• HOME
  • CATEGORIES

    • CATEGORIES

    • Browse All Categories
  • FOR VENDORS

    • FOR VENDORS

    • Log In to Vendor Portal
    • Get Started
  • REVIEWS

    • REVIEWS

    • Write a Review
    • Product Reviews
    • Vendor Directory
    • Product Comparisons
  • GARTNER PEER COMMUNITY™
  • GARTNER.COM
  • Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQPrivacyTerms of Service
    ©2026 Gartner, Inc. and/or its affiliates.
    All rights reserved.
  • Categories

    • No categories available

      Browse All Categories

      Select a category to view markets

  • For Vendors

    • Log In to Vendor Portal 

    • Get Started 

  • Write a Review

Join / Sign In
  1. Home
  2. /
  3. Aikido Security
Logo of Aikido Security

Aikido Security

byAikido Security
in
4.8
Market Presence: Application Security Testing, Application Security Posture Management (ASPM) Tools

Overview

Product Information on Aikido Security

Updated 25th June 2024

What is Aikido Security?

Aikido is a developer-centric security platform that gives developers and security teams an instant overview of all code-to-cloud security issues and guides teams to fix vulnerabilities fast. Aikido supports security teams execute by aggressively reducing false-positives, automatic triage and risk bundling, and translating Common Vulnerabilities and Exposures (CVEs) into easy step-by-step explanations to resolve. Described as an "all-in-one" application security platform, Aikido's covers the entire Software Development Lifecycle (SDLC), including: static application security testing (SAST), dynamic application security testing (DAST), infrastructure-as-code (IaC), container scanning, secrets detection, open source lisence scanning, cloud posture management (CSPM), runtime protection, and more.

Aikido Security Pricing

Aikido has transparent and flat-rate pricing. The pricing is not based on per-developer or per-active contributer. Rather, the pricing model is based on flat-rates per up to 10, 20, 30, 50 groups for mid-size customers with set coverage. For enterprise customers, there is "scale" or custom pricing that allows for unlimited users and unlimited coverage on repos, cloud accounts, container images, and domains. There is a free-to-use tier so developers can try the product immediately.

Aikido Security Product Images

Main security feed
Main security feed
Automate Technical Reports
Automate Technical Reports
False-positive ignore & triage
False-positive ignore & triage

Overall experience with Aikido Security

IT Security & Risk Management Associate
50M - 250M USD, Miscellaneous
FAVORABLE

“Aikido delivers strong AppSec coverage with an excellent developer-centred approach”

5.0
Jan 28, 2026
Aikido has provided consistently strong support throughout the development of our application security programme. From the outset, the team demonstrated a clear understanding of our objectives and engaged with us in a thoughtful and collaborative manner. They connected us with the right subject matter experts and made it straightforward to explore the platform in depth. What stood out was their willingness to go above and beyond during the evaluation phase, ensuring that we were able to test, valiadte and demonstrate value before making a commercial commitment. That approach helped build confidence and created a strong foundation for the partnership. Since adoption, our experience with support has remained excellent. Requests are handled promptly, feedback is taken seriously and improvements are often delivered at pace. It is evident that Aikido are committed to continuous enhancement of the product and to maintaining a constructive relationship with their customers.
There are no reviews in this category.
CRITICAL

About Company

Company Description

Updated 25th June 2024

Aikido is a developer-centric security platform that gives developers and security teams an instant overview of all code-to-cloud security issues and guides teams to fix vulnerabilities fast. Aikido supports security teams execute by aggressively reducing false-positives, automatic triage and risk bundling, and translating Common Vulnerabilities and Exposures (CVEs) into easy step-by-step explanations to resolve. Described as an "all-in-one" application security platform, Aikido's covers the entire Software Development Lifecycle (SDLC), including: static application security testing (SAST), dynamic application security testing (DAST), infrastructure-as-code (IaC), container scanning, secrets detection, open source lisence scanning, cloud posture management (CSPM), runtime protection, and more.

Company Details

Updated 31st March 2025
Company type
Private
Year Founded
2022
Head office location
Ghent, Belgium
Number of employees
51 - 200
Website
https://aikido.dev

Do You Manage Peer Insights at Aikido Security?

Access Vendor Portal to update and manage your profile.

Key Insights

A Snapshot of What Matters - Based on Validated User Reviews

Top Aikido Security Alternatives

Logo of Veracode
1. Veracode
4.5
(432 Ratings)
Logo of Checkmarx SAST
2. Checkmarx SAST
4.6
(414 Ratings)
Logo of Check Point Cloud Firewall
3. Check Point Cloud Firewall
4.6
(387 Ratings)
View All Alternatives

Peer Discussions

Aikido Security Reviews and Ratings

4.8

(81 Ratings)

Rating Distribution

5 Star
79%
4 Star
21%
3 Star
0%
2 Star
0%
1 Star
0%
Why ratings and reviews count differ?

Customer Experience

Evaluation & Contracting

4.7

Integration & Deployment

4.8

Service & Support

4.8

Product Capabilities

4.6

Filter Reviews
Sort By:
Most helpful
Last 12 Months
Star Rating
Reviewer Type
Reviewer's Company Size
Reviewer's Industry
Reviewer's Region
Reviewer's Job Function
  • IT Security & Risk Management Associate
    50M-1B USD
    Miscellaneous
    Review Source

    Aikido delivers strong AppSec coverage with an excellent developer-centred approach

    5.0
    Jan 28, 2026
    Aikido has provided consistently strong support throughout the development of our application security programme. From the outset, the team demonstrated a clear understanding of our objectives and engaged with us in a thoughtful and collaborative manner. They connected us with the right subject matter experts and made it straightforward to explore the platform in depth. What stood out was their willingness to go above and beyond during the evaluation phase, ensuring that we were able to test, valiadte and demonstrate value before making a commercial commitment. That approach helped build confidence and created a strong foundation for the partnership. Since adoption, our experience with support has remained excellent. Requests are handled promptly, feedback is taken seriously and improvements are often delivered at pace. It is evident that Aikido are committed to continuous enhancement of the product and to maintaining a constructive relationship with their customers.
  • IT Security & Risk Management Associate
    <50M USD
    Software
    Review Source

    Aikido’s Product Is Great, But Their Support Really Stands Out With Fast Responses and Fixes

    5.0
    Mar 14, 2026
    We use many SAASes and I've personally selected and onboarded several of them. It's safe to say I'm by far and away happiest with the choice of Aikido out of all of them. The product is great and does everything we need, but the support is phenomenal, world class and makes it a joy to work with them.
  • VP, Software Development
    50M-1B USD
    Miscellaneous
    Review Source

    Clear Findings and Comprehensive Detection Enhance Ease of Use Across Multiple Tools

    5.0
    Jan 30, 2026
    Integrating into existing CI and developer flows has been easy. Already during our POC we were able to test the capabilities of the platform against many different types of assets because of the easy integration. Findings are clear and easy to understand, and the integration into our existing ticketing flow is a big plus.
  • Cyber Security Specialist
    50M-1B USD
    Consumer Goods
    Review Source

    Centralizing Security Findings Enhances Team Visibility and Risk Management Efforts

    5.0
    Apr 27, 2026
    Aikido delivers fast value with minimal setup, and onboarding is simple and efficient. Enabling visibility, prioritisation and developer adoption across teams. Our experience shows that many systems that a company uses are scattered across and are not related or talk to each other apart from the functional part of the solution, resulting in findings that are stuck in that system and can be easily missed, so when a system provides a true place for all findings that are related to one another even though they are systems apart, it’s a huge benefit and gives us a view that we didn’t know we needed.
  • Manager, IT Security and Risk Management
    50M-1B USD
    Miscellaneous
    Review Source

    Complete scanning suite in a straightforward platform with AI-powered triage

    5.0
    Jan 29, 2026
    Very simple to set up. In less than 5 min you can starting seeing findings from the code repositories, from different types of scanners. Really like the fact that it only asks for the strictly necessary permissions, which are mostly read-only, and will ask for more permissions if you want to integrate other features or scanners. It's up to the user to choose and it's not imposed. Support has been great and very fast, the communication channel via slack works pretty well. Overall it is a very complete suite of security scanners, as well as additional features like leaked password analysis and hardened container images. Very competitive pricing when compared to other vendors that don't even deliver this much.
...
Showing Result 1-5 of 82

Recommended Gartner Insights

  • Critical Capabilities for Application Security Testing
  • Magic Quadrant for Application Security Testing
Powered by Google TranslateThis service may contain translations provided by Google. Google disclaims all warranties related to the translations, express or implied, including any warranties of accuracy, reliability, and any implied warranties of merchantability, fitness for a particular purpose and noninfringement. Gartner's use of this provider is for operational purposes and does not constitute an endorsement of its products or services.

Gartner Peer Insights content consists of the opinions of individual end users based on their own experiences, and should not be construed as statements of fact, nor do they represent the views of Gartner or its affiliates. Gartner does not endorse any vendor, product or service depicted in this content nor makes any warranties, expressed or implied, with respect to this content, about its accuracy or completeness, including any warranties of merchantability or fitness for a particular purpose.

This site is protected by hCaptcha and its Privacy Policy and Terms of Use apply.


Software reviews and ratings for EMMS, BI, CRM, MDM, analytics, security and other platforms - Peer Insights by Gartner
Community GuidelinesListing GuidelinesBrowse VendorsRules of EngagementFAQsPrivacyTerms of Use

©2026 Gartner, Inc. and/or its affiliates.

All rights reserved.

User Sentiment About Aikido Security
Reviewer Insights for: Aikido Security
Deciding Factors: Aikido Security Vs. Market Average
Performance of Aikido Security Across Market Features

Aikido Security Likes & Dislikes

Like

Aikido delivers several standout strengths that materially enhance the effectiveness and efficiency of our application security programme. The following provide the most value: - Seamless GitHub integration and large scale onboarding. The App pattern makes it exceptionally easy to onboard repositories in bulk, while the native integration ensures that users and teams are imported cleanly and kept aligned with our existing developer workflows. - Comprehensive and effective security scanning coverage. The platform brings together a broad suite of embedded scanners, including SCA, SAST, secrets detection and IAC analysis. The inclusion of DAST with support for both GraphQL and REST API scanning further strengthens its technical depth. - Strong developer-centric experience that accelerates remediation. The portal offers a clear and intuitive user interface and places a real emphasis on helping developers prioritise and resolve issues. Explanations are accessible, suggested auto-fixes are helpful and the ability to open pull requests directly supports rapid action. Additional aspects that consistently add value include noise reduction and transparent prioritisation, industry-leading supply chain and malware monitoring, and the robust set of search and filtering options. These strengths combine to create a platform that is powerful and highly usable, enabling engineers to adopt security practises with confidence and velocity.

Like

The product itself does everything we need and more. The way they support us is insane and I've never seen anything like it. We have a shared Slack channel and someone always responds, usually within minutes and often the CTO/CEO himself engages with us and our issues directly. They often fix issues the same day, and sometimes even on weekends. Their auto-ignore functionality, while not perfect, is best in class and does an amazing job at reducing the noise so we can concentrate on the security signal (i.e. actual problems). The web UI, while not perfect, is much better than any of the competitors I looked at (by a long way) and includes very powerful filtering functionality that always allows me to narrow down to the subset of our product that I want to focus on. They have a good API and quickly add anything we find missing from it. The reporting functionality is great and super valuable to make our GRC work easier by providing reporting based on standards (such as SOC 2) that we're trying to maintain. The integrations are expansive and cover everything we need and were easy to setup. Good SSO integration and audit logging.

Like

One product to cover most of our needs. It's easy to use and the detection seems to be on par with the competition. - One platform covers a lot of tools (CSA, SATS, License, Malware protection, ...). - Integration into existing tools/flows. - Easy to understand pricing model.

Dislike

There are a few areas, which are admittedly challenging across the industry, where we still experience friction at scale. The secret scanning capability offers limited visibility into the underlying rules, which makes it more difficult to tune for repeated false positives across large environments. To their credit, Aikido does offer multiple ways to manage this, although in practise it is not yet as polished as their stronger features. The license scanning can also generate false positives that can be presented as critical legal risks, which at times can undermine confidence in the severity model when viewed alongside genuine critical AppSec vulnerabilities. Although this capability can be disabled, it would be far better if it would be more accurate by default, or could be more finely tuned. The reporting and trends presented in the UI are strong, but exposing this data through API access would significantly improve our ability to integrate with internal business analytics. Pull request scanning would be even better with more conversational, in-line guidance, so that developers can review issues, apply suggested fixes, and manage exceptions without switching context to the Aikido portal.

Dislike

Honestly, these are all very minor (almost petty concerns). 1) The web UI, while great overall, has some weird inconsistencies (e.g. not being able to choose how to sort tables by column on some pages) 2) The docs, while expansive, are a little sprawling and hard to search, I tend to resort to asking a web-search enabled LLM to help me find what I need 3) The secret detection, whilst good overall, is probably the most prone to false positives. 4) The filtering is extremely powerful but can be somewhat unintuitive at times.

Dislike

When setting up initially, it would be great to be able to only gradually get old issues highlighted instead of being flooded with everything at once. This is a common issue with any kind of scanning/detection tool, but there must be a better way to get started, rather than over-whelming your teams. - Initial findings can flood the team - even if the findings are less critical. - Two way sync for ticket/finding status/level. - Some features are so new that they are not mentioned in which plan they are included.