Wallarm Logo

GoTestWAF
API / Application Security Testing Results

Overall grade:

F 0.0 / 100
Project name : generic
URL : https://git.sechpoint.app
Testing Date : 24 April 2026
GoTestWAF version : unknown
Test cases fingerprint : 910a7162ec5355b41a27a2ef0caa3574
Used arguments : --url=https://git.sechpoint.app --configPath=gotestwaf-config.yaml --testCasesPath=testcases --maxIdleConns=2 --maxRedirects=10 --reportPath=/home/engineer/gitex2026/AttackSurface/dist/reports --reportName=report_4a48e516-2320-4db3-b717-75e5a72a28b6 --reportFormat=html --wafName=generic --skipWAFBlockCheck --nonBlockedAsPassed --tlsVerify --noEmailReport --quiet
Type
True-positive tests blocked
True-negative tests passed
Grade
API Security
F
0.0%
N/A
0.0%
F
0.0%
Application Security
F
0.0%
F
33.3%
F
0.0%

Benchmarks against other solutions

Type
API Security
Application Security
Overall score
ModSecurity PARANOIA=1
F
42.9%
D+
68.2%
F
55.5%
ModSecurity PARANOIA=2
F
57.1%
D-
60.1%
F
58.6%
ModSecurity PARANOIA=3
C+
78.6%
F
51.2%
D
64.9%
ModSecurity PARANOIA=4
A+
100.0%
F
36.7%
D+
68.4%
A+
100.0%
A+
97.7%
A+
98.9%

Details

Summary

Total requests sent: 816

Number of blocked requests: 94

Number of passed requests: 722

Number of unresolved requests: 0

Number of failed requests: 0

True-positive tests

Test set
Test case
Percentage
Blocked
Bypassed
Unresolved
Sent
Failed
community
community-128kb-rce
0.00%
0
1
0
1
0
community
community-128kb-sqli
0.00%
0
1
0
1
0
community
community-128kb-xss
0.00%
0
1
0
1
0
community
community-16kb-rce
0.00%
0
1
0
1
0
community
community-16kb-sqli
0.00%
0
1
0
1
0
community
community-16kb-xss
0.00%
0
1
0
1
0
community
community-32kb-rce
0.00%
0
1
0
1
0
community
community-32kb-sqli
0.00%
0
1
0
1
0
community
community-32kb-xss
0.00%
0
1
0
1
0
community
community-64kb-rce
0.00%
0
1
0
1
0
community
community-64kb-sqli
0.00%
0
1
0
1
0
community
community-64kb-xss
0.00%
0
1
0
1
0
community
community-8kb-rce
0.00%
0
1
0
1
0
community
community-8kb-sqli
0.00%
0
1
0
1
0
community
community-8kb-xss
0.00%
0
1
0
1
0
community
community-lfi
0.00%
0
8
0
8
0
community
community-lfi-multipart
0.00%
0
2
0
2
0
community
community-rce
0.00%
0
4
0
4
0
community
community-rce-rawrequests
0.00%
0
3
0
3
0
community
community-sqli
0.00%
0
12
0
12
0
community
community-user-agent
0.00%
0
9
0
9
0
community
community-xss
0.00%
0
104
0
104
0
community
community-xxe
0.00%
0
2
0
2
0
Summary for community
0.00%
0
159
0
159
0
owasp
crlf
0.00%
0
7
0
7
0
owasp
ldap-injection
0.00%
0
24
0
24
0
owasp
mail-injection
0.00%
0
24
0
24
0
owasp
nosql-injection
0.00%
0
50
0
50
0
owasp
path-traversal
0.00%
0
20
0
20
0
owasp
rce
0.00%
0
6
0
6
0
owasp
rce-urlparam
0.00%
0
9
0
9
0
owasp
rce-urlpath
0.00%
0
3
0
3
0
owasp
shell-injection
0.00%
0
32
0
32
0
owasp
sql-injection
0.00%
0
48
0
48
0
owasp
ss-include
0.00%
0
24
0
24
0
owasp
sst-injection
0.00%
0
24
0
24
0
owasp
xml-injection
0.00%
0
7
0
7
0
owasp
xss-scripting
0.00%
0
224
0
224
0
Summary for owasp
0.00%
0
502
0
502
0
owasp-api
graphql
0.00%
0
0
0
0
0
owasp-api
graphql-post
0.00%
0
0
0
0
0
owasp-api
grpc
0.00%
0
0
0
0
0
owasp-api
non-crud
0.00%
0
2
0
2
0
owasp-api
rest
0.00%
0
7
0
7
0
owasp-api
soap
0.00%
0
5
0
5
0
Summary for owasp-api
0.00%
0
14
0
14
0
Summary for true-positive tests
0.00%
0
675
0
675
0

True-negative tests

Test set
Test case
Percentage
Blocked
Bypassed
Unresolved
Sent
Failed
false-pos
texts
33.33%
94
47
0
141
0

True Negative Tests

47 true-negative requests identified as bypassed (test passed, good behavior)

94 true-negative requests identified as blocked (test failed, bad behavior)

Bypasses in Details

675 malicious requests have bypassed the security solution

Scan to access your report

QR Code

Show this code to Sechpoint Aftica Team at GITEX 2026