Burp Suite User Forum

Create new post

Providing a local OpenAPI/Swagger file during scanning

PMwxVLDHhy6oiP | Last updated: Apr 09, 2021 02:10PM UTC

Dear Burp support, According to [1], the scanner is able to parse OpenAPI documents it encounters. However, the API that I want to scan does not provide a documentation on any endpoints, but I do have a local OpenAPI document that I want the scanner to use. Is it possible to provide the scanner with a local OpenAPI documentation? - [1] https://portswigger.net/burp/documentation/desktop/scanning/api-scanning

Uthman, PortSwigger Agent | Last updated: Apr 09, 2021 02:58PM UTC

Hi, This would only work by using the OpenAPI Parser extension in Burp Professional. The definition needs to be hosted online if you are interested in following the same method as the link.

You must be an existing, logged-in customer to reply to a thread. Please email us for additional support.