Free Security Tools
Free tools from 42Crunch that help you deliver security as code
IDE Tools

OpenAPI (Swagger) Editor for VS Code
This VS Code extension adds rich support for the OpenAPI Specification (OAS) (formerly known as Swagger) in JSON or YAML format.
Get the Extension
OpenAPI (Swagger) Editor for IntelliJ
This IntelliJ extension adds rich support for the OpenAPI Specification (OAS) (formerly known as Swagger) in JSON or YAML format.
Get the Extension
OpenAPI (Swagger) Editor for Eclipse
This Eclipse extension adds rich support for the OpenAPI Specification (OAS) (formerly known as Swagger) in JSON or YAML format.
Get the ExtensionCI/CD Tools

42C Security Audit for Bitbucket
The REST API Static Security Testing pipe lets you add an automatic static application security testing (SAST) task to your CI/CD pipelines.
Get the Extension
42C Security Audit for Jenkins
The REST API Static Security Testing plugin lets you add an automatic static application security testing (SAST) task to your CI/CD pipelines.
Get the Extension
42C Security Audit for Azure Pipelines
This REST API static security testing tool allows you to add automated static application security testing tasks to your CI/CD pipeline runs.
Get the Extension
42C Security Audit for Bamboo
You can integrate API Contract Security Audit in Atlassian Bamboo through the 42C REST API Static Security Testing app.
Get the Extension
42C Security Audit for GitHub Actions
The REST API Static Security Testing action lets you add an automatic static application security testing (SAST) task to your CI/CD workflows.
Get the Extension
42C Security Audit for SonarQube
The REST API Static Security Testing action lets you add an automatic static application security testing (SAST) task to your CI/CD workflows.
Get the Extension
42C Security Audit for GitLab
The REST API Static Security Testing job lets you add an automatic static application security testing (SAST) task to your CI/CD pipelines.
Get the ExtensionReady to Get Started?
Developer-first solution for delivering API security as code.