API Testing

Test Any API.
From Any URL.

Point Fullmakt at an API URL and it generates a ready-to-run collection for you — endpoints discovered, requests scaffolded, credentials wired. Or import an existing Postman collection and keep going.

What is the Fullmakt workbench?

The Fullmakt workbench is an API client — a Postman alternative for building, running and saving HTTP, GraphQL, WebSocket, gRPC and MCP requests. It is one half of Fullmakt, a credential broker for AI agents: the collections you test here are the same ones you hand to an agent, with scoped credentials, policy and audit attached.

Already testing by hand and wondering how an agent would call the same endpoints? That path is in the agent docs.

Import your APIs

Get started in seconds — generate a collection from a live URL, or bring in an existing Postman collection.

Generate collection from URL

Enter any API URL. Fullmakt's AI discovers the available endpoints and scaffolds a full collection — ready to run in seconds.

  • Reads OpenAPI specs, HTML docs, and known patterns
  • Companion environment created with credential variables
  • Works with any public or private API endpoint

Import Postman collection

Already have a Postman collection? Drop the JSON file and your requests, environments, and auth are imported instantly.

  • Postman collection v2.1 supported
  • Postman environment import
  • Auto-detects format from file content

Everything for API testing

HTTP, GraphQL, WebSocket, gRPC, MCP — run them all from one workspace with full governance built in.

Multi-protocol requests

Send HTTP/REST, GraphQL, WebSocket, gRPC, and MCP requests from a single workspace. Switch protocols without losing your context.

Traffic capture

Record live API traffic from a proxy session, inspect every request and response, and save captures as replayable collections.

Collections & environments

Organise requests into collections and folders. Switch between environments (dev, staging, prod) with one click — variables resolve automatically.

Credential broker

Store secrets in the vault. Inject them into requests without hardcoding — vault references resolve at call time, never exposed to agents or the model.

Scripts & test assertions

Write pre-request and post-request scripts. Assert on response status, headers, or body fields — results are displayed inline for every request.

Team workspaces

Share collections and environments across your team. Role-based access keeps production credentials away from viewers.

Start testing in seconds

Generate a collection from any URL and run your first request without setup. No card required.

Try it free