Introducing "OpenAPI Tester" by @xvffdos
Import your OpenAPI specs or Postman collections to test all endpoints with one click.
Check out more details: github.com/MDGDSS/caido...
Introducing "OpenAPI Tester" by @xvffdos
Import your OpenAPI specs or Postman collections to test all endpoints with one click.
Check out more details: github.com/MDGDSS/caido...
Part of Caido v0.52.0 → caido.io/blog/2025-09...
Part of Caido v0.52.0 → caido.io/blog/2025-09...
Introducing "Tab Renammer" by William Le Berre
Rename Replay tabs automatically with a custom JavaScript function.
Check out more details:
github.com/Serizao/tab-...
Introducing "Tab Renammer" by William Le Berre
Rename Replay tabs automatically with a custom JavaScript function.
Check out more details:
github.com/Serizao/tab-...
This release adds 9 new checks:
- 7 for detecting CSP issues
- 1 for pages missing a content-type header
- 1 for spotting suspicious input transformations
Full changelog: github.com/caido-commun...
This release adds 9 new checks:
- 7 for detecting CSP issues
- 1 for pages missing a content-type header
- 1 for spotting suspicious input transformations
Full changelog: github.com/caido-commun...
Part of Caido v0.52.0 → caido.io/blog/2025-09...
Part of Caido v0.52.0 → caido.io/blog/2025-09...
Introducing "CSP Auditor" by @radads.bsky.social
Detect insecure CSP headers in real-time and analyze their severity with detailed explanations.
Check out more details:
github.com/GangGreenTem...
Introducing "CSP Auditor" by @radads.bsky.social
Detect insecure CSP headers in real-time and analyze their severity with detailed explanations.
Check out more details:
github.com/GangGreenTem...
Click "History" and use the search bar inside to quickly find important requests.
Part of Caido v0.52.0 → caido.io/blog/2025-09...
Click "History" and use the search bar inside to quickly find important requests.
Part of Caido v0.52.0 → caido.io/blog/2025-09...
Introducing "GraphQL Analyzer" by amrelsagaei
Scan GraphQL endpoints to map schemas, visualize API relationships, and perform common attacks.
Check out more details: github.com/amrelsagaei/...
Introducing "GraphQL Analyzer" by amrelsagaei
Scan GraphQL endpoints to map schemas, visualize API relationships, and perform common attacks.
Check out more details: github.com/amrelsagaei/...
This release adds:
- 11 new checks
- Bug fixes
Full changelog: github.com/caido-commun...
This release adds:
- 11 new checks
- Bug fixes
Full changelog: github.com/caido-commun...
🔗 Connect with your social accounts to log in more easily:
dashboard.caido.io/settings
Tell us which login options you want next 👇
🔗 Connect with your social accounts to log in more easily:
dashboard.caido.io/settings
Tell us which login options you want next 👇
You now have hands-on labs to learn hacking using Caido's unique features.
🔗 Practice real attack scenarios with guided walkthroughs:
labs.cai.do
What attacks or lab scenarios do you want to see next?
Drop your suggestions below👇
You now have hands-on labs to learn hacking using Caido's unique features.
🔗 Practice real attack scenarios with guided walkthroughs:
labs.cai.do
What attacks or lab scenarios do you want to see next?
Drop your suggestions below👇
Introducing "Ebka AI" by Slonser
Ask Claude AI to analyze requests, manage Replay sessions, or review findings. You can also filter, organize scopes, and create M&R rules using natural language.
Check out more details: github.com/Slonser/Ebka...
Introducing "Ebka AI" by Slonser
Ask Claude AI to analyze requests, manage Replay sessions, or review findings. You can also filter, organize scopes, and create M&R rules using natural language.
Check out more details: github.com/Slonser/Ebka...
Right-click on a row to export a single finding, or use the "Export button" to include all findings from a reporter.
Part of Caido v0.51.0 → caido.io/blog/2025-08...
Right-click on a row to export a single finding, or use the "Export button" to include all findings from a reporter.
Part of Caido v0.51.0 → caido.io/blog/2025-08...
Introducing "Bytecap" by @radads.bsky.social
Set a threshold to monitor and manage your workspace file sizes in real time.
Check out more details:
github.com/GangGreenTem...
Introducing "Bytecap" by @radads.bsky.social
Set a threshold to monitor and manage your workspace file sizes in real time.
Check out more details:
github.com/GangGreenTem...
Click "Run" and select a test run to see what data was processed at each node.
Part of Caido v0.51.0 → caido.io/blog/2025-08...
Click "Run" and select a test run to see what data was processed at each node.
Part of Caido v0.51.0 → caido.io/blog/2025-08...
Introducing "ReDocs" by @amrelsagaei
Import your API specs and instantly generate Replay sessions from them.
Check out more details: github.com/amrelsagaei/...
Introducing "ReDocs" by @amrelsagaei
Import your API specs and instantly generate Replay sessions from them.
Check out more details: github.com/amrelsagaei/...
Introducing "Compare" by @amrelsagaei
Add a pair of requests or responses and display a side-by-side view with visual differences highlighted.
Check out more details: github.com/amrelsagaei/...
Introducing "Compare" by @amrelsagaei
Add a pair of requests or responses and display a side-by-side view with visual differences highlighted.
Check out more details: github.com/amrelsagaei/...
Click the button in the HTTPQL bar to add the current query as a preset.
Part of Caido v0.50.0 → caido.io/blog/2025-07...
Click the button in the HTTPQL bar to add the current query as a preset.
Part of Caido v0.50.0 → caido.io/blog/2025-07...
Visit Settings → Appearance to toggle between “Horizontal” and “Vertical.”
From the same page, you can also choose your preferred font family.
Part of Caido v0.50.0 → caido.io/blog/2025-07...
Visit Settings → Appearance to toggle between “Horizontal” and “Vertical.”
From the same page, you can also choose your preferred font family.
Part of Caido v0.50.0 → caido.io/blog/2025-07...
Introducing "Cerebrum" by @DewSecOff
Store selected HTTP requests and organize them with notes and status management.
Check out more details: github.com/DewSecOff/Ca...
Introducing "Cerebrum" by @DewSecOff
Store selected HTTP requests and organize them with notes and status management.
Check out more details: github.com/DewSecOff/Ca...
Run checks in the background or scan specific requests on demand to find issues like reflected XSS, SQL injection, and CORS misconfigurations.
All checks are open source. Add your own and help the list grow 💪
Run checks in the background or scan specific requests on demand to find issues like reflected XSS, SQL injection, and CORS misconfigurations.
All checks are open source. Add your own and help the list grow 💪
to the currently selected row.
Click it to return to exactly where you were in the table.
Part of Caido v0.50.0 → caido.io/blog/2025-07...
to the currently selected row.
Click it to return to exactly where you were in the table.
Part of Caido v0.50.0 → caido.io/blog/2025-07...
Build personalized micro-agents for tasks like XSS exploitation, WAF bypassing, or anything you can think of.
Available as a standalone plugin, with integration into Shift coming soon.
Build personalized micro-agents for tasks like XSS exploitation, WAF bypassing, or anything you can think of.
Available as a standalone plugin, with integration into Shift coming soon.
Introducing "OmniOAST" by @hahwul
Add all your OAST providers and manage them in one place. Generate payloads and monitor callbacks as they come in.
Check out more details: github.com/hahwul/OmniO...
Introducing "OmniOAST" by @hahwul
Add all your OAST providers and manage them in one place. Generate payloads and monitor callbacks as they come in.
Check out more details: github.com/hahwul/OmniO...