
Aikido Security
Commercial AppSec platform for SAST, SCA, secrets, cloud posture and DAST, with runtime protection and automated remediation.
0 upvotes · 0 downvotes
- Category
- Application SecurityOffensive Security & PentestingDefensive Security & MonitoringCloud SecurityVulnerability Management
- Pricing
- Freemium
- Platforms
- Web
- Reviewed
- Last reviewed 29 September 2026
What it is
Aikido Security is a commercial application security platform, made by Aikido Security BV, that unifies code scanning, cloud posture checks, dynamic testing and optional runtime protection for development and security teams.
What it helps with
- Finding issues across dependencies (SCA), static analysis (SAST), secrets, infrastructure as code and containers
- Checking cloud misconfigurations and prioritising findings with reachability-aware triage
- Proposing fixes, including pull requests, for confirmed or prioritised issues
- Running optional attack-surface monitoring and DAST or API scanning
- Using AI-assisted or continuous penetration testing only on authorised targets
- Adding in-app runtime defence (Zen) and related developer workstation protections where licensed
Who it's for
Software engineering teams, application security and platform security practitioners, and security leaders who want consolidated AppSec and light cloud coverage without assembling many point tools. A free tier supports small or evaluation use.
Worth knowing
Public documentation lives at help.aikido.dev. The legal entity is Aikido Security BV (Belgium), stated in the privacy policy and terms. Parts of the stack (notably Zen) are open source under AGPL-3.0 with a commercial option; the hosted platform is not open source. Offensive features must only be used on systems you are authorised to test.