Skip to content
@Escape-Technologies

Escape - Offensive security for the teams that are 100x outnumbered

Replace legacy scanners and manual offensive security processes with AI agents that discover, test, and remediate directly in your engineering workflows

👋 Welcome to our repo

Escape


Our Website   •   Security Blog   •   Research   •   Case Studies   •   Docs

👋 Hello again

Escape automates the full offensive security lifecycle, multiplying the impact of every security engineer tenfold. Our goal is to replace legacy scanners and manual offensive security processes with AI agents that discover, test, and remediate directly in your engineering workflows 😉

🤝 Join our team

We believe it’s time to bring more AI-driven innovation to cybersecurity, and we'd love your help in building this dream! Want to join our adventure? Check out our Careers page!

🧙 Open source repos

At Escape, alongside our work on application discovery, API security, and Dynamic Application Security Testing (DAST), we've also been developing some fantastic open-source projects. Let us introduce you to all of them 🚀

  • API Security Academy, an interactive platform dedicated to helping you learn how to secure #graphql applications.

  • Goctopus, a GraphQL endpoint discovery and fingerprinting tool.

  • GraphQL wordlist, the only GraphQL wordlist for #pentesting you'll ever need. Operations, field names, type names... It was collected on more than 60k distinct GraphQL schemas.

  • GraphQL Armor, a middleware for Apollo GraphQL Server that adds a security layer to any GraphQL endpoint in minutes. It's also compatible with The Guild Software's Envelop universal plugin system.

  • GraphMan, a tool that helps you to scaffold a Postman collection for a GraphQL API. Compatible with Postman & Insomnia from Kong Inc.

  • Graphinder, a lightweight and blazing-fast GraphQL endpoint finder, making penetration testing on GraphQL much faster

  • Mookme, a git hook manager, designed monorepos for dealing with different projects and languages, automated filtering, and ease of configuration and setup.

  • PyMultiAuth-Archived, an open-source Python library that allows users to authenticate and reauthenticate automatically.

👀 Upcoming events & Resources

👋 Stay in touch

Pinned Loading

  1. graphql-armor graphql-armor Public

    🛡️ The missing GraphQL security security layer for Apollo GraphQL and Yoga / Envelop servers 🛡️

    TypeScript 587 51

  2. graphql-wordlist graphql-wordlist Public

    The only GraphQL wordlist you'll ever need. Operations, field names, type names... Collected on more than 60k distinct GraphQL schemas.

    TypeScript 485 53

  3. awesome-graphql-security awesome-graphql-security Public

    A curated list of awesome GraphQL Security frameworks, libraries, software and resources

    397 34

  4. graphman graphman Public

    Quikly scaffold a postman collection for a GraphQL API. Compatible with Postman & Insomnia.

    TypeScript 253 13

  5. mookme mookme Public archive

    A pre-commit tool designed for monorepos.

    TypeScript 105 14

  6. goctopus goctopus Public

    Blazing fast GraphQL discovery & fingerprinting toolbox.

    Go 135 13

Repositories

Showing 10 of 34 repositories
  • cloudfinder Public

    Detect the cloud / hosting provider of a given host. Fast, static & offline

    Escape-Technologies/cloudfinder's past year of commit activity
    Go 16 MIT 5 0 0 Updated Sep 13, 2026
  • graphql-armor Public

    🛡️ The missing GraphQL security security layer for Apollo GraphQL and Yoga / Envelop servers 🛡️

    Escape-Technologies/graphql-armor's past year of commit activity
    TypeScript 587 MIT 51 2 37 Updated Sep 12, 2026
  • cli Public

    escape-cli

    Escape-Technologies/cli's past year of commit activity
    Go 5 Apache-2.0 1 1 0 Updated Sep 11, 2026
  • homebrew-tap Public

    Homebrew repo for Escape Tooling

    Escape-Technologies/homebrew-tap's past year of commit activity
    Ruby 0 0 0 0 Updated Sep 7, 2026
  • graphql-security-academy Public

    🔒 A free, open-source platform dedicated to understand and secure GraphQL applications — all directly in your browser!

    Escape-Technologies/graphql-security-academy's past year of commit activity
    Svelte 66 AGPL-3.0 4 0 4 Updated Jul 21, 2026
  • .github Public
    Escape-Technologies/.github's past year of commit activity
    0 0 0 0 Updated Jul 16, 2026
  • awesome-graphql-security Public

    A curated list of awesome GraphQL Security frameworks, libraries, software and resources

    Escape-Technologies/awesome-graphql-security's past year of commit activity
    397 CC0-1.0 34 1 1 Updated Jul 16, 2026
  • juice-shop Public Forked from juice-shop/juice-shop

    OWASP Juice Shop: Probably the most modern and sophisticated insecure web application

    Escape-Technologies/juice-shop's past year of commit activity
    TypeScript 0 MIT 19,737 0 0 Updated Jul 7, 2026
  • awesome-devsecops Public

    A curated list of awesome DevSecOps Tools.

    Escape-Technologies/awesome-devsecops's past year of commit activity
    10 MIT 8 1 3 Updated Jun 15, 2026
  • gookme Public Forked from LMaxence/gookme

    A pre-commit tool designed for monorepos. Successor of Mookme.

    Escape-Technologies/gookme's past year of commit activity
    Go 0 MIT 7 0 0 Updated Apr 18, 2026