5.9.0

    OpenAPI (Swagger) Editor

    OpenAPI creation, editing and preview, as well as static and dynamic API security testing. Identifies OWASP API vulnerabilities in both the design and implementation of the API

    Rank#311
    Publisher 42CrunchRegistry openvsx336,459Last scanned Sep 8, 2026, 01:05 PMRegistryHomepageGitHub
    Created
    7 years ago
    Last commit
    last week

    Security Findings

    7

    Hardcoded secrets/API keys

    SuspiciousScanner

    Secret Keyword: opena...****

    out/envstore.js

    Hardcoded secrets/API keys

    SuspiciousScanner

    Secret Keyword: secre...****

    out/graphql/scan/view.js

    Hardcoded secrets/API keys2×

    SuspiciousScanner

    Secret Keyword: Passw...****

    Secret Keyword: API K...****

    webview/generated/preview/redoc/main.js

    Hardcoded secrets/API keys

    SuspiciousScanner

    Basic Auth Credentials: ****

    node_modules/cacheable-request/README.md

    Transitive delivery to an unrelated extension

    SuspiciousScanner

    Pulls unrelated extension(s) via extensionPack/Dependencies (payload lives in the target): redhat.vscode-yaml

    Install-lifecycle script shipped

    SuspiciousScanner

    package.json postinstall script is shipped (inert on VSIX install but a build-hygiene / dev-tooling tell): cd packages && npm install