ExploitSpec: convert confirmed HTTP findings into repeatable regression tests
Convert confirmed HTTP findings into structured, repeatable tests by turning cURL or HAR captures into YAML test cases, then validate them locally. Created by Alessandro for security researchers and AppSec engineers, the tool targets regression testing workflows and integrates into developer pipelines. It supports privacy-safe cURL and HAR imports, multi-actor workflows, and built-in validation and calibration. The tool fits teams that need local-first, reviewable test artifacts to stop reintroduced vulnerabilities.
What the tool does and how it fits into AppSec workflows
ExploitSpec converts proven HTTP security findings, supplied as cURL commands or HAR files, into YAML-formatted regression tests that are reviewable and versionable. The tool focuses on turning confirmed incidents into repeatable checks rather than scanning for new bugs, which lets security engineers maintain a test suite that verifies fixes across code changes.
How it affects developer environments during execution
The tool runs as a local-first command-line interface and is designed for integration into developer and security pipelines. It supports Windows on amd64 and arm64 and is available via GitHub and WinGet, which allows teams to script executions. Execution and calibration happen locally, so the tool does not require a cloud connection to run tests or store findings.
Safety model and data privacy considerations
The tool accepts privacy-safe imports and operates locally by design, which keeps sensitive HTTP captures on the user's machine. Built-in validation and execution stages let teams calibrate tests before committing them to a repository, and YAML test artifacts are suitable for peer review and version control, reducing the need to share raw capture files.
Usability for different technical levels and workflow roles
The CLI-focused interface targets security researchers and AppSec engineers comfortable with command lines and version control. Multi-actor workflow support signals collaborative test ownership, while YAML output makes reviews straightforward for developers. The tool assumes confirmed findings as input, so it does not replace scanners and requires an upstream discovery process to produce cURL or HAR captures.
Practical tool for teams needing disciplined security regression testing
ExploitSpec is a focused option for AppSec teams and security-minded developers who must preserve confirmed HTTP findings as executable, reviewable tests; it enforces a local-first, review-friendly workflow. The main trade-off is that it requires confirmed captures as input, so teams must pair it with an upstream discovery process. A practical tip: keep test YAML under version control and run calibration steps before adding tests to CI.





