reaper logo

reaper

ghostsecurity/reaper

Live validation proxy tool for testing web app vulnerabilities

GraphCanon updated Aug 12, 2026 · GitHub synced Aug 12, 2026

17views this month

879 stars92 forksLast push Mar 24, 2026 Go Apache-2.0

Decision brief

Reaper is a Go-written live validation proxy aimed at identifying vulnerabilities in web applications through real-time testing

Good fit when

  • When you are dealing with web application security reviews and need immediate feedback on potential vulnerabilities, Reaper's real-time testing makes it an ideal choice.
  • If your project primarily uses Go, leveraging Reaper can provide a more cohesive development environment alongside other Go tools.

Avoid when

  • Avoid using Reaper for non-Go projects where the ecosystem benefits are not applicable and might introduce unnecessary complexities.
  • Do not use Reaper if your security testing needs go beyond real-time validation proxies, as it focuses specifically on live interaction without broader audit features available in other tools.

Observed Jul 17, 2026 · Source: enrich:decision_facts

Verify the decision

Maintenance and security

Full trust report
Maintenance
Slowing (140d since push)
As of Aug 12, 2026
Provenance
Not a fork · Organization account
As of Aug 12, 2026
Security (OSV)
No lockfile
As of Jul 15, 2026

Public GitHub metadata and optional OSV scans. Signals, not a guarantee. Trust methodology.

Install

go get github.com/ghostsecurity/reaper
pkg.go.dev

Similar tools

Same-category neighbours. No typed graph edges are catalogued for this tool yet.

Evidence and technical details

Sourced facts, taxonomy, compatibility claims, README excerpt, and machine-readable endpoints.

Overview

A Go-written live validation proxy designed to test and identify security vulnerabilities in web applications.

Capability facts

Languages
go

Source: github.language · Aug 12, 2026

Categories

Tags

README

Quick Start Supports Linux and macOS. Alternatively, download a release directly from GitHub Releases. License This repository is licensed under the Apache License 2.0. See LICENSE for details.

For agents

This page has a .md twin and JSON over the API.

Was this helpful?

Anonymous feedback helps us improve pages and translations.