#40 - IDE expansion packs, new package health database, and AutoFix now in AI pentest reports

3 Dec 2025

Features

  • Expansion packs for the IDEarrow-up-right: Introducing Aikido Expansion Packs, which brings Safe Chain and secret scanning via pre-commit hooks to your IDE. Stop sensitive patterns and malicious packages from ever reaching your shared codebase.

  • Package health databasearrow-up-right: Search and compare 3 million+ open source packages to help identify which dependencies are well-maintained and safe to use. Aikido calculates a health score based on how often a package changes, who maintains it, what scripts it runs, and whether its builds are verifiable.

  • Autofix for pentest issues:arrow-up-right Aikido will now generate AutoFix previews for critical and high severity issues discovered by Aikido Attack. Act on the AI pentesting report and open a PR fix directly from the Aikido app.

  • VSCode full workspace canarrow-up-right: You can initiate a full workspace scan for SAST and secret issues to help you establish a security baseline for your codebase or assess security posture before a major code push. This works alongside the existing functionality that scans as individual files are opened or saved.

Aikido Intel - Malware & Vulnerability Database

Our research team has discovered over 96 new vulnerabilitiesarrow-up-right over the last three weeks! Also, read our research and analysisarrow-up-right on the ongoing Shai Hulud supply chain attacks.

Improvements

Last updated

Was this helpful?