Category

Security

AI generated code security

Security

Why SAST Can't Keep Up with the Prompt-to-PR Loop

SAST finds known-bad patterns. AI-generated code fails by omission — missing auth checks, missing tenant isolation, missing rate limits. Those gaps don't show up in a scan queue. They show up in incident reports.

· 3 min read
  • #AI
  • #AI generated code security
AI generated insecure code

Security

Your AI Writes Vulnerable Code by Default. Here's the Fix

When the model writes a vulnerable function and a human catches it in review, you've paid twice: once for the AI to generate insecure code, and again for the AI (or a developer) to fix it. Secure-by-default generation means you pay once, for the code you actually wanted.

· 6 min read
How Shadow AI code development works and it's security risks

Engineering

The Rise of Shadow AI Development Inside Enterprise Engineering

If your engineering organization is already shipping AI-assisted changes daily, now is the time to understand where AI is influencing your systems, how those workflows affect production risk, and whether your current AppSec model can still keep up.

· 12 min read