HTTP Toolkit

@httptoolkit
155 Followers
4 Following
361 Posts
Beautiful & open-source tools to debug, test and develop with HTTP(S).
Find out more:https://httptoolkit.com
Built by:https://toot.cafe/@pimterry
Open source:https://github.com/httptoolkit

Wouldn't it be nice if HTTP compression suddenly got 90% better for a whole bunch of common web scenarios?

Dictionary Compression is here to save the day: https://httptoolkit.com/blog/dictionary-compression-performance-zstd-brotli/
https://httptoolkit.com/blog/dictionary-compression-performance-zstd-brotli/

Dictionary Compression is finally here, and it's ridiculously good

Dictionary compression could completely change how applications send data over the web. It's recently gained broad support, and offers absurd real-world...

Vitor Daniel reverse engineered & probed his university's mobile app API with HTTP Toolkit, discovered a vulnerable endpoint leaking private data, and successfully worked with them to patch the issue and secure the service.

Great to see reverse engineering improving security like this, take a look at his write-up for the full story: https://vitordaniel.is-a.dev/blog/como-eu-encontrei-uma-vulnerabilidade-no-sistema-da-minha-universidade
https://vitordaniel.is-a.dev/blog/como-eu-encontrei-uma-vulnerabilidade-no-sistema-da-minha-universidade

Hackeei minha universidade e obtive acesso aos dados de todos os alunos

Um relato pessoal sobre como descobri e reportei uma vulnerabilidade crítica de segurança no sistema da UFRN

Vitor Daniel
It'd be easy to add more one-click filters to this menu - any suggestions for what you'd like to be able to quickly add?

It's hard to find the needle in the haystack sometimes...

You can now right-click any request in HTTP Toolkit to use its hostname as a filter, to quickly hide any host or show it exclusively, in one click right from the traffic itself 🪡

Interested in how rate limiting can work to throttle HTTP clients effectively? @fanf has written some fascinating thoughts about the (relatively) new HTTP standard Rate Limit Header: https://dotat.at/@/2026-01-13-http-ratelimit.html
https://dotat.at/@/2026-01-13-http-ratelimit.html
HTTP RateLimit headers – Tony Finch

Interested in debugging terminal & Docker network traffic with HTTP Toolkit?

Take a skim through this quick intro from Learn Code Camp to get started: https://learncodecamp.net/terminal-http-intercept/
https://learncodecamp.net/terminal-http-intercept/#powerful-inspection-tools

Debugging HTTP Traffic Like a Pro: HTTP Toolkit and Terminal Interception - Learn Code Camp

Debug HTTP traffic from your terminal with HTTP Toolkit. One-click interception for git, npm, curl & more. See exactly what CLI tools send and receive.

Code Camp Guides

As if this weren't exciting enough already, I've also just sent this out to the mailing list and written up a whole summary of what's new in HTTP Toolkit recently, and what could be coming up next!

Take a look: https://http-toolkit.mailcoach.app/webview/campaign/4f0ca2e7-3c9a-4316-8e86-a1202f2c218b

Black Friday, big new features, and the next steps for HTTP Toolkit

It's that time of year again, and so as the prophecy foretold, there must be a new HTTP Toolkit Black Friday deal 💸

This year it's **50% off forever** on all HTTP Toolkit Pro annual subscriptions, from now till Tuesday, with code BLACKFRIDAY25. Happy Thanksgiving/shopping week!

Big milestone: HTTP Toolkit just crossed one million downloads! 🚀

Honestly I didn't think it'd ever get this far, I'm blown away. A huge thanks to all the users, contributors & supporters over the years ❤️. Onwards!

Have suggestions about what else should be added? Get in touch: https://github.com/httptoolkit/httptoolkit/issues/new?template=feedback.md
Build software better, together

GitHub is where people build software. More than 150 million people use GitHub to discover, fork, and contribute to over 420 million projects.

GitHub