# Do coding agents recommend ZAP?

> ZAP is the most chosen security testing tool, taking 24% of 460 judged security testing sessions.

Source: https://armature.tech/library/do-coding-agents-recommend-zap
Published: 2026-09-28 · Updated: 2026-09-29
Publisher: Armature, Inc. (https://armature.tech)

---

> ZAP is the most chosen security testing tool, taking 24% of 460 judged security testing sessions. It was also raised as a candidate in 81 further sessions without being chosen.

This page reports what happened when Claude Code, Codex, Grok Build CLI and Muse Code had to solve a problem in security testing inside a realistic codebase. Not what a chat assistant says about ZAP. What an agent actually installed.

## The numbers

| | |
| --- | --- |
| Category | Security testing |
| Sessions in the category | 460 |
| Sessions where ZAP was chosen | 111 |
| Install share | 24% |
| Rank in category | 1 of 65 |
| Codebases it won in | 7 |
| Raised as a candidate, not chosen | 81 |
| Chosen when considered | 58% |
| Site | zaproxy.org |

## By agent

The agents treat ZAP very differently. Muse Code chose it in 35% of its sessions in this category and Grok Build CLI in 18%, a spread of 17 points.

| Agent | Sessions | Chose ZAP | Share |
| --- | --- | --- | --- |
| Claude Code | 116 | 23 | 20% |
| Codex | 116 | 28 | 24% |
| Grok Build CLI | 116 | 21 | 18% |
| Muse Code | 112 | 39 | 35% |

A single blended install share would report the midpoint and hide both ends. If most of your users run Grok Build CLI, your real position here is 18%, not 24%.

## What ZAP was up against

The full ranking in security testing, from the same sessions:

| # | Product | Runs won | Share |
| --- | --- | --- | --- |
| 1 | ZAP **(this page)** | 111 | 24% |
| 2 | Semgrep | 78 | 17% |
| 3 | SonarQube | 66 | 14% |
| 4 | Burp Suite | 30 | 7% |
| 5 | GitHub Advanced Security | 25 | 5% |
| 6 | Trivy | 14 | 3% |
| 7 | StackHawk | 12 | 3% |
| 8 | Strix | 11 | 2% |

## What this means

Leading a category is a position to defend rather than a result to celebrate. In our data, leaders lose ground in exactly two situations: when the person asking is an enterprise buyer with procurement constraints, and when a competitor's documentation is easier for an agent to integrate correctly.

The defence is unglamorous. Keep the quickstart running. Keep the version current on the page. Keep the names aligned. Stay in the templates.

## Where these numbers come from

The 460 sessions in security testing are part of a published set of 15,000, run with real coding agents inside realistic codebases and judged blind. The full method is on one page: [how we measured this](/library/how-we-measured-this).

Every security testing run can be replayed on [the board](/leaderboards/security-testing).

If you work on ZAP: the judge recorded a reason for every session where it was raised and passed over. Those reasons are in the transcripts.

<!-- generated by scripts/write-data-pages.mjs -->

## Common questions

### Do coding agents recommend ZAP?

Yes. ZAP was chosen in 111 of the 460 judged sessions in security testing, a 24% install share, ranking first in its category.

### Does Claude Code recommend ZAP?

In 23 of the 116 sessions in security testing run with Claude Code, which is 20%.

### Do different coding agents treat ZAP differently?

Yes, and by a wide margin. Muse Code chose it in 35% of its runs and Grok Build CLI in 18%.

### How was this measured?

Real coding agents at pinned versions were run in sandboxes inside 92 realistic codebases and asked to solve real tasks. A simulated project owner approved or questioned each recommendation before any code was written, and a judge from a model family that builds none of the agents read every session blind.

### How often is ZAP considered but not chosen?

It was raised as a candidate in 81 sessions without being chosen, and chosen in 111. That is a 58% conversion from considered to chosen.

## Read next

- [How to get picked for security testing by coding agents](https://armature.tech/library/security-testing-coding-agents-playbook) (Markdown: https://armature.tech/library/security-testing-coding-agents-playbook.md)
- [Do coding agents recommend Semgrep?](https://armature.tech/library/do-coding-agents-recommend-semgrep) (Markdown: https://armature.tech/library/do-coding-agents-recommend-semgrep.md)
- [Do coding agents recommend SonarQube?](https://armature.tech/library/do-coding-agents-recommend-sonarqube) (Markdown: https://armature.tech/library/do-coding-agents-recommend-sonarqube.md)
- [Do Claude Code, Codex and Cursor pick the same tools?](https://armature.tech/library/do-claude-code-and-codex-agree) (Markdown: https://armature.tech/library/do-claude-code-and-codex-agree.md)

---

Armature helps software products get discovered and used by coding agents.
Service: https://armature.tech/discoverability · Results: https://armature.tech/leaderboards/sectors · Contact: contact@armature.tech
