Matchboxmatchbox

Hadrian

Open-source API security framework that finds broken authorization bugs (BOLA/BFLA) via role-based testing.

PlatformWebfreeglobal
Hadrian preview

Hadrian is a free, open-source API security testing framework that finds broken authorization bugs, like BOLA and BFLA, in REST, GraphQL, and gRPC APIs using role-based testing and YAML templates. Its mutation testing proves unauthorized writes and deletes actually succeeded rather than relying on status codes alone, and it outputs SARIF reports for GitHub Code Scanning. Built by Praetorian for application security engineers and penetration testers.

Categories
API securityPenetration testing

Full match profile

Behind the summary, Matchbox keeps a richer profile of Hadrian - the signals our matcher actually reads to decide when to surface it. It stays private; claim the listing to see and control it.

  • Problem & pain-point mapping
  • Who we surface it to (audience fit)
  • What it's a strong alternative to
  • Trust & credibility signals

Something wrong with this listing — dead link, not a real product, wrong info?

Try Matchbox with your own problem

Describe what is not working - we’ll show you whether Hadrian (or something else) actually fits.