> For the complete documentation index, see [llms.txt](https://developer.harness.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing.md).

# application-security-testing

- [Application Security Testing](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/application-security-testing.md)
- [Getting Started with AST](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/getting-started-with-ast.md)
- [AST Basics and Workflow](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow.md)
- [Understanding Scans and Traffic Types](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/understanding-scans-and-traffic-types.md)
- [Runners and CLI](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli.md)
- [Software and Hardware Requirements](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli/software-and-hardware-requirements.md)
- [Installing a Runner](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli/installing-a-runner.md)
- [Installation using CloudFormation](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli/installation-using-cloudformation.md)
- [Installation using Terraform](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli/installation-using-terraform.md)
- [Understanding Runners Dashboard](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli/understanding-runners-dashboard.md)
- [CLI Pre-checks and Installation](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli/cli-pre-checks-and-installation.md)
- [Traceable CLI Config](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli/traceable-cli-config.md)
- [Upgrading a Runner](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli/upgrading-a-runner.md)
- [Uninstalling a Runner](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/runners-and-cli/uninstalling-a-runner.md)
- [Creating a Scan](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/creating-a-scan.md)
- [Run a Scan from CLI](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/run-scan-from-cli.md): Run a scan from the Traceable CLI, queue it to a remote runner, and gate a CI/CD pipeline on the result.
- [Scan Overrides](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/scan-overrides.md): Override a scan's target URL, authentication hooks, and API specifications for a single run from the Traceable CLI.
- [Configuring Scans using GraphQL API](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/configuring-scans-using-graphql-api.md)
- [Scan Creation Recommendations](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/scan-creation-recommendations.md)
- [Scan Details](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/scan-details.md)
- [AST Issues Overview](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/ast-issues-overview.md)
- [AST Issue Management](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/ast-issue-management.md)
- [Reports](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/ast-basics-and-workflow/reports.md)
- [Advanced Usage](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage.md)
- [Downloading Scan Results using the FPR API](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/downloading-scan-results-using-the-fpr-api.md)
- [Understanding API Dependencies](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/understanding-api-dependencies.md)
- [Postman collections with AST](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/postman-collections-with-ast.md)
- [Policies](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/policies.md)
- [Scan Policy Performance](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/policies/scan-policy-performance.md): Performance testing results for Traceable's eight predefined API Security Testing policies, across Replay and DAST traffic types.
- [Vulnerability Types](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/vulnerability-types.md)
- [Plugins](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/plugins.md)
- [Getting Started with AST Plugins](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/plugins/getting-started-with-ast-plugins.md)
- [Plugin Functions and Operators](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/plugins/plugin-functions-and-operators.md)
- [Configuring and Writing Custom Plugins](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/plugins/configuring-and-writing-custom-plugins.md)
- [Mutation and Assertion Overrides](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/mutation-and-assertion-overrides.md)
- [Authentication](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication.md)
- [API Key](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/api-key.md)
- [Basic Auth](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/basic-auth.md)
- [Bearer](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/bearer.md)
- [Content Signature](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/content-signature.md)
- [HMAC](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/hmac.md)
- [JWT](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/jwt.md)
- [Mutual TLS](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/mutual-tls.md)
- [OAuth](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/oauth.md)
- [PoP Token Signature](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/pop-token-signature.md)
- [Custom Auth](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/authentication/custom-auth.md)
- [Environment Config](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/environment-config.md)
- [Pre-Hooks](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/pre-hooks.md)
- [Transform rules](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/advanced-usage/transform-rules.md)
- [FAQs](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/faqs.md)
- [Troubleshooting Guide](https://developer.harness.io/web-application-and-api-protection-waap/application-security-testing/troubleshooting-guide.md)
