Matchboxmatchbox
← Back to match

Vespasian

CLI tool that discovers API endpoints from real traffic and generates OpenAPI, GraphQL, or WSDL specs.

Desktopfree

Vespasian is an open-source command-line tool that discovers API endpoints from real HTTP traffic and automatically generates OpenAPI, GraphQL SDL, or WSDL specification files. It can capture traffic itself via headless browser crawling or import existing captures from Burp Suite, HAR files, or mitmproxy. It is built for penetration testers and security engineers mapping the API attack surface of applications that lack documentation.

Categories
SecurityPenetration TestingDeveloper Tools

Full match profile

Behind the summary, Matchbox keeps a richer profile of Vespasian - the signals our matcher actually reads to decide when to surface it. It stays private; claim the listing to see and control it.

  • Problem & pain-point mapping
  • Who we surface it to (audience fit)
  • What it's a strong alternative to
  • Trust & credibility signals

Try Matchbox with your own problem

Describe what is not working - we’ll show you whether Vespasian (or something else) actually fits.