Aikido Security logo

    Aikido Security

    Secure your code, cloud, and runtime in one central system. Transparent flat-rate pricing to suit any size, with a free-forever developer plan.

    Ratings and reviews

    4.6
    273 ratings
    2 star
    1 star
    73%
    25%
    2%
    0%
    0%
    3 AWS reviews
    |
    270 external reviews
    External reviews are from G2  and PeerSpot .

    Filters

    Review type

    AWS Marketplace reviews
    External reviews
    Reviews (273)
    Jelle D.

    Useful security findings, but a steep upgrade path for solo developers

    Reviewed on Oct 01, 2026
    Review provided by G2
    What do you like best about the product?
    I’m evaluating Aikido across nine repositories as a solo developer, covering SaaS products and mobile apps. It has already spotted a shell-escaping issue I missed and flagged a high-severity dependency vulnerability before Dependabot did in my setup.

    The clear overview and “inbox zero” approach make working through findings motivating. Even the free plan provides useful insights. Generating fixes as pull requests is convenient, although mine are still under review, so I cannot yet judge their end-to-end effectiveness.
    What do you dislike about the product?
    Some findings and fixes need more context. For example, an autofix proposed removing debug output from an internal, non-web-exposed debugging script. The potential disclosure concern is understandable, but simply deleting the output defeats the script’s purpose. I also received missing-lockfile warnings for repositories where I don’t use dependencies.

    The biggest barrier for me is the jump from free to €300/month. My free account shows that additional findings exist without revealing their details.

    I would welcome a smaller paid plan around €50/month for solo developers, covering 15–20 repositories. My priorities would be full vulnerability details, dependency and licence scanning, an SBOM overview, integration with tools like GitHub Issues, and PR security checks. Bulk autofix and broader extras matter less to me. That would give me a practical reason to upgrade without jumping straight to a package designed for a larger team.
    What problems is the product solving and how is that benefiting you?
    It gives me an additional view of security issues across my repositories and has surfaced issues my existing checks missed. Having findings together helps me assess what needs attention and work through them. The value is already visible, even though my evaluation of the paid features is still limited. While AI agents can spot this as well, Aikido is running 24/7 to spot them faster.
    Matan K.

    Aikido Delivers True Shift Left Security at Scale

    Reviewed on Sep 25, 2026
    Review provided by G2
    What do you like best about the product?
    I really appreciate how Aikido enables a true shift left with seamless integration into GitHub and other cloud-based source controls. The onboarding experience is smooth, with immediate scanning and clear, intuitive access for developers. Its reachability features make it easy to trace vulnerabilities to their exact source, and the platform's clarity and flexibility in triaging issues drastically reduce alert fatigue. The collaboration with the Aikido team has been outstanding, with fast responses and fixes. The ability to respond rapidly to zero-day events and the clarity in separating base image vulnerabilities from application code are both huge time-savers.
    What do you dislike about the product?
    We did experience some initial glitches during integration, though these were resolved quickly with support from the Aikido team. Beyond that, we haven't used all features extensively yet, so it's too early to comment on any deeper limitations, but so far nothing has stood out as a major drawback.
    What problems is the product solving and how is that benefiting you?
    SCA scanning and AI-assisted flows
    Information Technology and Services

    Easy to use, easy to integrate, and it actually finds things

    Reviewed on Sep 21, 2026
    Review provided by G2
    What do you like best about the product?
    Repository scans and the automatic integration with our ticketing service. The scans run continuously across our codebases and surfaced a long backlog of small security issues that had gone unnoticed for years, the kind of thing that would normally take a dedicated audit to catch. The ticketing integration means findings land directly in our existing workflow as tickets instead of sitting in a separate dashboard nobody checks, which has saved us a lot of manual triage.

    On top of that, it's genuinely easy to use. Setup was quick and the interface doesn't require a security background, so the whole team engages with it, not just the security-minded folks. And because scans run consistently across all our codebases, it's pushed us toward a shared security standard across projects that used to drift apart, an unexpected win we hadn't set out to get.

    Their support has also stood out: quick to respond and genuinely hands on, not just pointing us to documentation but actually helping work through our specific setup.
    What do you dislike about the product?
    Honestly, nothing significant to flag yet. We're still a few months in and haven't explored every tool in the platform, so there may be gaps we haven't hit, but nothing has gotten in our way so far.
    What problems is the product solving and how is that benefiting you?
    Aikido is solving the problem of security debt we didn't know we had: small vulnerabilities and issues that had accumulated across our codebases over several years without anyone actively hunting for them. Before using it, that kind of continuous scanning just wasn't happening, so things slipped through unnoticed.

    The benefit is twofold. First, we now have visibility we simply didn't have before, and a steady stream of concrete, actionable findings instead of periodic, manual audits. Second, because it scans consistently across all our different codebases, it's helping us enforce a shared security standard across projects that used to be handled inconsistently, which reduces risk without adding extra process overhead for the team.
    Angel I.

    Reachability and consolidation transformed our security workflow

    Reviewed on Sep 15, 2026
    Review provided by G2
    What do you like best about the product?
    I love how Aikido's reachability analysis filters out noise by showing which vulnerabilities are truly exploitable, saving us huge amounts of time and effort. Consolidating multiple tools into one platform has made our process much simpler, and the responsive support from the Aikido team is unmatched—they actually listen and help us fix issues quickly. The real gates now block critical and high findings before code merges or builds, giving us real confidence in our security posture.
    What do you dislike about the product?
    There isn't much to dislike so far, but we are still working on extending gates consistently across all stages of the pipeline and preparing to evaluate new features like AI pentesting and device protection. Some of these improvements are not live yet, so I'm looking forward to seeing how those work in practice.
    What problems is the product solving and how is that benefiting you?
    Aikido helps us focus on the things that matter. This is mainly done through CVE triage, PR gating, AI code review, and issue reachability.
    Yolanda A.

    Aikido is a game change for ASPM

    Reviewed on Sep 10, 2026
    Review provided by G2
    What do you like best about the product?
    I love that Aikido consolidated AppSec across all our global teams with no retraining needed. The self-serve onboarding at aikido.dev meant we could start immediately, and the IDE plugin lets our developers fix issues in place. Our patch rate doubled, container scanning is unified with code-level findings, and we can check new CVEs instantly. Security is now part of shipping code, not just a backlog item.
    What do you dislike about the product?
    There’s little to dislike, but I would appreciate even broader DAST coverage as we continue to expand our use. Integrating all possible security checks into one platform is an ongoing goal, and I look forward to seeing even more features in the future.
    What problems is the product solving and how is that benefiting you?
    Security coverage for compliance.
    Chris H.

    Aikido Delivers Real Security Value Without the Noise

    Reviewed on Sep 04, 2026
    Review provided by G2
    What do you like best about the product?
    What I really appreciate about Aikido Security is how it cuts through the noise and only presents the vulnerabilities and issues that genuinely need attention. This saves my team an enormous amount of time and helps us focus on what truly matters. The seamless integration between CLI and web app, the responsive and human support, and features like AutoFix and Safe Chain have all made a tangible difference. The platform's ability to consolidate visibility across our SDLC, its fast adoption of new features (like vcpkg support), and the ease of onboarding were also standout positives.
    What do you dislike about the product?
    Honestly, there isn't much to dislike. If I had to mention anything, it's just that we're still exploring some modules, like code quality, and haven't fully replaced all our legacy tools yet. There might be some learning curve as we transition more functionality to Aikido, but so far, nothing has been a real negative.
    What problems is the product solving and how is that benefiting you?
    Aikido Security helps us proactively report on product health to the broader exec team. Having a single pane of glass that brings together reporting, DAST, SAST, SCA, and secrets all in one place is a big plus.
    Computer Software

    Clear, Root-Cause Pentest Reports with Great Retesting Support

    Reviewed on Sep 01, 2026
    Review provided by G2
    What do you like best about the product?
    Aikido's pentest report was clear and actually useful. Instead of a wall of disconnected findings, it grouped issues by root cause so we could see the handful of structural fixes that mattered rather than chasing dozens of tickets. Each finding had a clear repro, severity score and a sensible fix recommendation, and the AI-assisted triage cut through the noise well. [Onboarding was quick and the dashboard is easy to navigate.
    The retesting support makes it easy to gather evidence for compliance. For a small team without a dedicated security person, the ROI is obvious: one report gave us a realistic remediation roadmap in an afternoon.
    What do you dislike about the product?
    The full report is 200+ pages and could use a shorter executive summary up front.
    What problems is the product solving and how is that benefiting you?
    We're a small team building a CS platform so security and compliance matter but we don't have a dedicated security engineer. Aikido gives us that coverage without the headcount. It finds the auth gaps, rate-limiting holes and XSS risks we'd otherwise miss, and it gives us the evidence we need for customer DPAs and our security policy work. It's turned security from something we worried about into a prioritised list we can actually work through.
    Francisco Pulido

    Centralized security posture has streamlined daily vulnerability tracking and reporting

    Reviewed on Aug 15, 2026
    Review from a verified AWS customer

    What is our primary use case?

    My main use case for Aikido Security is a centralized place where I can manage all of my security posture across my company.

    For that main use case, I use mainly Aikido Security to check that my cloud accounts are safe, that there are no critical vulnerabilities around, and that all of the best practices are applied across the board.

    Regarding my main use case for Aikido Security, it helps me a lot in my day-to-day life because it has automated built-in reports for Jira and Slack, so having this kind of information instantly alleviates a lot of pressure.

    What is most valuable?

    In my opinion, the best features Aikido Security offers include how easy it is to implement and how fast you can have it running on day one.

    When I say it is easy to implement, basically, I just had to run a template in my AWS account and give it access to GitHub; with those two steps, 80% of the implementation was already done.

    Aikido Security has positively impacted my organization by reducing the time spent chasing vulnerabilities and increasing the visibility of our issues internally, making them easier to track down and pinpoint an origin for them, while also alleviating a lot of pain we had when reaching out to developers about security issues.

    What needs improvement?

    Aikido Security can be improved; its Jira implementation is great, but it is lacking a few departments, such as having the ability to inject HTML within Jira, which would be really nice to have.

    For how long have I used the solution?

    I have been using Aikido Security for over a year.

    What do I think about the stability of the solution?

    Aikido Security is stable.

    What do I think about the scalability of the solution?

    Aikido Security's scalability is wonderful.

    How are customer service and support?

    The customer support for Aikido Security is unbeatable; they are really easy to talk to, very friendly, and their response time is ridiculously low.

    I would rate the customer support a 10 out of 10.

    Which solution did I use previously and why did I switch?

    I did not previously use a different solution.

    How was the initial setup?

    My experience with Aikido Security's pricing, setup cost, and licensing is that pricing is very straightforward, its information is publicly available on the website, setup cost was none basically, and the licensing is included within the price.

    What was our ROI?

    I have seen a return on investment; I already shared earlier that our biggest ROI is the time needed in chasing vulnerabilities, which has been reduced by roughly 70%.

    Which other solutions did I evaluate?

    Before choosing Aikido Security, I did not evaluate other options.

    What other advice do I have?

    I find myself checking Aikido Security for these issues daily.

    I use Aikido Security daily since I received daily reports of usage and compliance across the board, which means I need to check it daily and even several times a day.

    I think Aikido Security's AI capabilities are scoped correctly; it only affects a few parts of the applications, so not everything is governed by AI, just a few features.

    Regarding Aikido Security's AI accuracy and reliability of output, I think its AI capabilities are all right, but it can miss the point sometimes; it is good to have a fast and cheap overview, but I would not rely 100% on it.

    My advice to others looking into using Aikido Security is to get it as soon as possible; right now, it is a very good tool for a very good price, and you will see a return on investment in less than six months. I have given Aikido Security an overall rating of 10 out of 10.

    Philippe V.

    User-friendly security for non-programmers

    Reviewed on Aug 14, 2026
    Review provided by G2
    What do you like best about the product?
    I find the easy interface of Aikido Security very pleasant, especially because it is clear for a non-programmer like me. It also helps me to build more easily and to be immediately aware of security leaks. Additionally, I mainly use the feed to see which new vulnerabilities have been found. The initial installation was also very easy; just connect and you're ready, and Claude can handle it very well, which has helped me a lot.
    What do you dislike about the product?
    I would like a tier for 1 person, even if it's slightly more expensive, 50 euros per month. Then I would take it immediately.
    What problems is the product solving and how is that benefiting you?
    I use Aikido Security to build more easily and to know immediately if there are security vulnerabilities. The interface is user-friendly, even for non-programmers. I mainly use the feed to discover new vulnerabilities.
    Inias L.

    Amazing Support and Powerful SAST Scanning with Autofix

    Reviewed on Aug 03, 2026
    Review provided by G2
    What do you like best about the product?
    First of all, the customer support is great. They walked me through my case from the start, and they were very generous with the trial and the follow-up. The SAST scanning and autofix were the first features I used, and they were amazing.
    What do you dislike about the product?
    At first, it felt like a lot all at once, and I got a bit overwhelmed by the number of notifications and all the features they offer. That said, their customer support more than made up for it and really helped smooth things out.
    What problems is the product solving and how is that benefiting you?
    As a solo developer and the first and last line of defence, I really appreciate how the scanning and autofixes come in small batches that are easy to double-check and merge. It gives me more peace of mind knowing there’s someone or something else also double-checking my work.