{"id":102319,"date":"2025-06-17T17:48:08","date_gmt":"2025-06-17T15:48:08","guid":{"rendered":"https:\/\/staging.checkmarx.com\/?page_id=102319"},"modified":"2025-06-20T19:17:04","modified_gmt":"2025-06-20T17:17:04","slug":"product-zap","status":"publish","type":"page","link":"https:\/\/checkmarx.com\/product\/zap\/","title":{"rendered":"ZAP"},"content":{"rendered":"<section class=\"section-inner-hero-text-left page-without-header-bg__hero  has-custom-bg hero-generic-title page-without-header-bg__hero bottom_padding_is_180px\" style=\"--bg-desktop: url('https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/01\/generic_hero_bg_2-scaled.webp'); --bg-mobile: url('https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/01\/generic-hero-bg-mobile.webp');\">\n\n    <div class=\"main-wrapper section-inner-hero-text-left__wrapper\">\n        <div class=\"section-inner-hero-text-left__wrap-text\">\n\t\t\t<p class=\"section-description-top\">By Checkmarx<\/p>\t\t\t<h1 class=\"section-title\">Zed Attack Proxy (ZAP)<\/h1>\t\t\t<p class=\"section-description\">Explore the power of ZAP \u2013 the world&#8217;s leading open-source web application security scanner, designed to make security testing easy and efficient for developers, testers, and security professionals.<\/p>            <div class=\"wrap-btns-hero\">\n\t\t\t\t        <a href=\"https:\/\/www.zaproxy.org\/\" class=\"btn btn-2 btn-bg accent demo\" target=\"_blank\">Get it now<\/a>\n        \t\t\t\t        <a href=\"#content\" class=\"btn btn-2 border-2\" target=\"_blank\">Learn More<\/a>\n                    <\/div>\n        <\/div>\n    <\/div>\n\t<\/section>\n\n<section class=\"section-slider-logo js-wrap-line-slider-logo\">\n    <div class=\"main-wrapper\">\n        <div class=\"swiper slider-hero-logo\">\n            <div class=\"swiper-wrapper\">\n                                    <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/01-Apple.svg\" alt=\"01 Apple\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/04-Salesforce.svg\" alt=\"04 Salesforce\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/05-Siemens.svg\" alt=\"05 Siemens\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/06-Walmart.svg\" alt=\"06 Walmart\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/07-Ford.svg\" alt=\"07 Ford\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/08-CITI.svg\" alt=\"08 CITI\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/09-VISA.svg\" alt=\"09 VISA\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/02\/the_carlsberg_group_logo_strip.svg\" alt=\"the_carlsberg_group_logo_strip\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/10-Elevance-Health.svg\" alt=\"10 Elevance Health\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/12-Orange.svg\" alt=\"12 Orange\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/13-Airbus-Group.svg\" alt=\"13 Airbus Group\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/14-Novartis.svg\" alt=\"14 Novartis\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/16-GE.svg\" alt=\"16 GE\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/17-Sainsburys.svg\" alt=\"17 Sainsbury's\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/18-PWC.svg\" alt=\"18 PWC\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/19-The-weather-company.svg\" alt=\"19 The weather company\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/20-CGI.svg\" alt=\"20 CGI\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/21-Adidas.svg\" alt=\"21 Adidas\">\n                                <\/div>\n                    <\/div>\n                                        <div class=\"swiper-slide\">\n                        <div>\n                                    <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/07\/22-SAP.svg\" alt=\"22 SAP\">\n                                <\/div>\n                    <\/div>\n                                <\/div>\n        <\/div>\n    <\/div>\n<\/section>\n\n\n<section class=\"section-menu-page not-sticky platform-type\" id=\"content\">\n    <div class=\"main-wrapper section-menu-page__wrapper\">\n        <ul class=\"section-menu-page__bread-crumbs\">\n            <li><a href=\"\/\">Home <i class=\"arrow-css right\"><\/i><\/a><\/li>\n\t\t\t                        <li>\n                            <a href=\"\/product\/application-security-platform\/\">Solutions <i class=\"arrow-css right\"><\/i> <\/a>\n                        <\/li>\n\t\t\t\t\t\t            <li><a href=\"https:\/\/checkmarx.com\/product\/zap\/\" class=\"no-link\">ZAP<\/a><\/li>\n        <\/ul>\n        <ul class=\"section-menu-page__nav js--menu-page\">\n\t\t\t        <\/ul>\n    <\/div>\n<\/section>\n\n<section class=\"section-counters-new\">\n    <div class=\"main-wrapper section-counters__wrapper\">\n        <div class=\"left\">\n            <!-- Render the title and subtitle -->\n            <h2 class=\"section-title\">Created by the leader in enterprise cloud-native application security <\/h2>            <p class=\"section-description\">Vorpal provides instant code feedback, giving organizations full transparency and helping developers quickly detect, understand, and resolve code security issues, leading to more secure software. <\/p>        <\/div>\n\n        <div class=\"right\">\n            <div class=\"counter-list\">\n                                                        <div class=\"counter-item\">\n                        <p class=\"counter\">\n                                                        <span class=\"counter-num\" data-digits-counter data-digits-counter-duration=\"694\" data-digits-counter-value=\"5.7\">\n                            <\/span><span>M<\/span>                        <\/p>\n                        <p class=\"counter-info\">Times ZAP was started<\/p>\n                        <p class=\"counter-info-dop\">September 2024<\/p>\n                    <\/div>\n                                                        <div class=\"counter-item\">\n                        <p class=\"counter\">\n                                                        <span class=\"counter-num\" data-digits-counter data-digits-counter-duration=\"1200\" data-digits-counter-value=\"16.9\">\n                            <\/span><span>M<\/span>                        <\/p>\n                        <p class=\"counter-info\">Active Scans against Selected Target<\/p>\n                        <p class=\"counter-info-dop\">September 2024<\/p>\n                    <\/div>\n                                                        <div class=\"counter-item\">\n                        <p class=\"counter\">\n                                                        <span class=\"counter-num\" data-digits-counter data-digits-counter-duration=\"500\" data-digits-counter-value=\"1.4\">\n                            <\/span><span>B<\/span>                        <\/p>\n                        <p class=\"counter-info\">Alerts Found<\/p>\n                        <p class=\"counter-info-dop\">September 2024<\/p>\n                    <\/div>\n                                                        <div class=\"counter-item\">\n                        <p class=\"counter\">\n                                                        <span class=\"counter-num\" data-digits-counter data-digits-counter-duration=\"630\" data-digits-counter-value=\"4.3\">\n                            <\/span><span>B<\/span>                        <\/p>\n                        <p class=\"counter-info\">Active Scan Messages Sent<\/p>\n                        <p class=\"counter-info-dop\">September 2024<\/p>\n                    <\/div>\n                            <\/div>\n        <\/div>\n    <\/div>\n<\/section>\n\n<section class=\"section-block-info light-theme\">\n    <div class=\"main-wrapper block-info__wrapper\">\n        <div class=\"block-info center\">\n\t\t\t        <img decoding=\"async\" class=\"block-info__img-bg\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Mid-Page-CTA-Background-scaled.webp\" width=\"1440\" height=\"530\" alt=\"Mid Page CTA Background\" loading=\"lazy\">\n        \n\t\t\t<h2 class=\"section-title\">With Zap by Checkmarx, <br>You\u2019re Using the Best <\/h2>\t\t\t<p class=\"section-description\">Check out the world\u2019s most popular open-source web application scanner. Start using it now.<\/p>\n\t\t\t<div class=\"actions\">\n\t\t\t\t        <a href=\"https:\/\/www.zaproxy.org\/download\/\" class=\"btn btn-2 btn-bg white demo\" target=\"_blank\">Download Now<\/a>\n        \t\t\t\t\t\t\t<\/div>\n        <\/div>\n    <\/div>\n<\/section>\n\n<section class=\"section-chess-order light-theme bottom_padding_is_60px\" id=\"features\">\n\n\t    <div class=\"main-wrapper\">\n\t\t            <div class=\"section-chess-order__item\">\n                <div class=\"section-chess-order__item_text-wrap\">\n\t\t\t\t\t<p class=\"section-chess-order__item_title\">Automated Security Scanning in a Click<\/p>\t\t\t\t\t<div class=\"section-chess-order__item_description for-desktop\">\n<p><span class=\"TextRun SCXW251893399 BCX0\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW251893399 BCX0\">ZAP provides simple, single-click automated scanning, making it accessible for developers and testers to <\/span><span class=\"NormalTextRun SCXW251893399 BCX0\">identify<\/span><span class=\"NormalTextRun SCXW251893399 BCX0\"> security <\/span><span class=\"NormalTextRun ContextualSpellingAndGrammarErrorV2Themed SCXW251893399 BCX0\">flaws with ease<\/span><span class=\"NormalTextRun SCXW251893399 BCX0\">. Whether <\/span><span class=\"NormalTextRun SCXW251893399 BCX0\">you\u2019re<\/span><span class=\"NormalTextRun SCXW251893399 BCX0\"> a novice or a professional, ZAP enables effective web application vulnerability scans without a steep learning curve.<\/span><\/span><span class=\"EOP SCXW251893399 BCX0\" data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<\/div>                <\/div>\n                <div class=\"section-chess-order__item_visual-content\">\n\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/Automated-Security-Scanning-in-a-Click_2x.webp\" width=\"729\" height=\"568\" alt=\"Automated Security Scanning in a Click_2x\" loading=\"lazy\">\n                        <\/div>\n\t\t\t\t<div class=\"section-chess-order__item_description for-mobile\">\n<p><span class=\"TextRun SCXW251893399 BCX0\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW251893399 BCX0\">ZAP provides simple, single-click automated scanning, making it accessible for developers and testers to <\/span><span class=\"NormalTextRun SCXW251893399 BCX0\">identify<\/span><span class=\"NormalTextRun SCXW251893399 BCX0\"> security <\/span><span class=\"NormalTextRun ContextualSpellingAndGrammarErrorV2Themed SCXW251893399 BCX0\">flaws with ease<\/span><span class=\"NormalTextRun SCXW251893399 BCX0\">. Whether <\/span><span class=\"NormalTextRun SCXW251893399 BCX0\">you\u2019re<\/span><span class=\"NormalTextRun SCXW251893399 BCX0\"> a novice or a professional, ZAP enables effective web application vulnerability scans without a steep learning curve.<\/span><\/span><span class=\"EOP SCXW251893399 BCX0\" data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<\/div>            <\/div>\n\t\t            <div class=\"section-chess-order__item\">\n                <div class=\"section-chess-order__item_text-wrap\">\n\t\t\t\t\t<p class=\"section-chess-order__item_title\">Active and Passive Scanning for Comprehensive Coverage<\/p>\t\t\t\t\t<div class=\"section-chess-order__item_description for-desktop\">\n<p><span class=\"TextRun SCXW1453342 BCX0\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW1453342 BCX0\">ZAP delivers robust scanning functionality, using both passive and active scanning techniques to uncover a wide range of security vulnerabilities. Passive scans <\/span><span class=\"NormalTextRun SCXW1453342 BCX0\">operate<\/span><span class=\"NormalTextRun SCXW1453342 BCX0\"> silently in the background, while active scans simulate real-world attacks to <\/span><span class=\"NormalTextRun SCXW1453342 BCX0\">provide<\/span><span class=\"NormalTextRun SCXW1453342 BCX0\"> deeper security insights.<\/span><\/span><\/p>\n<\/div>                <\/div>\n                <div class=\"section-chess-order__item_visual-content\">\n\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/Active-and-Passive-Scanning-for-Comprehensive-Coverage.webp\" width=\"729\" height=\"568\" alt=\"Active and Passive Scanning for Comprehensive Coverage\" loading=\"lazy\">\n                        <\/div>\n\t\t\t\t<div class=\"section-chess-order__item_description for-mobile\">\n<p><span class=\"TextRun SCXW1453342 BCX0\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW1453342 BCX0\">ZAP delivers robust scanning functionality, using both passive and active scanning techniques to uncover a wide range of security vulnerabilities. Passive scans <\/span><span class=\"NormalTextRun SCXW1453342 BCX0\">operate<\/span><span class=\"NormalTextRun SCXW1453342 BCX0\"> silently in the background, while active scans simulate real-world attacks to <\/span><span class=\"NormalTextRun SCXW1453342 BCX0\">provide<\/span><span class=\"NormalTextRun SCXW1453342 BCX0\"> deeper security insights.<\/span><\/span><\/p>\n<\/div>            <\/div>\n\t\t            <div class=\"section-chess-order__item\">\n                <div class=\"section-chess-order__item_text-wrap\">\n\t\t\t\t\t<p class=\"section-chess-order__item_title\">Advanced User Controls for Manual Penetration Testing<\/p>\t\t\t\t\t<div class=\"section-chess-order__item_description for-desktop\">\n<p><span class=\"TextRun SCXW85224933 BCX0\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW85224933 BCX0\">For power users, ZAP offers advanced tools like manual interception, fuzzing, and forced browsing, allowing greater control during security testing. These features make ZAP highly customizable for professionals looking to conduct thorough penetration testing.<\/span><\/span><\/p>\n<\/div>                <\/div>\n                <div class=\"section-chess-order__item_visual-content\">\n\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/Advanced-User-Controls-for-Manual-Penetration-Testi.webp\" width=\"729\" height=\"568\" alt=\"Advanced User Controls for Manual Penetration Testi\" loading=\"lazy\">\n                        <\/div>\n\t\t\t\t<div class=\"section-chess-order__item_description for-mobile\">\n<p><span class=\"TextRun SCXW85224933 BCX0\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW85224933 BCX0\">For power users, ZAP offers advanced tools like manual interception, fuzzing, and forced browsing, allowing greater control during security testing. These features make ZAP highly customizable for professionals looking to conduct thorough penetration testing.<\/span><\/span><\/p>\n<\/div>            <\/div>\n\t\t            <div class=\"section-chess-order__item\">\n                <div class=\"section-chess-order__item_text-wrap\">\n\t\t\t\t\t<p class=\"section-chess-order__item_title\">Integration with CI\/CD Pipelines for Seamless Testing <\/p>\t\t\t\t\t<div class=\"section-chess-order__item_description for-desktop\">\n<p><span class=\"TextRun SCXW41803958 BCX0\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW41803958 BCX0\">ZAP integrates effortlessly with your Continuous Integration\/Continuous Deployment (CI\/CD) pipelines, ensuring that web security testing becomes a routine part of your development cycle. Automate security testing in your workflows to catch vulnerabilities early.<\/span><\/span><\/p>\n<\/div>                <\/div>\n                <div class=\"section-chess-order__item_visual-content\">\n\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/CD-Pipelines-for-Seamless-Testing_2x.webp\" width=\"729\" height=\"568\" alt=\"CD Pipelines for Seamless Testing_2x\" loading=\"lazy\">\n                        <\/div>\n\t\t\t\t<div class=\"section-chess-order__item_description for-mobile\">\n<p><span class=\"TextRun SCXW41803958 BCX0\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW41803958 BCX0\">ZAP integrates effortlessly with your Continuous Integration\/Continuous Deployment (CI\/CD) pipelines, ensuring that web security testing becomes a routine part of your development cycle. Automate security testing in your workflows to catch vulnerabilities early.<\/span><\/span><\/p>\n<\/div>            <\/div>\n\t\t    <\/div>\n<\/section>\n\n\n<section class=\"section-creative-slider bottom_padding_is_200px\">\n    <div class=\"circle-bg-gradient\">\n        <span class=\"circle-bg-gradient__children\"><\/span>\n    <\/div>\n    <div class=\"main-wrapper section-creative-slider__wrapper\">\n        <div class=\"section-creative-slider__left\">\n\t\t\t<h2 class=\"section-title\">What Our Customers Say About Us<\/h2>\t\t\t<p class=\"section-description\">Learn why a growing list of enterprises rely on our approach to application security\r\n<\/p>            <div class=\"creative-slider__nav\">\n                <button class=\"creative-slider__nav_prev swiper-button-prev\" aria-label=\"Prev slide\">\n                    <svg width=\"34px\" height=\"23px\" viewbox=\"0 0 34 23\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:xlink=\"http:\/\/www.w3.org\/1999\/xlink\">\n                        <g id=\"Page-1\" stroke=\"none\" stroke-width=\"1\" fill-rule=\"evenodd\">\n                            <g id=\"Shape\" transform=\"translate(0.939453, 1.530000)\" stroke-width=\"3\">\n                                <path d=\"M19.810947,20.4179 L31.029947,9.14 M30.029947,10.1989 L0,10.1989 M31.029947,11.26 L19.810947,0\"><\/path>\n                            <\/g>\n                        <\/g>\n                    <\/svg>\n                <\/button>\n                <button class=\"creative-slider__nav_next swiper-button-next\" aria-label=\"Next slide\">\n                    <svg width=\"34px\" height=\"23px\" viewbox=\"0 0 34 23\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:xlink=\"http:\/\/www.w3.org\/1999\/xlink\">\n                        <g id=\"Page-1\" stroke=\"none\" stroke-width=\"1\" fill-rule=\"evenodd\">\n                            <g id=\"Shape\" transform=\"translate(0.939453, 1.530000)\" stroke-width=\"3\">\n                                <path d=\"M19.810947,20.4179 L31.029947,9.14 M30.029947,10.1989 L0,10.1989 M31.029947,11.26 L19.810947,0\"><\/path>\n                            <\/g>\n                        <\/g>\n                    <\/svg>\n                <\/button>\n            <\/div>\n            <div class=\"creative-slider__scrollbar\"><\/div>\n        <\/div>\n        <div class=\"section-creative-slider__right\">\n            <div class=\"creative-slider__wrapper\">\n                <div class=\"swiper creative-slider js-creative-slider\">\n                    <div class=\"swiper-wrapper\">\n\n\t\t\t\t\t\t        <div class=\"swiper-slide\">\n            <div class=\"card-creative-feedback small-text\">\n\t\t\t\t<p class=\"card-creative-feedback__text\">&#8220;We view Checkmarx as our trusted partner. They\u2019ve elevated our security posture by consolidating our SAST, SCA, and API Security into a unified platform, Checkmarx One, enabling us to achieve vulnerability remediation, reduce noise, and benefit from strong support.&#8221;<\/p>                <div class=\"card-creative-feedback__footer\">\n                    <div class=\"author\">\n\t\t\t\t\t\t        <img decoding=\"async\" class=\"author__avatar\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/Matthew-Hurewitz-Checkmarx-150x150.webp\" width=\"46\" height=\"46\" alt=\"Matthew Hurewitz Checkmarx\" loading=\"lazy\">\n                                <div>\n\t\t\t\t\t\t\t<p class=\"author__name\">Matthew Hurewitz<\/p>\t\t\t\t\t\t\t<p class=\"author__profesion\">Director, Platforms and Application Security<\/p>                        <\/div>\n                    <\/div>\n\n\t\t\t\t\t                        <div class=\"card-creative-feedback__logo\">\n\t\t\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/best-buy-cx-logo.svg\" width=\"154\" height=\"47\" alt=\"best buy cx logo\" loading=\"lazy\">\n                                <\/div>\n\t\t\t\t\t                <\/div>\n            <\/div>\n        <\/div>\n\t\t        <div class=\"swiper-slide\">\n            <div class=\"card-creative-feedback small-text\">\n\t\t\t\t<p class=\"card-creative-feedback__text\">&#8220;Incorporating Checkmarx&#8217;s technology has revolutionized our development culture. It&#8217;s more than just technology; it serves as the foundation of our security strategy, ensuring that our applications are secure by design.&#8221;<\/p>                <div class=\"card-creative-feedback__footer\">\n                    <div class=\"author\">\n\t\t\t\t\t\t        <img decoding=\"async\" class=\"author__avatar\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Sudharma-Thikkavarapu-150x150.webp\" width=\"46\" height=\"46\" alt=\"Sudharma Thikkavarapu\" loading=\"lazy\">\n                                <div>\n\t\t\t\t\t\t\t<p class=\"author__name\">Sudharma Thikkavarapu<\/p>\t\t\t\t\t\t\t<p class=\"author__profesion\">Sr. Director, Product Security Engineering<\/p>                        <\/div>\n                    <\/div>\n\n\t\t\t\t\t                        <div class=\"card-creative-feedback__logo\">\n\t\t\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Dell.svg\" width=\"154\" height=\"47\" alt=\"Dell\" loading=\"lazy\">\n                                <\/div>\n\t\t\t\t\t                <\/div>\n            <\/div>\n        <\/div>\n\t\t        <div class=\"swiper-slide\">\n            <div class=\"card-creative-feedback small-text\">\n\t\t\t\t<p class=\"card-creative-feedback__text\">&#8220;Checkmarx One definitely checks all my boxes from a security standpoint and has a great interface that&#8217;s engaging and easy to use. Some of the solutions we considered were more complicated. With Checkmarx One, it&#8217;s easy to get right to the problem with little to no learning curve.&#8221;<\/p>                <div class=\"card-creative-feedback__footer\">\n                    <div class=\"author\">\n\t\t\t\t\t\t        <img decoding=\"async\" class=\"author__avatar\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Joel-Godbout-150x150.webp\" width=\"46\" height=\"46\" alt=\"Joel Godbout\" loading=\"lazy\">\n                                <div>\n\t\t\t\t\t\t\t<p class=\"author__name\">Joel Godbout<\/p>\t\t\t\t\t\t\t<p class=\"author__profesion\">Cybersecurity and Networking Manager<\/p>                        <\/div>\n                    <\/div>\n\n\t\t\t\t\t                        <div class=\"card-creative-feedback__logo\">\n\t\t\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/PCL.svg\" width=\"154\" height=\"47\" alt=\"PCL\" loading=\"lazy\">\n                                <\/div>\n\t\t\t\t\t                <\/div>\n            <\/div>\n        <\/div>\n\t\t        <div class=\"swiper-slide\">\n            <div class=\"card-creative-feedback small-text\">\n\t\t\t\t<p class=\"card-creative-feedback__text\">&#8220;The success of our AppSec program can be directly attributed to the tooling, processes and support provided by Checkmarx managed services. Our mission revolves around providing secure and compliant lottery and gaming applications and services to our clients around the globe, and with Checkmarx SAST, SCA and associated components enhanced by their stellar service support, we deliver on this promise with confidence and certainty.&#8221;<\/p>                <div class=\"card-creative-feedback__footer\">\n                    <div class=\"author\">\n\t\t\t\t\t\t        <img decoding=\"async\" class=\"author__avatar\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Dion-Alexopoulos-150x150.webp\" width=\"46\" height=\"46\" alt=\"Dion Alexopoulos\" loading=\"lazy\">\n                                <div>\n\t\t\t\t\t\t\t<p class=\"author__name\">Dion Alexopoulos<\/p>\t\t\t\t\t\t\t<p class=\"author__profesion\">Head of Information Security<\/p>                        <\/div>\n                    <\/div>\n\n\t\t\t\t\t                        <div class=\"card-creative-feedback__logo\">\n\t\t\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Allwyn.svg\" width=\"154\" height=\"47\" alt=\"Allwyn\" loading=\"lazy\">\n                                <\/div>\n\t\t\t\t\t                <\/div>\n            <\/div>\n        <\/div>\n\t\t        <div class=\"swiper-slide\">\n            <div class=\"card-creative-feedback small-text\">\n\t\t\t\t<p class=\"card-creative-feedback__text\">&#8220;After nearly nine years of using Checkmarx&#8217;s SAST, CGI&#8217;s journey has been one of seamless integration and consistent satisfaction. The last three years have been particularly smooth, reflecting the solution&#8217;s reliability and our successful partnership.&#8221;<\/p>                <div class=\"card-creative-feedback__footer\">\n                    <div class=\"author\">\n\t\t\t\t\t\t        <img decoding=\"async\" class=\"author__avatar\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Abhishek-Das-150x150.webp\" width=\"46\" height=\"46\" alt=\"Abhishek Das\" loading=\"lazy\">\n                                <div>\n\t\t\t\t\t\t\t<p class=\"author__name\">Abhishek Das<\/p>\t\t\t\t\t\t\t<p class=\"author__profesion\">Lead Security Analyst<\/p>                        <\/div>\n                    <\/div>\n\n\t\t\t\t\t                        <div class=\"card-creative-feedback__logo\">\n\t\t\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/CGI.svg\" width=\"154\" height=\"47\" alt=\"CGI\" loading=\"lazy\">\n                                <\/div>\n\t\t\t\t\t                <\/div>\n            <\/div>\n        <\/div>\n\t\t        <div class=\"swiper-slide\">\n            <div class=\"card-creative-feedback \">\n\t\t\t\t<p class=\"card-creative-feedback__text\">&#8220;After reviewing the Checkmarx platform, I&#8217;m not sure how Veracode is able to exist while being at a similar price point.&#8221;<\/p>                <div class=\"card-creative-feedback__footer\">\n                    <div class=\"author\">\n\t\t\t\t\t\t                        <div>\n\t\t\t\t\t\t\t<p class=\"author__name\">Financial Services:<\/p>\t\t\t\t\t\t\t<p class=\"author__profesion\">DevSecOps Engineering<\/p>                        <\/div>\n                    <\/div>\n\n\t\t\t\t\t                <\/div>\n            <\/div>\n        <\/div>\n\t\t        <div class=\"swiper-slide\">\n            <div class=\"card-creative-feedback big-text\">\n\t\t\t\t<p class=\"card-creative-feedback__text\">&#8220;By Far The Best AppSec Tooling Decision We Have Made!!&#8221;<\/p>                <div class=\"card-creative-feedback__footer\">\n                    <div class=\"author\">\n\t\t\t\t\t\t                        <div>\n\t\t\t\t\t\t\t\t\t\t\t\t\t\t                        <\/div>\n                    <\/div>\n\n\t\t\t\t\t                        <div class=\"card-creative-feedback__logo\">\n\t\t\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Gartner.svg\" width=\"154\" height=\"47\" alt=\"Gartner\" loading=\"lazy\">\n                                <\/div>\n\t\t\t\t\t                <\/div>\n            <\/div>\n        <\/div>\n\t\t        <div class=\"swiper-slide\">\n            <div class=\"card-creative-feedback small-text\">\n\t\t\t\t<p class=\"card-creative-feedback__text\">&#8220;We were thrilled to find Checkmarx, which helped us improve the SLA for identifying and remediating risk, reduce risk and the number of vulnerabilities, and eliminate high- and medium-risk issues.&#8221;<\/p>                <div class=\"card-creative-feedback__footer\">\n                    <div class=\"author\">\n\t\t\t\t\t\t        <img decoding=\"async\" class=\"author__avatar\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Ubirajara-Aguiar-Jr-150x150.webp\" width=\"46\" height=\"46\" alt=\"Ubirajara Aguiar Jr.\" loading=\"lazy\">\n                                <div>\n\t\t\t\t\t\t\t<p class=\"author__name\">Ubirajara Aguiar Jr.<\/p>\t\t\t\t\t\t\t<p class=\"author__profesion\">Tech Lead, Red Team\/DevSecOps<\/p>                        <\/div>\n                    <\/div>\n\n\t\t\t\t\t                        <div class=\"card-creative-feedback__logo\">\n\t\t\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Pismo.svg\" width=\"154\" height=\"47\" alt=\"Pismo\" loading=\"lazy\">\n                                <\/div>\n\t\t\t\t\t                <\/div>\n            <\/div>\n        <\/div>\n\t\t        <div class=\"swiper-slide\">\n            <div class=\"card-creative-feedback big-text\">\n\t\t\t\t<p class=\"card-creative-feedback__text\">&#8220;Checkmarx made security team and developers life easier.&#8221;<\/p>                <div class=\"card-creative-feedback__footer\">\n                    <div class=\"author\">\n\t\t\t\t\t\t                        <div>\n\t\t\t\t\t\t\t<p class=\"author__name\">Security Analyst<\/p>\t\t\t\t\t\t\t<p class=\"author__profesion\">IT Services<\/p>                        <\/div>\n                    <\/div>\n\n\t\t\t\t\t                        <div class=\"card-creative-feedback__logo\">\n\t\t\t\t\t\t\t        <img decoding=\"async\" src=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/04\/Gartner.svg\" width=\"154\" height=\"47\" alt=\"Gartner\" loading=\"lazy\">\n                                <\/div>\n\t\t\t\t\t                <\/div>\n            <\/div>\n        <\/div>\n\t\t                    <\/div>\n                <\/div>\n                <div class=\"creative-slider__pagination\"><\/div>\n            <\/div>\n        <\/div>\n    <\/div>\n<\/section>","protected":false},"excerpt":{"rendered":"","protected":false},"author":11,"featured_media":102423,"parent":658,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"_acf_changed":false,"footnotes":""},"class_list":["post-102319","page","type-page","status-publish","has-post-thumbnail","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.1.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Open-Source Web Application Security Scanner | Free DAST Tool<\/title>\n<meta name=\"description\" content=\"Download ZAP, the world&#039;s most popular free and open-source web application security scanner. Professional DAST tool for web app and API testing.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/checkmarx.com\/product\/zap\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Open-Source Web Application Security Scanner | Free DAST Tool\" \/>\n<meta property=\"og:description\" content=\"Download ZAP, the world&#039;s most popular free and open-source web application security scanner. Professional DAST tool for web app and API testing.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/checkmarx.com\/product\/zap\/\" \/>\n<meta property=\"og:site_name\" content=\"Checkmarx\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Checkmarx.Source.Code.Analysis\" \/>\n<meta property=\"article:modified_time\" content=\"2025-06-20T17:17:04+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/ZAP-Checkmarx-open-source-and-free-tool_1x.webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"680\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/webp\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@checkmarx\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/checkmarx.com\/product\/zap\/\",\"url\":\"https:\/\/checkmarx.com\/product\/zap\/\",\"name\":\"Open-Source Web Application Security Scanner | Free DAST Tool\",\"isPartOf\":{\"@id\":\"https:\/\/checkmarx.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/checkmarx.com\/product\/zap\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/checkmarx.com\/product\/zap\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/ZAP-Checkmarx-open-source-and-free-tool_1x.webp\",\"datePublished\":\"2025-06-17T15:48:08+00:00\",\"dateModified\":\"2025-06-20T17:17:04+00:00\",\"description\":\"Download ZAP, the world's most popular free and open-source web application security scanner. Professional DAST tool for web app and API testing.\",\"breadcrumb\":{\"@id\":\"https:\/\/checkmarx.com\/product\/zap\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/checkmarx.com\/product\/zap\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/checkmarx.com\/product\/zap\/#primaryimage\",\"url\":\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/ZAP-Checkmarx-open-source-and-free-tool_1x.webp\",\"contentUrl\":\"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/ZAP-Checkmarx-open-source-and-free-tool_1x.webp\",\"width\":1200,\"height\":680},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/checkmarx.com\/product\/zap\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Platform\",\"item\":\"https:\/\/checkmarx.com\/product\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"ZAP\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/checkmarx.com\/#website\",\"url\":\"https:\/\/checkmarx.com\/\",\"name\":\"Checkmarx\",\"description\":\"The world runs on code. We secure it.\",\"publisher\":{\"@id\":\"https:\/\/checkmarx.com\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/checkmarx.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/checkmarx.com\/#organization\",\"name\":\"Checkmarx\",\"url\":\"https:\/\/checkmarx.com\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/checkmarx.com\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/02\/logo-dark.svg\",\"contentUrl\":\"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/02\/logo-dark.svg\",\"width\":1,\"height\":1,\"caption\":\"Checkmarx\"},\"image\":{\"@id\":\"https:\/\/checkmarx.com\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/Checkmarx.Source.Code.Analysis\",\"https:\/\/x.com\/checkmarx\",\"https:\/\/www.youtube.com\/user\/CheckmarxResearchLab\",\"https:\/\/www.linkedin.com\/company\/checkmarx\"]}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Open-Source Web Application Security Scanner | Free DAST Tool","description":"Download ZAP, the world's most popular free and open-source web application security scanner. Professional DAST tool for web app and API testing.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/checkmarx.com\/product\/zap\/","og_locale":"en_US","og_type":"article","og_title":"Open-Source Web Application Security Scanner | Free DAST Tool","og_description":"Download ZAP, the world's most popular free and open-source web application security scanner. Professional DAST tool for web app and API testing.","og_url":"https:\/\/checkmarx.com\/product\/zap\/","og_site_name":"Checkmarx","article_publisher":"https:\/\/www.facebook.com\/Checkmarx.Source.Code.Analysis","article_modified_time":"2025-06-20T17:17:04+00:00","og_image":[{"width":1200,"height":680,"url":"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/ZAP-Checkmarx-open-source-and-free-tool_1x.webp","type":"image\/webp"}],"twitter_card":"summary_large_image","twitter_site":"@checkmarx","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/checkmarx.com\/product\/zap\/","url":"https:\/\/checkmarx.com\/product\/zap\/","name":"Open-Source Web Application Security Scanner | Free DAST Tool","isPartOf":{"@id":"https:\/\/checkmarx.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/checkmarx.com\/product\/zap\/#primaryimage"},"image":{"@id":"https:\/\/checkmarx.com\/product\/zap\/#primaryimage"},"thumbnailUrl":"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/ZAP-Checkmarx-open-source-and-free-tool_1x.webp","datePublished":"2025-06-17T15:48:08+00:00","dateModified":"2025-06-20T17:17:04+00:00","description":"Download ZAP, the world's most popular free and open-source web application security scanner. Professional DAST tool for web app and API testing.","breadcrumb":{"@id":"https:\/\/checkmarx.com\/product\/zap\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/checkmarx.com\/product\/zap\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/checkmarx.com\/product\/zap\/#primaryimage","url":"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/ZAP-Checkmarx-open-source-and-free-tool_1x.webp","contentUrl":"https:\/\/checkmarx.com\/wp-content\/uploads\/2025\/06\/ZAP-Checkmarx-open-source-and-free-tool_1x.webp","width":1200,"height":680},{"@type":"BreadcrumbList","@id":"https:\/\/checkmarx.com\/product\/zap\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Platform","item":"https:\/\/checkmarx.com\/product\/"},{"@type":"ListItem","position":2,"name":"ZAP"}]},{"@type":"WebSite","@id":"https:\/\/checkmarx.com\/#website","url":"https:\/\/checkmarx.com\/","name":"Checkmarx","description":"The world runs on code. We secure it.","publisher":{"@id":"https:\/\/checkmarx.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/checkmarx.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/checkmarx.com\/#organization","name":"Checkmarx","url":"https:\/\/checkmarx.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/checkmarx.com\/#\/schema\/logo\/image\/","url":"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/02\/logo-dark.svg","contentUrl":"https:\/\/checkmarx.com\/wp-content\/uploads\/2024\/02\/logo-dark.svg","width":1,"height":1,"caption":"Checkmarx"},"image":{"@id":"https:\/\/checkmarx.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Checkmarx.Source.Code.Analysis","https:\/\/x.com\/checkmarx","https:\/\/www.youtube.com\/user\/CheckmarxResearchLab","https:\/\/www.linkedin.com\/company\/checkmarx"]}]}},"_links":{"self":[{"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/pages\/102319","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/users\/11"}],"replies":[{"embeddable":true,"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/comments?post=102319"}],"version-history":[{"count":0,"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/pages\/102319\/revisions"}],"up":[{"embeddable":true,"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/pages\/658"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/media\/102423"}],"wp:attachment":[{"href":"https:\/\/checkmarx.com\/wp-json\/wp\/v2\/media?parent=102319"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}