Native GraphQL Scanning for Snyk API & Web
New
We’ve expanded our DAST capabilities by adding GraphQL as a supported API target type in Snyk API & Web. This enables security tests specifically designed for GraphQL operations, including queries and mutations. In addition to schema ingestion via URL or file upload, you can now fetch your schema directly from an introspection endpoint to ensure tests stay up to date. To support these scans, we've also updated our authentication settings to include dedicated options for GraphQL targets.
To learn more, visit How to configure and scan an API and How to set target authentication: GraphQL in our user documentation.
Natalia Yurchenko | Senior Product Manager
Tags: