#40 - IDE expansion packs, new package health database, and AutoFix now in AI pentest reports

3 Dec 2025

Features

  • Expansion packs for the IDE: Introducing Aikido Expansion Packs, which brings Safe Chain and secret scanning via pre-commit hooks to your IDE. Stop sensitive patterns and malicious packages from ever reaching your shared codebase.

  • Package health database: Search and compare 3 million+ open source packages to help identify which dependencies are well-maintained and safe to use. Aikido calculates a health score based on how often a package changes, who maintains it, what scripts it runs, and whether its builds are verifiable.

  • Autofix for pentest issues: Aikido will now generate AutoFix previews for critical and high severity issues discovered by Aikido Attack. Act on the AI pentesting report and open a PR fix directly from the Aikido app.

  • VSCode full workspace can: You can initiate a full workspace scan for SAST and secret issues to help you establish a security baseline for your codebase or assess security posture before a major code push. This works alongside the existing functionality that scans as individual files are opened or saved.

Aikido Intel - Malware & Vulnerability Database

Our research team has discovered over 96 new vulnerabilities over the last three weeks! Also, read our research and analysis on the ongoing Shai Hulud supply chain attacks.

Improvements

Last updated

Was this helpful?