Security Misconfiguration Indicator
Check OpenAPI specs and samples for debug endpoints, overly broad CORS, missing error schemas, and inconsistent auth patterns. Free by Graph Tools.
Use this free security misconfiguration indicator to check OpenAPI specifications and API response samples for common configuration weaknesses. The tool identifies debug or admin endpoints, overly permissive CORS declarations, missing or inconsistent error response schemas, and authentication scheme anomalies. Maps to OWASP API8 Security Misconfiguration. Useful for developers in pre-release reviews, security engineers conducting spec audits, and DevOps teams validating deployment configs.