Cycode releases ADLC Security for AI-driven development protection
Cycode released ADLC Security as a generally available addition to its Complete Platform. The update is intended to support securing AI-driven software development from prompt to runtime, as agentic coding workflows introduce new risk patterns that traditional application security approaches do not cover.
The company positioned the change around two areas it says need coverage in the same platform: securing the AI layer of development and deploying AI agents to automate security work. It also described a broader problem in which AI agents can write code, invoke tools, and deploy software at machine speed, while attackers use similar capabilities to find and exploit vulnerabilities faster.
ADLC Security brings four capabilities under a single policy fabric: AI Visibility, AI Governance, AI Guardrails, and AI Risk Detection. AI Visibility auto-discovers shadow AI, coding assistants, and Model Context Protocol (MCP) servers across the development environment; AI Governance enforces policy-driven control and includes full AI Bill of Materials (AIBOM) coverage for SSDF, NIST, SOC2, and ISO 27001 compliance; AI Guardrails blocks risky patterns and prompt-leaking secrets in real time at the IDE, command line interface (CLI), and within AI coding tools; AI Risk Detection scans application code for OWASP Large Language Model (LLM) Top 10 vulnerabilities. The module’s signals flow into Cycode’s Context Intelligence Graph (CIG), and Cycode Maestro triages, prioritizes, remediates, and prevents AI-driven risk.
The launch added ADLC Security to Cycode’s platform unifying AI Code Security, Software Supply Chain Security, Risk Posture Management, and ADLC Security under a single graph and agentic engine. Katie Norton of IDC said, “As delivery becomes more automated and autonomous, organizations need security platforms purpose-built for these workflows. Solutions such as Cycode are addressing these requirements by connecting AI governance, application security controls, and remediation capabilities in a single, integrated offering.” Lior Levy, Co-Founder and CEO of Cycode, said, “Shift Left is dead. The agentic era requires the Shift to AI. Security cannot stand downstream, bracing against AI. It must evolve with AI and operate in parallel with equal autonomy, speed, and intelligence as the agents writing code and exploits,” and added, “ADLC Security is how we make that real for our customers.” Forward-looking statements were not provided in the release beyond the company’s stated intent for its platform and the publication of “Shift to AI: A Manifesto for Self-Protecting Software.”