An intercepting proxy designed for security auditing your or your clients' applications quickly and easily.
Intercept HTTPS requests and use those as the basis for further manual requests or fuzzing. Modify requests before they're sent/received.
In addition to supporting TLS interception, you can also intercept websocket connections, and view out of band interactions.
Insert payloads into requests in order to find direct object reference bugs, brute force, or fuzz for injection flaws.
Contains a native user interface for Kali/Linux and MacOS. On Windows and for forward deployments it contains a web frontend.
Built-in scripts to automate the boring stuff and help find vulnerabilities faster. These cover many common tasks and bug classes.
Develop your own scripts for your own advanced exploitation. Write in Python using an API to interact with the proxy.
The paid versions are currently in early access. Support the development, and gain access to exciting new features as they are developed.
More about us✓
Intercept Traffic
✓
Supports Common Web Protocols
✓
Basic Automation
✓
Community Support
✕
Professional Support
✕
Advanced Automation and Reporting
✕
Custom Scripting
✓
Everything From Community
✓
Professional Support
✓
Advanced Automation and Reporting
✓
Custom Scripting
✓
Scopes
✓
Match/Replace Within Requests
✓
Everything From Personal
✓
Priority Professional Support
✓
Support Future Development
✓
Early Access to Windows Build (when available)
✓
Additional Build-In Scripts (on roadmap)
✓
Workflow Management (on roadmap)
Pākiki is the native New Zealand Māori word meaning "to frequently question, inquire, or probe".
Pākiki Proxy is developed with ❤️ by experienced security professionals.
Our mission is to develop next-generation, world-class tools which can be used by the security community to help secure their and their client's systems.
For any questions, or to get in touch, please email hello@pakikiproxy.com.
Give back to the security community.
Lower the barrier to entry for people new to the community.
Open source what we practically can.
Although charge for professional features in order to fund future development.
Take care of our early supporters.
While we reserve the right to increase prices for early supporters,
we commit to taking care of anybody supporting us now.
Sign up for our newsletter and get updates on new features, releases, etc.