{"repo":"doyensec/inql","free":true,"listed":false,"github":"https://github.com/doyensec/inql","clone":"git clone https://github.com/doyensec/inql.git","description":"InQL is a robust, open-source Burp Suite extension for advanced GraphQL testing, offering intuitive vulnerability detection, customizable scans, and seamless Burp integration.","language":"Kotlin","stars":1798,"topics":["graphql","security-scanner","graphql-security","api-documentation-tool","security-tools","security-audit","burp-extensions","burpsuite","bugbounty","bugbounty-tool"],"license":"Apache-2.0","category":"api-integrations-sdks","readme_excerpt":"InQL v6.1.2 - Burp Extension for Advanced GraphQL Testing :rocket: Introduction Welcome to InQL, an open-source GraphQL testing tool. This tool provides features designed to enhance your GraphQL testing experience, making it more efficient and effective. We appreciate your trust in InQL. Happy testing! :star2: Key Features The InQL user interface is equipped with three primary components: the Scanner , the Batch Queries , and the Engine Fingerprinting tab :mag right: Scanner The Scanner is the core of InQL, where you can analyze a GraphQL endpoint or a local introspection schema file. It auto-generates all possible queries, mutations, and subscriptions, organizing them into a structured view for your analysis. :white check mark: Customizable Scans InQL offers the flexibility to customize your scans. Adjust the depth of generated queries or the number of spaces used for indentation. You can also perform 'Points of Interest' scans to detect potential vulnerabilities in the GraphQL schema. :white check mark: Points of Interest Analysis After running a Points of Interest scan, you are presented with a rich data set covering a variety of potential vulnerabilities. You can enable or disable these categories according to your needs. :white check mark: Circular References Detection InQL implements circular reference detection. After analyzing the schema, it displays potentially vulnerable queries in the scanner results view. :white check mark: Enhanced Interactions with Burp InQL sea","default_branch":null,"files":null,"tree":[],"storefront":"/r/doyensec","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/doyensec/inql/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}