There aren’t concrete plans for scripting at this time but it’s not out of the question.
Many cases for scripting can already be solved with things like Request Chaining or custom Plugins.
Let me know if there’s something you’re trying to do that requires scripting.
Esben Bach·Jun 11, 2025 06:23:36 UTC
@Greg Schier before postman became a beast, we started using it for integration/system testing. So most of our requests have response “assertions” to verify the correct output, and often we do a series of “GET” requests after the main test sequence so that we can check the side-effect of the tests.
Reading the plugin docs and the request chaining docs, i am not sure that either would solve our particular use case.
It should be noted that we are more interrested in “assertions” (like soapui) than we are in scripting, its just that the common “catch all” solution to assertions are based on post-request scripting. SoapUI have a different setup that allows custom assertion steps as well as just doing post-request scripts/asserts. Both approaches would help us (and I am sure there are other ways to achieve the same).
Gregory Schier·Jun 25, 2025 03:39:16 UTC
Are you looking to run these tests from within the app, or from a CLI in a CI environment?
Esben Bach·Jun 25, 2025 07:26:26 UTC
CLI in a CI environment mostly. But we typically run the tests interactively during development of them and during troubleshooting when stuff fails….to determine if the API is broken or the test is broken mostly.
Gregory Schier·Jun 26, 2025 15:40:19 UTC
That’s great info, thanks!
Mickael ·Feb 24, 2026 01:23:16 UTC
Exactly this,
This use case is present in a lot of enterprises and is a deal breaker when comparing to postman or Bruno. The ability to just assert a test suite, and run it from the ui or the ci pipelines, ideally generating a report
Awe Ayomidipupo·Sep 17, 2025 17:55:44 UTC
Allow scripting of yaak workspaces
Gregory Schier·Oct 30, 2025 02:03:18 UTC
I’m not sure I understand. That sounds like the perfect use for request chaining, no?
Mihai Damaschin·Oct 30, 2025 02:49:26 UTC
So it's going to sound weird but I reread your comment and I have no idea what I initially understood or what I thought I initially understood from your comment. I have no explanation but I guess I'm severely lacking sleep.
Apologies, please ignore the first reply. 😭
Riaan van Rooyen·Nov 19, 2025 19:31:45 UTC
I’ve been using request chaining and it works for simple scenarios where the API i’m querying is well formed JSON, but I’ve ran into a subpar API (to say the least) where some of the endpoints return JSON and others return HTML 🥲
I think scripting to could be useful if I could extract some information from that response which can be a variable to inject into a subsequent request.
Thoughts how I could achieve this?
Gregory Schier·Nov 20, 2025 23:53:02 UTC
Yes, there are definitely differences between clients, so importing from any source will never be 100% compatible. I’d love to hear what sort of flows you’re using scripting for.
Patrick Diligent·Nov 21, 2025 01:09:25 UTC
Our core field of expertise is CIAM, we need full control of the Authentication/Authorization flows as it is one of the things that we test - not only acquiring tokens to call an api. Pre-request scripts are useful, it is needed to prefill the request with such things as the request parameter in a PAR request (OAuth2 flow), or for implementing the JWT profile scheme, to name the least. And as for post request scripting, it offers capabilities for checking response content that can’t be achieved with request chaining.
Gregory Schier·Nov 22, 2025 14:07:57 UTC
Thanks for the info! Just to follow up, does creating custom auth plugins also not help with some of the Auth flows?
Patrick Diligent·Nov 22, 2025 20:14:49 UTC
A custom auth plugin is more for authenticating with the api you want to interact with. It is not that useful when it is the authentication flow you’re testing. And it would not be as flexible as dropping a script. Chaining requests would still cover a part of it, such as propagating a jwt along the flow. However there are some required transformations that chaining requests would not cover.
Gregory Schier·Nov 22, 2025 22:06:21 UTC
Got it! I appreciate the clarification
Conrad ·May 19, 2026 09:06:38 UTC
Hi, I see this question was raised a year ago and is still marked as Under Consideration. Is there any update on this decision? Is basic pre/post-request scripting planned as a future feature?
Love the app btw!
Gregory Schier·Sep 25, 2026 15:26:50 UTC
I’ve started thinking about it more, recently. Don’t want to promise anything but I’m going to play around with proof of concepts soon!
There aren’t concrete plans for scripting at this time but it’s not out of the question.
Many cases for scripting can already be solved with things like Request Chaining or custom Plugins.
Let me know if there’s something you’re trying to do that requires scripting.
@Greg Schier before postman became a beast, we started using it for integration/system testing. So most of our requests have response “assertions” to verify the correct output, and often we do a series of “GET” requests after the main test sequence so that we can check the side-effect of the tests.
Reading the plugin docs and the request chaining docs, i am not sure that either would solve our particular use case.
It should be noted that we are more interrested in “assertions” (like soapui) than we are in scripting, its just that the common “catch all” solution to assertions are based on post-request scripting. SoapUI have a different setup that allows custom assertion steps as well as just doing post-request scripts/asserts. Both approaches would help us (and I am sure there are other ways to achieve the same).
Are you looking to run these tests from within the app, or from a CLI in a CI environment?
CLI in a CI environment mostly. But we typically run the tests interactively during development of them and during troubleshooting when stuff fails….to determine if the API is broken or the test is broken mostly.
That’s great info, thanks!
Exactly this, This use case is present in a lot of enterprises and is a deal breaker when comparing to postman or Bruno. The ability to just assert a test suite, and run it from the ui or the ci pipelines, ideally generating a report
I’m not sure I understand. That sounds like the perfect use for request chaining, no?
So it's going to sound weird but I reread your comment and I have no idea what I initially understood or what I thought I initially understood from your comment. I have no explanation but I guess I'm severely lacking sleep.
Apologies, please ignore the first reply. 😭
I’ve been using request chaining and it works for simple scenarios where the API i’m querying is well formed JSON, but I’ve ran into a subpar API (to say the least) where some of the endpoints return JSON and others return HTML 🥲
I think scripting to could be useful if I could extract some information from that response which can be a variable to inject into a subsequent request.
Thoughts how I could achieve this?
Yes, there are definitely differences between clients, so importing from any source will never be 100% compatible. I’d love to hear what sort of flows you’re using scripting for.
Our core field of expertise is CIAM, we need full control of the Authentication/Authorization flows as it is one of the things that we test - not only acquiring tokens to call an api. Pre-request scripts are useful, it is needed to prefill the request with such things as the request parameter in a PAR request (OAuth2 flow), or for implementing the JWT profile scheme, to name the least. And as for post request scripting, it offers capabilities for checking response content that can’t be achieved with request chaining.
Thanks for the info! Just to follow up, does creating custom auth plugins also not help with some of the Auth flows?
A custom auth plugin is more for authenticating with the api you want to interact with. It is not that useful when it is the authentication flow you’re testing. And it would not be as flexible as dropping a script. Chaining requests would still cover a part of it, such as propagating a jwt along the flow. However there are some required transformations that chaining requests would not cover.
Got it! I appreciate the clarification
Hi, I see this question was raised a year ago and is still marked as
Under Consideration. Is there any update on this decision? Is basic pre/post-request scripting planned as a future feature?Love the app btw!
I’ve started thinking about it more, recently. Don’t want to promise anything but I’m going to play around with proof of concepts soon!