Skip to main content

Fast async GraphQL endpoint scanner

Project description

GraphRecon 🔎

GraphRecon is a fast, asynchronous GraphQL endpoint discovery tool.
It scans common and misconfigured API paths to identify exposed GraphQL endpoints.

Designed for:

  • Security researchers
  • Pentesters
  • Bug hunters

✨ Features

  • 🚀 Fully asynchronous (aiohttp + asyncio)
  • 🔍 Detects GraphQL via real GraphQL queries
  • 📍 Scans dozens of common GraphQL/API paths
  • 🧠 Stops duplicate results
  • 🌐 Detects if target is reachable
  • 🎯 Clean CLI usage

📦 Installation

Homebrew (Windows, macOS, Linux)

pip install graphrecon

Follow us

Pentest Project Instagram

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

graphrecon-1.1.1.tar.gz (4.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

graphrecon-1.1.1-py3-none-any.whl (4.3 kB view details)

Uploaded Python 3

File details

Details for the file graphrecon-1.1.1.tar.gz.

File metadata

  • Download URL: graphrecon-1.1.1.tar.gz
  • Upload date:
  • Size: 4.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.11.7

File hashes

Hashes for graphrecon-1.1.1.tar.gz
Algorithm Hash digest
SHA256 bfc177428562d826dd4be4558bcbe4163e5dee7e7fd031b099cdc8cd78b30433
MD5 3e4842e81574b886e0247856aac47460
BLAKE2b-256 74255ba0164848999626cf9b619b8e20678f940828f3d881b774ca0d8c499a62

See more details on using hashes here.

File details

Details for the file graphrecon-1.1.1-py3-none-any.whl.

File metadata

  • Download URL: graphrecon-1.1.1-py3-none-any.whl
  • Upload date:
  • Size: 4.3 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.11.7

File hashes

Hashes for graphrecon-1.1.1-py3-none-any.whl
Algorithm Hash digest
SHA256 c364c743914d79d3bde727f3787d9e265a72da8631e367ec2c7b76256b4195da
MD5 61436d2ad571c742bb16b13740166bea
BLAKE2b-256 2e9d05d9b541172f985ef0a1c30328eb35d8226f447a79160f3b70e2fe23a5a6

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page