APIPosture.com
APIPosture.com