This document summarizes a master's thesis that presents a solution for scanning sequences of HTTP requests in the open source penetration testing tool ZAP (Zed Attack Proxy). The thesis documents the analysis, design, and implementation phases of adding multi-step scanning functionality to ZAP. It also explains how different test scenarios were used to verify the functionality. The proposed solution serves as a proof-of-concept that could later be integrated into the publicly available version of ZAP.