{"repo":"OWASP/crAPI","free":true,"listed":false,"github":"https://github.com/OWASP/crAPI","clone":"git clone https://github.com/OWASP/crAPI.git","description":"completely ridiculous API (crAPI)","language":"Java","stars":1560,"topics":["api","apisecurity","hacktoberfest","owasp"],"license":"Apache-2.0","category":"api-integrations-sdks","readme_excerpt":"crAPI c ompletely r idiculous API (crAPI) will help you to understand the ten most critical API security risks. crAPI is vulnerable by design, but you'll be able to safely run it to educate/train yourself. crAPI is modern, built on top of a microservices architecture. When time has come to buy your first car, sign up for an account and start your journey. To know more about crAPI, please check [crAPI's overview][overview]. QuickStart Guide Application Workflow (Happy Path) After setting up crAPI, it is recommended to follow the intended user workflow to understand how the application is supposed to work before attempting any security challenges. -Application Workflow (Happy Path) Docker and docker compose You'll need to have Docker and docker compose installed and running on your host system. Also, the version of docker compose should be 1.27.0 or above. Check your docker compose version using: Upgrade your docker compose version if you get errors like Using prebuilt images You can use prebuilt images generated by our CI workflow by downloading the docker compose and .env files. - To use the latest stable version. - Linux Machine To override server configurations, change the values of the variables present in the .env file or add the respective variables to the start of the docker compose command. For example to expose the system to all network interfaces. - Windows Machine To override server configurations, change the values of the variables present in the .env file or add t","default_branch":null,"files":null,"tree":[],"storefront":"/r/OWASP","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/OWASP/crAPI/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}