Highlighted
Lieutenant Commander Lieutenant Commander
Lieutenant Commander
401 views

Does WebInspect Support Scanning of GraphQL?

Jump to solution

We are starting to see projects that use GraphQL APIs instead of SOAP or REST. Does WebInspect support scanning of GraphQL APIs? If so, any suggestions on how to configure the scan?

Thanks!

0 Likes
1 Solution

Accepted Solutions
Highlighted
Micro Focus Expert
Micro Focus Expert

@bn_pep Currently we do not support GraphQL in the same manner as SOAP or REST. Please contact support and request an Enhancement Request be opened. Our PM is interested in hearing about customers that are using GraphQL for user stories. You can open a support request via the Customer Portal - https://softwaresupport.softwaregrp.com/

View solution in original post

0 Likes
3 Replies
Highlighted
Micro Focus Expert
Micro Focus Expert

@bn_pep Currently we do not support GraphQL in the same manner as SOAP or REST. Please contact support and request an Enhancement Request be opened. Our PM is interested in hearing about customers that are using GraphQL for user stories. You can open a support request via the Customer Portal - https://softwaresupport.softwaregrp.com/

View solution in original post

0 Likes
Highlighted
Micro Focus Expert
Micro Focus Expert

This question came up in a customer call yesterday, and we passed the same request along to the PM JR.

Even without formal support today, there is an opportunity here if you can formulate your GraphQL queries in Postman.  That way you could then take advantage of WebInspect's current Postman integration to operate the API effectively for scanning.


-- Habeas Data
Micro Focus Fortify Customers-Only Forums – https://community.softwaregrp.com/t5/Fortify/ct-p/fortify
Highlighted
Lieutenant Commander Lieutenant Commander
Lieutenant Commander

That's the approach I'm trying. I'm not too familiar with GraphQL, so I'm trying to get up to speed on it. If I can get a Postman collection working, then it will be easy to use it with WebInspect. 

Tags (3)
0 Likes
The opinions expressed above are the personal opinions of the authors, not of Micro Focus. By using this site, you accept the Terms of Use and Rules of Participation. Certain versions of content ("Material") accessible here may contain branding from Hewlett-Packard Company (now HP Inc.) and Hewlett Packard Enterprise Company. As of September 1, 2017, the Material is now offered by Micro Focus, a separately owned and operated company. Any reference to the HP and Hewlett Packard Enterprise/HPE marks is historical in nature, and the HP and Hewlett Packard Enterprise/HPE marks are the property of their respective owners.