{"data":{"slug":"ghostsecurity-reaper","name":"reaper","tagline":"Live validation proxy tool for testing web app vulnerabilities","github_url":"https://github.com/ghostsecurity/reaper","owner":"ghostsecurity","repo":"reaper","owner_avatar_url":"https://avatars.githubusercontent.com/u/101225222?v=4","primary_language":"Go","stars":886,"forks":91,"topics":["agentic","ai","appsec","automation","proxy","security"],"archived":false,"github_pushed_at":"2026-03-24T19:56:55+00:00","maintenance_label":"Slowing","stars_delta_30d":7,"url":"https://www.graphcanon.com/tools/ghostsecurity-reaper","markdown_url":"https://www.graphcanon.com/tools/ghostsecurity-reaper.md","api_url":"https://www.graphcanon.com/api/graphcanon/tools/ghostsecurity-reaper","graph_url":"https://www.graphcanon.com/api/graphcanon/graph?tool=ghostsecurity-reaper","description":"Live validation proxy tool for testing web app vulnerabilities","homepage_url":"https://ghostsecurity.ai/tools/reaper","license":"Apache-2.0","open_issues":0,"watchers":23,"ai_summary":"A Go-written live validation proxy designed to test and identify security vulnerabilities in web applications.","readme_excerpt":"## Quick Start\n\nSupports Linux and macOS.\n\n```bash\ncurl -sfL https://raw.githubusercontent.com/ghostsecurity/reaper/main/scripts/install.sh | bash\n```\n\nAlternatively, download a release directly from [GitHub Releases](https://github.com/ghostsecurity/reaper/releases).\n\n---\n\n## License\n\nThis repository is licensed under the Apache License 2.0. See [LICENSE](LICENSE) for details.","github_created_at":"2022-11-28T14:48:29+00:00","created_at":"2026-07-15T10:56:22.065174+00:00","updated_at":"2026-09-20T04:54:39.063583+00:00","categories":[{"slug":"developer-tools","name":"Developer Tools","url":"https://www.graphcanon.com/categories/developer-tools","markdown_url":"https://www.graphcanon.com/categories/developer-tools.md","api_url":"https://www.graphcanon.com/api/graphcanon/categories/developer-tools"}],"tags":[{"slug":"agentic","name":"agentic"},{"slug":"ai","name":"ai"},{"slug":"appsec","name":"appsec"},{"slug":"automation","name":"automation"},{"slug":"proxy","name":"proxy"},{"slug":"security","name":"security"}],"trust":{"provenance":{"is_fork":false,"github_id":571631107,"owner_type":"Organization","methodology":"github_public_v1","parent_repo":null,"near_duplicate_slugs":[]},"computed_at":"2026-09-20T04:54:36.724Z","maintenance":{"label":"Slowing","score":36,"methodology":"github_public_v1","releases_90d":0,"days_since_push":179,"last_release_at":"2026-02-13T15:33:57Z","stars_delta_30d":7,"open_issues_delta_30d":0},"security_summary":{"status":"no_lockfile","scanner":null,"low_count":0,"high_count":0,"last_scan_at":"2026-07-15T10:56:23.289Z","medium_count":0,"scan_profile":"none","critical_count":0}},"capability_facts":{"scan":{"source":"repo_scan","observed_at":"2026-09-20T04:54:37.997Z"},"languages":{"value":["go"],"source":"github.language","observed_at":"2026-09-20T04:54:37.997Z"},"license_spdx":{"value":"Apache-2.0","source":"github.license","observed_at":"2026-09-20T04:54:37.997Z"}},"decision_facts":{"hosting":null,"pricing":null,"requirements":null,"constraints":null,"when_to_use":["When you are dealing with web application security reviews and need immediate feedback on potential vulnerabilities, Reaper's real-time testing makes it an ideal choice.","If your project primarily uses Go, leveraging Reaper can provide a more cohesive development environment alongside other Go tools."],"when_not_to_use":["Avoid using Reaper for non-Go projects where the ecosystem benefits are not applicable and might introduce unnecessary complexities.","Do not use Reaper if your security testing needs go beyond real-time validation proxies, as it focuses specifically on live interaction without broader audit features available in other tools."],"source":"enrich:decision_facts","observed_at":"2026-07-17T13:42:39.143Z"},"constraint_facets":null,"decision_summary":[{"label":"Adopt for","value":"Reaper is a Go-written live validation proxy aimed at identifying vulnerabilities in web applications through real-time testing"}]}}