OpenAPI Validator

Paste an OpenAPI 3.0, 3.1 or Swagger 2.0 spec in YAML or JSON. It finds broken $refs, undeclared path parameters, duplicate operationIds, missing responses and other mistakes that break code generators and docs.

Spec (YAML or JSON)
Report

Questions

What does the validator check?

Required fields such as openapi, info.title and info.version, valid paths and status codes, unique operationIds, and that every path parameter is both in the URL and declared with required: true. It also checks that every local $ref and security scheme exists and flags schemas that are never used.

What is the difference between errors and warnings?

Errors break the specification and will make tools like Swagger UI or code generators fail or behave wrongly. Warnings are legal but usually a mistake, such as a GET with a request body or an unused schema.

Is my API spec uploaded?

No. The spec is parsed and checked in your browser, so internal APIs stay private.