Stable signalUnknownHigh-risk permissions
OWASP Penetration Testing Kit icon

OWASP Penetration Testing Kit

OWASP Penetration Testing Kit

Users20KCurrent public install base
Rating4.8Store average score
Reviews27Public review volume
Manifest versionV3Extension platform version
7-day growth0Net users gained this week
7-day growth rate0%Relative weekly velocity
Preview

OWASP Penetration Testing Kit Media preview

7 assets
Trend

User growth trend

Review user movement across collected snapshots.

User Growth Over Time

20K20K20K20K20K2026年7月13日2026年7月16日2026年7月19日Latest: 20K
Rating trend

7-day rating trend

View collected rating snapshots from the latest 7-day window to assess rating stability.

7-day rating change

Start
4.81
Latest
4.81
7-day rating change
0.00
4.714.764.814.864.912026年7月13日2026年7月16日2026年7月19日Latest: 4.81
2026年7月13日2026年7月19日
Growth overview

Daily, weekly, and monthly growth

Compare 1-day, 7-day, and 30-day net growth and growth rate.

1-day growthFlat
00%
7-day growthFlat
00%
30-day growthFlat
00%
Technical snapshot

Version, languages, and crawl freshness

Review publication date, version, supported languages, and crawl timestamps.

Version9.7.0
ManifestV3
Size8.6MiB
Languages1English (United Kingdom)
Published
Store updated
Last crawled
English (United Kingdom)
Overview

Product summary

Review the store description, core capabilities, and common use cases.

The OWASP Penetration Testing Kit (PTK) browser extension is your all-in-one solution for streamlining your daily AppSec tasks. Whether you’re a penetration tester, a Red Team member, or an AppSec practitioner, OWASP PTK enhances your efficiency and provides deep insights into your target application.

Key Features:

Runtime Scanning (DAST & IAST & SAST & SCA):

Perform Dynamic Application Security Testing, Static Analysis, In-Browser IAST and Software Composition Analysis on the fly. Identify SQL injection, command injection, reflected/stored XSS, SQL auth bypass, XPath injections, JWT attacks, and other complex threats.

Static Analysis (SAST):

PTK automatically parses loaded JavaScript, HTML, and CSS right in your browser—before any code ever runs. It flags unsafe patterns like `eval()`, `innerHTML`/`outerHTML` injection, insecure cryptographic calls, missing input sanitization, and common anti-patterns.

Reviews

Recent review snapshot

Inspect the latest comments and rating distribution.

Store average score4.8Chrome Web Store aggregate rating, including ratings without synced review text
Synced text average4.8Average computed only from synced review bodies below
Reviews with text23Synced review bodies
Total ratings / reviews27Chrome Web Store public rating/review count

Store average score: 4.8. The bars below are calculated from synced review text only, so they may be empty for extensions that have public ratings but no synced comments yet.

5
21
4
0
3
2
2
0
1
0
John Wick2020年3月5日
5

Великолепное дополнение от создателей metasploit

Language ru
2 helpful · 0 not helpful
Bob Lerner2020年3月1日
5

We use this internally to enable customers to authenticate to their applications with complex mechanisms. This extension has been a game changer.

Language en
7 helpful · 3 not helpful
Carl Castin2019年2月15日
5

great

Language en
7 helpful · 2 not helpful