Subcategory
AI-native security auditing CLI for compliance reporting
Software composition analysis with agentic AI remediation
Machine-learning software composition analysis for dependency security and license compliance
AI-powered dependency management and automated updates
Agentic AI for continuous software supply chain security and SBOM management
Unified application and AI security platform with SCA, SAST, and AI-powered remediation
AI-assisted application security platform combining SCA, SAST, and AI security
Malicious npm package detection with AI-powered threat intelligence
Active ASPM platform with AI-driven prioritization from code to cloud
AI code review agent that analyzes pull requests for quality, security, and business context
Software supply chain risk analysis with ML-based malicious package detection
SaaS security platform that scans SAST, SCA, and secrets on every commit
Developer-first security platform for finding and fixing open-source vulnerabilities
Supply chain security that blocks malicious dependencies at install time
SCA built into SonarQube with AI CodeFix for vulnerable dependencies
Enterprise SCA with AI-generated upgrade pull requests
Supply chain attack detection for GitHub Actions and OSS packages
Offline security scanner built for AI-generated code
Predictive supply-chain security using metadata analysis of dependencies and maintainers
Open-source vulnerability scanner combining deterministic scanning with LLM-driven code auditing
AI-driven SCA that monitors manifests without code access
New AI tools, weekly — curated by engineers, for engineers.