
middleBrick
Wallarm
Metlo API Security
PromptGuard
SecureStack
StackPath
CloudFlare
Amazon CloudFront
Pulse Secure
Sucuri
Flexera Software Vulnerability Manager
Tor Browser
KeyCDN
middleBrick scans any API endpoint and returns a security risk score (A+ through F) with actionable findings โ no agents, no config, no credentials required.
Submit a URL or OpenAPI spec. middleBrick runs 12+ security checks in parallel and delivers a prioritized report with severity ratings and remediation guidance in under 60 seconds. It tests what an unauthenticated attacker would see โ black-box, zero setup.
The only self-service scanner with dedicated LLM checks: * System prompt leakage detection * Prompt injection testing * Jailbreak probes * Data exfiltration vectors * Excessive agency and cost exploitation
OWASP API Security Top 10: * Access Control: BOLA/IDOR and BFLA. * Authentication: Multi-method bypass detection and JWT analysis. * Data Exposure: PII, API keys, and credit cards with Luhn validation. * Technical Vulnerabilities: Input Validation, Rate Limiting, SSRF, and Security Misconfiguration. * Modern Architecture: GraphQL vulnerabilities, Encryption & Transport Security, and API Inventory gaps. * Specifications: Full OpenAPI 2.0/3.0/3.1 spec analysis included.
npx middlebrick scan in your terminal or CI pipeline.
middleBrick
StackPathNo middleBrick videos yet. You could help us improve this page by suggesting one.
middleBrick's answer
middleBrick assigns a quantitative risk score (0-100) to any API in seconds, not weeks. It covers OWASP API Top 10, GraphQL, and LLM/AI-specific security checks in a single scan. It integrates directly into developer workflows via CLI, GitHub Action, and MCP server for AI assistants โ no sales calls, no setup meetings.
middleBrick's answer
Most API security tools require enterprise contracts, complex onboarding, or inline proxies. middleBrick is fully self-service: scan any API endpoint in minutes even with a free account.
middleBrick's answer
DevSecOps engineers, API developers, and security teams at startups and scale-ups who need to test their APIs for vulnerabilities without long procurement cycles. Also teams building AI/LLM-powered products who need to secure their model-facing APIs.
Based on our record, StackPath seems to be more popular. It has been mentiond 1 time since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.
StackPath (Dallas, Texas) | Remote | Full-Time | https://stackpath.com I am looking for Senior Systems Engineer for our Kubernetes infrastructure: https://stackpath.applytojob.com/apply/kLd89ZuXsV/Senior-Systems-Engineer The Systems Engineering team is a small team of 5 that are specialized in the care-and-feeding of the StackPath bare-metal infrastructure. Bonus points if you exhibit an affinity towards... - Source: Hacker News / over 4 years ago
Wallarm - Wallarm WAF is AI-powered Platform that automates real-time application protection combines Active Threat Verification engine with a DevOps friendly NG-WAF and security testing for websites, microservices and APIs across public and private clouds.
CloudFlare - Cloudflare is a global network designed to make everything you connect to the Internet secure, private, fast, and reliable.
Metlo API Security - Open Source API Security Platform
Amazon CloudFront - Amazon CloudFront is a content delivery web service.
PromptGuard - The firewall for AI prompts.
Pulse Secure - Pulse Secure provides a consolidated offering for access control, SSL VPN, and mobile device security. Contact Pulse Secure at 408-372-9600 to get a free demo.