← Back to home

Practice Environment

QA Sandbox

A hands-on practice ground for QA engineers. Each scenario contains intentionally planted bugs, vulnerabilities, and edge cases. No accounts. No scores. No hints beyond the scenario page. Your job is to find what's broken.

🎉 Bug Found
✅ True Positive
⚠️ False Positive
❌ False Negative
🛡️ Security & Injection

SQL Injection
Beginner 8 tests

Login form vulnerable to classic SQLi bypass. Find the input that breaks authentication.

Cross-Site Scripting (XSS)
Intermediate Coming Soon

A bio field that sanitizes one XSS vector but not another. Find the one that executes.

CSRF
Intermediate Coming Soon

Two forms — one protected, one not. Craft a forged request and find the unprotected one.

🧩 UI Components & Interactions

Custom Dropdown
Beginner–Intermediate 6 tests

A div-based dropdown with 4 planted bugs — JS errors, outside-click, form value, and keyboard nav.

Modal / Popup
Beginner Coming Soon

A Terms & Conditions modal with broken close button and focus trap issues.

File Upload
Intermediate Coming Soon

Extension-only validation that misses MIME type, empty files, and script-injected filenames.