Category:OWASP Enterprise Security API
From OWASP
- Home
- Downloads
- Here's what I did with ESAPI
- Glossary
- Java EE
- .NET
- Classic ASP
- PHP
- ColdFusion/CFML
- Python
- JavaScript
- Force.com
- Ruby
- Swingset
- Project Details
|
ESAPI (The OWASP Enterprise Security API) is a free, open source, web application security control library that makes it easier for programmers to write lower-risk applications. The ESAPI libraries are designed to make it easier for programmers to retrofit security into existing applications. The ESAPI libraries also serve as a solid foundation for new development. Allowing for language-specific differences, all OWASP ESAPI versions have the same basic design:
The following organizations are a few of the many organizations that are starting to adopt ESAPI to secure their web applications: American Express, Apache Foundation, Booz Allen Hamilton, Aspect Security, Foundstone(McAfee), The Hartford, Infinite Campus, Lockheed Martin, MITRE, Nationwide Insurance, U.S. Navy - SPAWAR, The World Bank, SANS Institute. Please let us know how your organization is using OWASP ESAPI. Include your name, organization's name, and brief description of how you are using it. The project lead can be reached here. |
Let's talk hereFurther development of ESAPI occurs through mailing list discussions and occasional workshops, and suggestions for improvement are welcome. For more information, please contact us. |
Got developer cycles?The ESAPI project is always on the lookout for volunteers who are interested in contributing developer cycles.
|
Related resources |
Pages in category "OWASP Enterprise Security API"
The following 29 pages are in this category, out of 29 total.



