OWASP Juice Shop
Official@juice-shop
Insecure web application for security trainings, awareness demos, CTFs and as a guinea pig for security tools
Agent Skills by OWASP Juice Shop
Showing 7 vetted skills indexed across 1 GitHub repositories.
write-tests
Write frontend, server, API, and Cypress E2E tests that close lcov coverage gaps.
verify-challenge
Verify new Juice Shop challenges for metadata, CTF config, and documentation.
add-reference
Add Juice Shop references to REFERENCES.md with type-specific formatting.
verify-rsn-fix
Verify and fix broken RSN mappings between vuln-code-snippet blocks and codefix files.
create-m3-theme
Create and integrate Angular Material M3 themes in Juice Shop SCSS and configuration.
add-solution
Categorize hacking resources into SOLUTIONS.md or REFERENCES.md with formatted entries.
generate-release-notes
Generate categorized markdown release notes from Git tag changes for OWASP Juice Shop.
Frequently Asked Questions About OWASP Juice Shop
FAQPage SchemaWhat specific security tasks does this organization support?▼
The organization enables security professionals to conduct penetration testing, verify vulnerability remediation, and manage CTF challenge metadata. It provides a structured environment for testing security scanners and training developers on identifying and patching common web application vulnerabilities.
Who is the target audience for these security resources?▼
The primary audience includes security researchers, penetration testers, and developers seeking hands-on experience with web vulnerability identification. It is also designed for educators and trainers who require a standardized, insecure platform for demonstrating attack vectors and defensive coding practices.
What are the licensing and cost requirements for usage?▼
OWASP Juice Shop is an open-source project released under the MIT License. It is free to use, modify, and distribute for educational, training, and security research purposes without requiring any commercial licensing or subscription fees.