Put Your Identity Provider Integrations to the Test!

Craft unexpected or malicious inputs for OpenID Connect and SAML providers to ensure that your application handles them well and is not vulnerable to dangerous account-takeover vulnerabilities.

Learn More

OpenID Connect 1.0

Lorem ipsum dolor sit amet, consetetur sadipscing elitr, sed diam nonumy eirmod tempor invidunt ut labore

SAML 2.0

Lorem ipsum dolor sit amet, consetetur sadipscing elitr, sed diam nonumy eirmod tempor invidunt ut labore

SCIM 2.0

Lorem ipsum dolor sit amet, consetetur sadipscing elitr, sed diam nonumy eirmod tempor invidunt ut labore

Perfect Solution Thriving Online Business

Lorem ipsum dolor sit amet, consetetur sadipscing elitr, sed dinonumy eirmod tempor invidunt ut labore et dolore magna aliquyam erat, sed diam voluptua. At vero eos et accusam et justo duo dolores et ea rebum. Stet clita kasd gubergren, no sea takimata sanctus est Lorem.Lorem ipsum dolor sit amet.

Discover More

Easy to Use with Tons of Awesome Features

Lorem ipsum dolor sit amet, consetetur sadipscing elitr, sed diam nonumy eirmod tempor invidunt ut labore et dolore magna aliquyam erat, sed diam voluptua.

  • Quick Access
  • Easily to Manage
  • 24/7 Support
Learn More

What Can You Do With BadIdP?

Test Your Integrations for Functionality

Make sure your IdP integrations work in accordance to the specification.

Test Your Applications Against Account-Takeover Vulnerabilities

Make sure your application does not allow folks with malicious IdPs to see parts of your product they aren't intended to.

Test Your Application via User Impersonation

With BadIdp you can sign-up as any user with any user metadata (email, name, profile picture, etc.)