Verified User in Computer Software
UC
Verified User in Computer Software
Small-Business (50 or fewer emp.)
"Actionable Security Findings and an MCP Server That Keeps Scanning in the Agentic Loop"
4.5/5
What do you like best about Aikido Security?

Two things stand out.

First, it finds **real, actionable** problems across code, dependencies, cloud and runtime in one place —

not a wall of noise. In a single week it flagged a **Critical remote-code-execution vulnerability buried

in a transitive dependency** (several layers down in our stack, the kind you'd never catch by eye) and

genuine **XSS sinks in shipping frontend code**. The **reachability analysis — the "does this actually

affect me?"** — is the real differentiator: it tells you which findings are exploitable in *your*

environment, so triage is minutes instead of drowning in severities.

Second, and this is where it's genuinely ahead of the pack: **the MCP server.** We build with AI coding

agents, and Aikido's MCP lets an agent **scan its own work in the loop** — write the code, call Aikido via

MCP, get findings back, fix them, *before anything merges*. That folds professional-grade security scanning

directly into a **fast-moving, agent-driven CI/CD pipeline**. As development shifts to agentic workflows,

the scanner being something the **agent can call itself** — rather than a separate gate a human has to

remember to run — is exactly the right design. It's the difference between security bolted on at the end and

security **in the loop** while the code is being written. For teams moving fast with AI, that's the feature

that matters.

Consolidating SAST, SCA/dependencies, secrets, IaC and cloud into one tool is also just less overhead than

stitching point solutions together. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

A couple of MCP rough edges. The **findings feed wasn't exposed to the MCP by default** for our workspace

(we had to enable it), and the local scan **occasionally timed out** under load. Both minor, and the core

scanning is rock-solid — but exposing the full findings feed to the MCP **out of the box** would make the

agentic loop even tighter, which is where a lot of the future value is. Review collected by and hosted on G2.com.

Verified User in Legal Services
AL
Verified User in Legal Services
Small-Business (50 or fewer emp.)
"Aikido Feels Built for Fast-Moving Code—Plus Helpful Startup Discounts"
4.5/5
What do you like best about Aikido Security?

I think that coding is changing so fast that traditional audit system do not represent the current state of the system. It used to be few updates per year, but if you look at some systems they get updated almost weekly. Availability of pen testing is also important. We are still a startup and developing the system, but when we get closer to launch Aikido will be our security system. Also it's nice they offer a discount for startups. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

Well we need a repo cleanup, we have some older branches that are semi abandoned, but as we found out sometimes these ideas might carry something valuable. Seems that aikido is finding issues of these branches too. Review collected by and hosted on G2.com.

Verified User in Computer Software
AC
Verified User in Computer Software
Small-Business (50 or fewer emp.)
"Must-Have Security Scanning for Complex Repos. Fast, Clear UI, and Easy Setup"
5/5
What do you like best about Aikido Security?

Aikido found security vulnerabilities that would have otherwise been glossed over as non-issues. If you have a huge repo and a complicated software project, Aikido makes it much easier to secure your work. The UI is easy to use, with top-level critical security issues front and center.

The price for Pro is decent, and if a security vulnerability gets leveraged, the cost of that issue far outweighs the cost of Aikido Pro. This is a must-have resource if you’re using AI agents to help code your app; they’ve come a long way, but they still make simple mistakes that can turn into a complete blunder without a properly scoped security-hardening phase.

Integration couldn’t be simpler: connect your repo, Aikido scans it, and boom, you discover day-one security issues that can be fixed quickly. I’m also impressed with the performance. It scans my very complicated repo fast and delivers a comprehensive report with detailed information, even for the more basic “hey, you should probably double-check this” type of issues.

Onboarding is straightforward too, basically like logging into any other SaaS. The learning curve is close to zero because everything is laid out well and the key information you need is right there up front. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

Honestly I dont really have anything I dislike about it, the offer a great service that is very much needed. Review collected by and hosted on G2.com.

Verified User in Computer Software
AC
Verified User in Computer Software
Small-Business (50 or fewer emp.)
"Aikido Security Delivers Contextual Vulnerability Insights and Easy Code Fixes"
5/5
What do you like best about Aikido Security?

Aikido security helps me to gain insights into real, contextual based code security vulnerabilities. It does it's own deeper analysis to find if it's a false-positive or a real threat based on the context of the code. This helps me to understand what is going on and where the problems exist vs flagging everything and not doing any contextual analysis. It also provides you code fixes and shows you how it should be done, together with the possibility of integrating it in a code change and push the code to your repository. The UI shows you what the problem is, how to fix it and helps you to push the fix in a breeze. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

There is no in between pricing, so if you would like to go from the free tier to a higher tier, you pay for up to a certain amount of team members. If you do not have any team members, you feel like your are paying a higher price than you should. Review collected by and hosted on G2.com.

FS
Fabio S.
COO/CISO
Small-Business (50 or fewer emp.)
"User-Friendly Platform That Helps Us Fix Vulnerabilities Faster"
5/5
What do you like best about Aikido Security?

Aikido Security is very user-friendly and easy to navigate, even for team members who are not deeply specialized in security. It helps us quickly identify and manage vulnerabilities in one place, which saves time and makes our workflow much more efficient. The platform is intuitive, and it’s easy to get value from it quickly. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

Overall, the experience has been very positive. Review collected by and hosted on G2.com.

Verified User in Computer Software
UC
Verified User in Computer Software
Small-Business (50 or fewer emp.)
"Aikido Makes CVE Fixes and SAST Reviews Fast with a Clear, Prioritized Dashboard"
4.5/5
What do you like best about Aikido Security?

Dependency tracking is a given, but I didn't expect to be able to have Aikido be able to edit code to ensure there was no exposure to the relevant CVEs, if for some reason I wasn't able to upgrade the dependency.

The UX for reviewing SAST code findings is also refreshingly simple, SQL injection finding to reviewing a diff and creating a PR in GitHub within a couple of clicks.

As security is only one of my responsibilities, having a go-to dashboard with a clear list of prioritised actions for me to look at has made life much simpler than looking at endless dependabot PRs with limited context. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

I’ve run into some issues verifying domain ownership while trying it out their website probing tests, but haven't tried contacting them about it yet Review collected by and hosted on G2.com.

Sunil D.
SD
Sunil D.
PMTS
Mid-Market (51-1000 emp.)
"Developer-First Security Platform with Seamless Integrations and Actionable AI"
4.5/5
What do you like best about Aikido Security?

What I like most about Aikido Security is its developer-first approach. Rather than forcing developers to juggle multiple separate security tools, Aikido brings application security, dependency scanning, and cloud security together in a single platform.

Aikido's use of AI to make security more actionable.

Another aspect i appreciate is the emphasis on UI/UX. Security tools are most effective when they're easy to use.

Aikido performance is equally important. Security scanning integrates seamlessly in to development workflow without slowing down developers or CI/CD pipelines.

Appreciate Aikido's integrations with tools that developer already use, such as GitHub, Git Lab,CI/CD platforms.

Finally, I think Aikido's pricing model is attractive because it makes enterprise-grade application security more accessible to companies that may not have budget for multiple sepcialized security products. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

There are still areas where the product can improve. Some advanced enterprise features and integrations could be expanded further. More customization in dashboards, reporting and altering would be useful for larger organizations Review collected by and hosted on G2.com.

Justin K.
JK
Justin K.
Vice President
Small-Business (50 or fewer emp.)
"Comprehensive UI and GitHub Integration That Keeps My Repos Well-Checked"
4.5/5
What do you like best about Aikido Security?

Comprehensive user interface and integration into my GitHub projects for real time / regular analysis. Also love that it is free for the free tier, which for my limited usage and experience, is perfect for what I'm trying to do. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

Nothing really - I mean, there are areas I wish I could access that didn't cost money, but the features that I like are there. Checks my repos nicely and really does a good job at alerting me. Review collected by and hosted on G2.com.

Verified User in Information Technology and Services
AI
Verified User in Information Technology and Services
Small-Business (50 or fewer emp.)
"All-in-One Security Made Easy with Aikido and GitHub Integration"
4/5
What do you like best about Aikido Security?

Aikido has done a good job of making security approachable for a small engineering team. We dont need to stitch together multiple tools. Having vulnerabilities, dependency, secrets, code scanning and cloud in one place is graet. Super easy wet up, findings are prioritised well, and it helps us focus on issues that matter. The GitHub integration has been particularly useful because security becomes part of our normal development workflow rather than a separate activity. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

There are occasional false positives and sometimes we'd like more context or remediation guidance for certain findings. Review collected by and hosted on G2.com.

Verified User in Manufacturing
AM
Verified User in Manufacturing
Small-Business (50 or fewer emp.)
"Local Scanning That Helps Us Catch Overlooked Vulnerabilities"
4/5
What do you like best about Aikido Security?

Since we only use Aikido Security for local scanning and don’t integrate it with any online SCM, it still helps us catch vulnerabilities we might otherwise overlook during development. The price is also very reasonable, and I believe it can fit within most organizations’ budgets. Review collected by and hosted on G2.com.

What do you dislike about Aikido Security?

I’m not sure whether I’m using it correctly or not, but I can’t find an option to assign a repo if I want to assign the repo to one of the developers. Also, there doesn’t seem to be a “done” or “finish” button for each issue. Because of that, I feel like this product is more friendly for companies that fully utilize the cloud, and less friendly for more traditional companies. Review collected by and hosted on G2.com.