Aikido Security
All-in-one AppSec platform (SAST, SCA, secrets, cloud) with AI autotriage and autofix PRs, built on tuned open-source scanners.
Visit Website [↗][ Facts ]
- Category
- Security
- Open source
- No
- Pricing
- Free Developer plan (2 users); Basic $300/mo and Pro/Advanced from $600/mo (10 users incl., scales by users); Enterprise custom; 10% off annual billing source
- Self-hosted
- Enterprise only — SaaS-first; Pro adds on-premises/local scanning and Enterprise offers on-premises deployment options.
- Platforms
- github, gitlab, bitbucket, azure-devops
- Model control
- Fixed vendor models (Claude via AWS Bedrock) for AutoFix and AutoTriage; no BYOK
- Last verified
- 2026-08-11
[ Against the 9 Standards ]
Based on public documentation as of 2026-08-11. ✓ documented · ~ partial · ✗ not offered · ? unknown. Methodology on the about page.
Reachability engine plus code and cloud context feed AI autotriage; no multi-repo or requirements context.
Curated scanner rules with rule-based plus LLM autotriage; noise reduction is the core pitch.
IDE plugins, CI gating, and PR security reviews; no documented distinct local-vs-PR behavior modes.
Jira/Linear sync creates tickets from findings; no validation of code against requirements.
No documented learning from team feedback beyond standard ignore/triage states.
Vendor-managed LLM (Claude on Bedrock) with credit-metered AI features; no model choice.
AI AutoFix opens fix PRs for 91 SAST rules (JS/TS, Python, Java, .NET, PHP) plus SCA/IaC fixes.
Evaluating Aikido Security?
Run it through the two-week trial protocol before you commit.