Tool
Web Service
Application Security

hoppscotch

by hoppscotch

72.1Kstars
4.9Kforks
499watchers
Updated 8 months ago
About

Hoppscotch is an open-source, lightweight API development ecosystem that enables fast and efficient API request creation and testing as an alternative to Postman and Insomnia.

Open source API development ecosystem - https://hoppscotch.io (open-source alternative to Postman, Insomnia)

Primary Use Case

Hoppscotch is designed for developers and security professionals who need to create, test, and automate API requests quickly and efficiently. It supports a wide range of HTTP methods and provides tools for API security, automation, and compliance auditing, making it ideal for application security testing and development workflows.

Key Features
  • Lightweight and minimalistic UI design
  • Supports all standard HTTP methods including GET, POST, PUT, PATCH, DELETE, HEAD, CONNECT, OPTIONS, TRACE, and custom methods
  • Real-time request sending and response retrieval
  • Customizable theming with multiple color schemes and distraction-free Zen mode
  • Progressive Web App (PWA) support with offline capabilities and low resource usage
  • Ability to generate and copy request code snippets for 10+ languages and frameworks
  • Import cURL commands and label requests for better organization
  • Cloud/local session sync for customized themes and settings

Usage

>_ Choose method -> Enter URL -> Send

Basic workflow to create and send an API request and receive the response instantly.

>_ Import cURL

Import existing cURL commands to quickly recreate API requests in Hoppscotch.

>_ Generate/copy request code snippets

Generate code snippets for API requests in multiple programming languages and frameworks.

>_ Copy/share public Share URL

Share API requests publicly via a generated URL.

Security Frameworks
Reconnaissance
Initial Access
Command and Control
Execution
Usage Insights
  • Integrate with Burp Suite for comprehensive web application security testing.
  • Use for API security testing during development and CI/CD pipelines.
  • Combine with vulnerability scanners like Nessus or OpenVAS for enhanced coverage.
  • Leverage for incident response and post-exploitation activities.
  • Automate API security testing with custom scripts and integrations.

Docs Take 2 Hours. AI Takes 10 Seconds.

Ask anything about hoppscotch. Installation? Config? Troubleshooting? Get answers trained on real docs and GitHub issues—not generic ChatGPT fluff.

3 free chats per tool • Instant responses • No credit card

Security Profile
Red Team70%
Blue Team60%
Purple Team65%
Details
LicenseMIT License
LanguageTypeScript
Open Issues1956
Topics
api
api-client
api-rest
pwa
api-testing
vue
vuejs
tools
testing-tools
testing