PortSwigger · GraphQL Specification

PortSwigger GraphQL

PortSwigger exposes a native GraphQL API for Burp Suite DAST (Dynamic Application Security Testing). This is the recommended integration path for all new Burp Suite DAST integrations, providing the broadest feature surface including site management, scan orchestration, vulnerability retrieval, agent configuration, and report generation.

Documentation Endpoint View on GitHub SecurityWeb SecurityPenetration TestingDASTAPI SecurityDeveloper ToolsGraphQL

Overview

PortSwigger GraphQL is a GraphQL API specification published by PortSwigger on the APIs.io network.

PortSwigger exposes a native GraphQL API for Burp Suite DAST (Dynamic Application Security Testing). This is the recommended integration path for all new Burp Suite DAST integrations, providing the broadest feature surface including site management, scan orchestration, vulnerability retrieval, agent configuration, and report generation.

The GraphQL endpoint is available at https://your-server/graphql/v1. documentation is published at https://portswigger.net/burp/documentation/dast/user-guide/api-documentation/graphql-api.

The specification includes 1 reference link.

Tagged areas include Security, Web Security, Penetration Testing, DAST, and API Security.

Endpoint

`https://your-server/graphql/v1`

References

Back to PortSwigger · All GraphQL Specs · GitHub

Work with this as data

Every GraphQL schema here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for graphql

4 MCP tools reach this
  • find_graphqlBrowse and filter every GraphQL schema in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools

Call it yourself

curl for this page
This GraphQL schema
curl "https://apis.io/api/v1/graphql/portswigger-graphql"
All graphql
curl "https://apis.io/api/v1/graphql?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no email required.

A second provider on the same verified email joins the account you already have.