# ZAP Automated Security Scan Orchestrator

> Orchestrates OWASP ZAP security scans via the ZAP API with automated spider, active scanner, and authentication sequence configuration. Generates compliance reports mapped to OWASP Top 10 and exports findings in SARIF and JUnit XML formats.

- Skill: `agentskillexchange/zap-automated-security-scan-orchestrator` (Agent Skill)
- Install (CLI): `npx skillmds@latest add agentskillexchange/zap-automated-security-scan-orchestrator`
- Raw SKILL.md: https://api.skillmd.com/api/skills/agentskillexchange/zap-automated-security-scan-orchestrator/raw
- Safety review: pending (external: skill-scanner PASS, skillspector PASS)
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: Security
- Author: agentskillexchange (https://skillmd.com/u/agentskillexchange)
- Updated: 2026-09-08
- Page: https://skillmd.com/skills/agentskillexchange/zap-automated-security-scan-orchestrator

---


# ZAP Automated Security Scan Orchestrator

Orchestrates OWASP ZAP security scans via the ZAP API with automated spider, active scanner, and authentication sequence configuration. Generates compliance reports mapped to OWASP Top 10 and exports findings in SARIF and JUnit XML formats.

## Prerequisites

Java or Docker

## Installation

Requirements and caveats from upstream:
- ![Docker Live Release](https://github.com/zaproxy/zaproxy/actions/workflows/release-live-docker.yml/badge.svg)

Basic usage or getting-started notes:
- ![Integration Tests](https://github.com/zaproxy/zaproxy/actions/workflows/run-integration-tests.yml/badge.svg)

- Source: https://github.com/zaproxy/zaproxy
- Extracted from upstream docs: https://raw.githubusercontent.com/zaproxy/zaproxy/HEAD/README.md

## Documentation

- https://www.zaproxy.org/docs/

## Source

- [Agent Skill Exchange](https://agentskillexchange.com/skills/zap-automated-security-scan-orchestrator/)

