Corgea is an AI-native application security platform that scans source code, dependencies, infrastructure-as-code, and container images. It combines multiple security layers, including SAST, secrets detection, and dependency scanning, into a single control plane. The platform targets engineering and security teams that want fewer disconnected scanning tools. Corgea was built to reduce the operational burden that […]
GitLab
7 tools selected.
Socket is a supply chain security platform built to detect and block malicious open-source packages before they reach developer machines, CI/CD pipelines, or production systems. It targets engineering, security, and DevOps teams that rely on npm, PyPI, Go, and RubyGems dependencies. Because modern applications can consist of up to 90% open-source code, Socket focuses on […]
Mintlify is a documentation platform for software products, APIs, and developer tools. It treats documentation as code, storing content in Git repositories and rendering it from Markdown and MDX files. Engineering and technical writing teams use it to build, host, and maintain developer-facing documentation sites alongside their codebases. The platform parses OpenAPI and Swagger specifications […]
Semgrep is an application security platform that combines static analysis, software composition analysis, and secrets detection for development teams. It is built for developers and security teams who need to catch vulnerabilities before code ships. The platform targets a common problem in AppSec tooling: traditional scanners generate too many false positives, which slows down pull […]
Hex is a collaborative data workspace made by Hex Technologies Inc, founded in 2019. It combines SQL, Python, and no-code cells inside notebooks, alongside business intelligence style reporting, in a single browser-based product. The platform is organized around several modules. Notebooks handle interactive analysis, a BI layer supports dashboards and data apps, Context Studio manages […]
Greptile is an AI code review platform built by Tabnam, Inc. It reviews pull requests automatically and aims to catch bugs that slip past human reviewers and static analysis tools. The core mechanism is a graph index of the repository. Greptile maps files, functions, and dependencies, which lets it evaluate a change against the wider […]
Qodo, formerly known as CodiumAI, is an AI-driven code review and quality governance platform built for the software development lifecycle. It works inside IDEs, pull request pipelines, command-line interfaces, and Git workflows to run automated bug detection, test generation, and compliance checks before code merges into production. The platform targets the review bottleneck created by […]