Matchboxmatchbox
← Back to match

Hadrian

Open-source API security framework that finds broken authorization bugs (BOLA/BFLA) via role-based testing.

PlatformWebfreeglobal

Hadrian is a free, open-source API security testing framework that finds broken authorization bugs, like BOLA and BFLA, in REST, GraphQL, and gRPC APIs using role-based testing and YAML templates. Its mutation testing proves unauthorized writes and deletes actually succeeded rather than relying on status codes alone, and it outputs SARIF reports for GitHub Code Scanning. Built by Praetorian for application security engineers and penetration testers.

Categories
API securityPenetration testing

Full match profile

Behind the summary, Matchbox keeps a richer profile of Hadrian - the signals our matcher actually reads to decide when to surface it. It stays private; claim the listing to see and control it.

  • Problem & pain-point mapping
  • Who we surface it to (audience fit)
  • What it's a strong alternative to
  • Trust & credibility signals

Try Matchbox with your own problem

Describe what is not working - we’ll show you whether Hadrian (or something else) actually fits.