Wiz Zero Critical Club!

Postman has joined Wiz’s Zero Critical Club, “a prestigious group of Wiz customers who have achieved the extraordinary feat of having zero…

Root Cause Analysis: Shai-Hulud 2.0

Postman Security knows that trust begins with transparency. So we are following up (as promised!) on the Shai Halud attack we first…

Smart API Security: The Power of LLMs and Postman MCP

APIs are the nervous system of modern software. They power apps, SaaS platforms, fintech products, and even your coffee machine. Yet, APIs…

Shai-Hulud 2.0 npm supply-chain attack

Update: our RCA has been posted here.  Postman has discovered unusual activity in our NPM org relating to the ongoing “Shai-Hulud 2.0…

Product Security Scorecards: Coupling Security Issues with Preventative Controls to Drive Security Maturity

Postman’s commitment to Product Security begins with our approach to Application Security. Every engineering team in Postman has an assigned Security Engineer…

A simpler and local-first variables experience

At Postman, we are committed to delivering simple, practical and easy-to-use tools that make building and testing APIs efficient and effortless. Postman…