overstep is an open-source CLI tool for testing HTTP APIs against authorization vulnerabilities like BOLA and BFLA. It uses matrix-driven testing to identify privilege escalation and drift, helping developers and security teams secure their APIs.
overstep sits in PulseGate's Security & compliance platforms category. It focuses on detecting and preventing authorization vulnerabilities in HTTP APIs, such as privilege escalation and auth drift. overstep is an open-source project aimed at API developers and security engineers. overstep is open source under the Apache-2.0 license. overstep is available on the command line.
It is developed by kabiri-labs, and it first shipped in 2025. The project is developed in the open on GitHub with 20 commits in the last 90 days. Key capabilities include authorization testing, matrix-driven tests, and BOLA/BFLA detection.
Summary written by a language model from the project’s public pages.
What PulseGate has recorded for this listing
Same category — not a similarity match